What is our primary use case?
We usually use Fortinet FortiGate for a perimeter firewall, but also for our outbound traffic as well as for the tunnels, with around 40 to 50 tunnels on our firewall.
We are using it in our data center; we have the 2,000 series HA firewalls.
How has it helped my organization?
Fortinet FortiGate has positively impacted my organization by allowing us to replace all the firewalls in other locations, as around 90% of our company operates on Fortinet.
We enable the SD-WAN zone to handle multiple ISPs, allowing it to automatically switch over the WAN link if any latency hits the threshold value, eliminating the need for manual failover. The impact of SD-WAN on our network performance provides great stability with zero downtime; it immediately switches over without any delay, not even a fraction of a second.
Fortinet addresses many vulnerabilities with respect to SSL VPN on their devices; quarterly patch upgrades are released, and the Fortinet team is retiring remote VPN services in favor of whole encrypted IPsec remote VPN to enhance security against hackers.
What is most valuable?
I have found Fortinet FortiGate's user-friendly design to be the most valuable feature so far. Anyone can easily understand how exactly it works, unlike Palo Alto and Check Point which are complex to understand.
What needs improvement?
I believe one area that could be improved in Fortinet FortiGate is posturing, specifically for remote VPN users, as there are OS-based limitations I encountered with only Windows; adding domain restrictions for VPN access would make it more competitive and useful.
For how long have I used the solution?
I have been working with Fortinet FortiGate for almost five years.
What do I think about the stability of the solution?
Overall, my impression of the stability of Fortinet FortiGate is very good, as I haven't seen any issues in the five years I've been using it, and there is no degradation of services on the firewall. However, I have observed some issues with FortiAPs, which is a different platform.
What do I think about the scalability of the solution?
Based on my experience, Fortinet FortiGate is very scalable. Earlier it was suitable for mid-infra, but now we can use the firewalls for enterprise-level needs.
How are customer service and support?
Whenever I am stuck or need help, Fortinet support is available 24/7, regardless of the time zone I'm in, and they immediately jump in to assist, provided it is licensed.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
Before implementing Fortinet FortiGate, we were using SonicWall and ASA firewalls, which have now been replaced. The reason the previous firewalls were not suitable for our company anymore is that they were not competitive; they lacked UTM features, had limited VPN capabilities, and were outdated, which led us to select Fortinet over Cisco FTD for future needs.
How was the initial setup?
It's not so complex. It's user friendly. I have implemented more than hundred devices from scratch.
What about the implementation team?
As partners with Fortinet, we are end-users of this tool for our customers.
What's my experience with pricing, setup cost, and licensing?
I am not exactly aware of the pricing of Fortinet FortiGate, but I would say it is considerably cheaper compared to other firewalls.
Which other solutions did I evaluate?
I evaluated other options, particularly Palo Alto. Fortinet FortiGate is user-friendly and as competitive as Palo Alto, Check Point, and FTD. It has the same features as other vendors but at a lower cost.
What other advice do I have?
I would rate Fortinet FortiGate a ten out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. partner