No more typing reviews! Try our Samantha, our new voice AI agent.
Jesutofunmi Ajekola - PeerSpot reviewer
Information Technology Support Analyst at COMERCIO PARTNERS
Real User
Top 20
Dec 8, 2025
Unified security has improved perimeter protection and optimized multi-link WAN performance for cloud workloads
Pros and Cons
  • "The impact of SD-WAN on my network performance is clear, and if we speak about Fortinet Unified SASE, it is effective for me."
  • "In terms of pricing, the solution is a bit expensive, but I think it was a better option than Checkpoint, which is why I replaced it."

What is our primary use case?

Fortinet FortiGate serves as our perimeter network firewall for our internal needs, and we also use SD-WAN to combine several internet service providers. I have experience with integration of SD-WAN capabilities, and I can explain my feedback on this.

What is most valuable?

The impact of SD-WAN on my network performance is clear, and if we speak about Fortinet Unified SASE, it is effective for me. My experience with this unified agent brings some examples to mind.

What needs improvement?

There are some areas for improvement in Fortinet FortiGate, including some small challenges I have faced.

For how long have I used the solution?

I have been using Fortinet FortiGate for about two years.

Buyer's Guide
Fortinet FortiGate
September 2026
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: September 2026.
913,924 professionals have used our research since 2012.

What do I think about the stability of the solution?

I do not work with Fortinet FortiGate Data Center solution, and in general, Fortinet FortiGate is stable. I never see any crashes or downtime; it performs fine overall, but I wonder if it is also scalable or if there may be some limitations, possibly regarding cost to scale.

What do I think about the scalability of the solution?

I never see any crashes or downtime; it performs fine overall, but I wonder if it is also scalable or if there may be some limitations, possibly regarding cost to scale.

How are customer service and support?

I would give technical support from Fortinet nine points as well, noting that only the licensing model could be a bit improved, and all the rest is fine.

Which solution did I use previously and why did I switch?

In terms of pricing, the solution is a bit expensive, but I think it was a better option than Checkpoint, which is why I replaced it.

How was the initial setup?

Since implementing Fortinet FortiGate, I have not seen significant changes in ROI, but what I can share about deployment is that Fortinet FortiGate is easy to deploy.

What about the implementation team?

I deploy the solution on the cloud.

What was our ROI?

Since implementing Fortinet FortiGate, I have not seen significant changes in ROI.

What's my experience with pricing, setup cost, and licensing?

In terms of pricing, the solution is a bit expensive, but I think it was a better option than Checkpoint, which is why I replaced it.

Which other solutions did I evaluate?

In terms of pricing, the solution is a bit expensive, but I think it was a better option than Checkpoint, which is why I replaced it.

What other advice do I have?

I am working with Fortinet FortiGate as a customer. I purchased the product from Fortinet directly, and if we speak about integration of SD-WAN with Fortinet FortiSASE, it has a positive impact on application performance in my case. For SD-WAN, I am not using it, so I would rate my overall experience with Fortinet FortiGate as nine out of ten points. I don't want to see new features included or new integrations for now.

Which deployment model are you using for this solution?

Public Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Bernard Samontanes - PeerSpot reviewer
Staff Infrastructure & Security Engineer at Mozn Systems
Real User
Top 5
Jun 14, 2025
Cost-effective and flexible with good integration capabilities
Pros and Cons
  • "The best feature of Fortinet FortiGate is the IPS or IDS implementation. I appreciate most the agility or the flexibility to create hashes to block incoming threats, and I can integrate with third-party threat intelligence with our FortiGate."
  • "The best feature of Fortinet FortiGate is the IPS or IDS implementation."
  • "They have recently acquired a CNAP solution which should be integrated into FortiGate boxes natively for protection at any application layer. Since Fortinet FortiGate has Layer 7 protection, they should integrate that as soon as they can for threat detection and network detection."
  • "At the moment, if you don't integrate any third-party solution with a simple Fortinet FortiGate box, the box would not function as expected for superb protection."

What is our primary use case?

We have configured it in our data center.

What is most valuable?

The best feature of Fortinet FortiGate is the IPS or IDS implementation. I appreciate most the agility or the flexibility to create hashes to block incoming threats, and I can integrate with third-party threat intelligence with our FortiGate.

SD-WAN is another beneficial feature of Fortinet FortiGate. It offers flexibility in terms of adding multiple network connectivity and building your own network. It's the replacement for traditional VPN solutions. With SD-WAN, I can connect my remote office quickly and add additional or multiple network connectivity to provide redundancy on my network. This is the simple part of that.

The effectiveness of Fortinet unified SASE in providing consistent security policies across multiple locations is very good. In FortiSASE, they have integration with FortiGate. As a network security individual in a company, you can provide a single view of policy, monitor them, audit them, or in one screen, you can see the activity of your users, the behavior of your users, and in contrast, you can see the possibility of tracing the users whenever they have some threats.

What needs improvement?

Whenever I perform a firmware upgrade or any upgrade on a VM, there are instances where the routing gets lost in the configuration itself on the running VM. 

They have recently acquired a CNAP solution which should be integrated into FortiGate boxes natively for protection at any application layer. Since Fortinet FortiGate has Layer 7 protection, they should integrate that as soon as they can for threat detection and network detection. At the moment, if you don't integrate any third-party solution with a simple Fortinet FortiGate box, the box would not function as expected for superb protection. Compared to others, Palo Alto has more integration. 

I'm waiting for Fortinet FortiGate to be more mature in terms of integrating AI. They already have AI automation in the configuration, but that's just the configuration. They need to address AI in threat intelligence and how they integrate with threat intelligence sources to protect customers using their Fortinet FortiGate boxes or Fortinet FortiGate VM instances.

For how long have I used the solution?

I have been working with Fortinet FortiGate for more than six years.

What do I think about the stability of the solution?

Whenever I perform a firmware upgrade or any upgrade on a VM FortiGate, there are instances where the routing gets lost in the configuration itself on the running VM. Whenever we do any upgrade or patch, we ensure we have a latest backup, and then validate every single configuration whenever we finish the upgrade or deploy the patch. This ensures there are no concerns in terms of connectivity or services that get impacted after the upgrade.

What do I think about the scalability of the solution?

This is not a criticism of FortiGate; it reflects my experience deploying several FortiGate instances across different public clouds such as AWS, OCI, Azure, and GCP. My main concern with FortiGate in OCI is its lack of support for features like auto-scaling. When you need additional CPU or bandwidth, it doesn't automatically provision those resources. Currently, in OCI, if you want to scale your FortiGate deployment, you have to shut down the instance and rebuild the virtual machine to accommodate increased capacity. For instance, when you purchase a VM instance, it may come with only four CPUs and a limited bandwidth of four Mbps. In scenarios where you need to scale up quickly, this can be a significant drawback compared to what can be achieved with Azure, AWS, and GCP.

However, I've deployed FortiGate on physical appliances in data centers in the past without any issues, as long as proper planning is done regarding the capacity of your firewall requirements. For example, if you need ten gigabits per second throughput, you should change the module and connect a ten-gig interface to the switch. The key lies in anticipating your design from the ground up, taking into account the growth in the number of users and the increase in the services you provide to your customers. This is my primary concern.

How are customer service and support?

Their support is very good. They respond quickly through their hotline number with an active subscription.

I would rate the support from Fortinet FortiGate as a nine out of ten. Sometimes if I don't escalate to our account manager, it will take the next business day for the interaction.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I previously used Cisco ASA firewall but didn't find it to be as straightforward as Fortinet FortiGate. 

How was the initial setup?

The initial setup for Fortinet FortiGate is very straightforward. As long as you have the foundation of networking and understand the east-west and north-south firewall terminology, it's quick and easy. 

The deployment would take a maximum of 30 minutes for edge layer protection and end-user protection. After that, you can enrich or enhance the policy, IPS, IDS tweaking, the built-in DDoS or UDP flooding integration.

What about the implementation team?

I performed the deployment of Fortinet FortiGate myself, and it was very easy.

What was our ROI?

I appreciate how Fortinet FortiGate, particularly in Saudi Arabia, is not as expensive compared to other competitors. The investment value is good, and technically, the value invested is worthwhile. It's a very useful tool to mitigate and protect your enterprise. I cannot speak to the financial analysis as I'm not involved in finance.

What's my experience with pricing, setup cost, and licensing?

It is cheaper and more competitive compared to other options. For example, when comparing Palo Alto products to others, Palo Alto tends to be more expensive. If you compare Cisco's platform, including Cisco Meraki, with Fortinet products, you'll notice that Cisco's offerings are generally higher priced than Fortinet's firewall solutions.

Which other solutions did I evaluate?

Before working with Fortinet FortiGate, I evaluated other firewalls such as the open-source firewall pfSense. pfSense is suitable only for small startup companies that need more financial consideration. However, in the long run, it's difficult to maintain and support without a subscription. 

I also evaluated Sophos UTM, which was acquired by Sophos from Vyatta Networks, which began as open source but was later locked down for commercial purposes.

The biggest benefit of Fortinet FortiGate among other firewalls is the community. Many adopters and companies globally are already using FortiGates. Everyone in the community is sharing, and their support is very good.

What other advice do I have?

I can recommend Fortinet FortiGate. It's a very stable next-generation firewall where the majority of the firewall features and services are in one box.

My total rating for Fortinet FortiGate is nine out of ten because there are still some missing pieces that need to be integrated with the box itself.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Fortinet FortiGate
September 2026
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: September 2026.
913,924 professionals have used our research since 2012.
Aymar Tala Defo - PeerSpot reviewer
Cyber Security Analyst at a educational organization with 10,001+ employees
Real User
Top 10
Jun 13, 2025
Powerful and offers many security features in a single box
Pros and Cons
  • "One of the best features of Fortinet FortiGate is that it's a very powerful equipment that gives many security features in a single box with good performance, and the user interface is friendly to use and configure."
  • "FortiGate can only retain logs for 24 hours or 7 days. I'm not sure if it holds them for a longer period, such as for a month. It will be useful for assessing our strategy and monitoring our environment without investing in FortiGate Analyzer. It would be beneficial if Fortinet could enhance the FortiGate by providing more statistical and monitoring views for a longer timeframe, rather than requiring access to FortiGate Analyzer."
  • "FortiGate can only retain logs for 24 hours or 7 days. I'm not sure if it holds them for a longer period, such as for a month."

What is our primary use case?

The main use case for Fortinet FortiGate is as a perimeter firewall between the internet and the LAN to protect the networks from the internet.

We are using Fortinet FortiGate in the education industry.

What is most valuable?

One of the best features of Fortinet FortiGate is that it's a very powerful equipment that gives many security features in a single box with good performance, and the user interface is friendly to use and configure. The performance is good compared to other vendors that I have used, and the price is competitive. 

I am utilizing Fortinet FortiGate's SD-WAN, and my experience in integrating the SD-WAN capabilities with Fortinet FortiGate in my network has been good. It was easy to integrate the SD-WAN capabilities with Fortinet FortiGate, and from my experience and background, it was easier with Fortinet FortiGate compared to other vendors. The monitoring after installing the SD-WAN is also easier. It is easy to see how it behaves and how the traffic goes through the different links. It's improving our performance with SD-WAN.

What needs improvement?

If you want to conduct some statistics or generate a report to understand the status of your configuration or filtering, you need FortiGate Analyzer for long-term data retention. FortiGate can only retain logs for 24 hours or 7 days. I'm not sure if it holds them for a longer period, such as for a month. It will be useful for assessing our strategy and monitoring our environment without investing in FortiGate Analyzer. It would be beneficial if Fortinet could enhance the FortiGate by providing more statistical and monitoring views for a longer timeframe, rather than requiring access to FortiGate Analyzer. Without Fortinet Analyzer, currently, I cannot see past events.

For how long have I used the solution?

I have had more than 10 years of experience with Fortinet FortiGate.

What do I think about the stability of the solution?

Fortinet FortiGate is very stable, and I have never seen a Fortinet FortiGate get stuck because of performance or memory issues. They have good hardware and ASICs, and I have not experienced any performance issues with all the features I have implemented in it.

What do I think about the scalability of the solution?

Fortinet FortiGate scales effectively, and even though I can't recall a specific use case regarding scalability, I am sure it is very scalable.

How are customer service and support?

Their support is very good. I would rate them a nine out of ten. When I open a case or provide feedback, they are very responsive. If I don’t get the answer I need, I can call them directly, which also deserves a nine.

How would you rate customer service and support?

Positive

How was the initial setup?

The initial setup is straightforward and easy.

The duration depends on the size of the installation and the features you want to implement. It can take anywhere from one day to several days. In our case, we had to install it across all our campuses. We have 12 campuses with FortiGate devices installed at the central location. The main setup took about two to three days at the main site. After that, I prepared the templates for the other sites, which took about half a day to install once they were ready. Overall, if you are trained and familiar with the FortiGate environment, it can be quite straightforward. If you're not familiar, it may take some time to read and prepare everything; however, it’s not particularly difficult.

What about the implementation team?

Typically, we have a variety of roles in our environment, so I deal with multiple tasks. We need someone who understands the network, so I also function as a network engineer. It requires knowledge of both networking and security, hence network security.

What was our ROI?

It reduces the cost of operations by automating many tasks that I would do manually. It also helps to be proactive by detecting things and proposing features to improve the security posture. In that regard, I have seen a return on investment because it reduces the cost of operations. It saves about 20% of time per month.

What's my experience with pricing, setup cost, and licensing?

The pricing is comprehensive and clear. You can easily understand what you are purchasing, including which features correspond to each license and maintenance contract. Overall, the information is straightforward. Additionally, compared to other vendors, their prices are competitive.

What other advice do I have?

I have not yet tested or installed Fortinet unified SASE, but from what I read and my knowledge, it is something that may be good to integrate with existing systems. However, I cannot confirm its effectiveness as I haven't tested it yet. I do not utilize Fortinet FortiGate's data center solution at the moment.

I didn't work with all the FortiGate equipment. Based on the equipment I worked with, I would rate it an eight out of ten. It's very good.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
reviewer2292894 - PeerSpot reviewer
General Manager at a wholesaler/distributor with 501-1,000 employees
Real User
Top 20
Mar 11, 2026
Security platform has strengthened multi-purpose protection and supports AI-driven threat defense
Pros and Cons
  • "There are several benefits that Fortinet FortiGate brings to the table, and I cannot speak of only one or two as it is too extensive."
  • "The stability and performance of Fortinet FortiGate are mixed, as some features are quite good and very stable while others are quite new and very buggy."

What is our primary use case?

There are many main use cases for Fortinet FortiGate for my clients, including network firewall, VPN, ZTNA, and SD-WAN. The firewall is basically the primary function and one of the best features in Fortinet FortiGate.

How has it helped my organization?

The AI aspect has helped to protect data centers at scale by improving the reduction of false positive errors and handling unknown threats.

What is most valuable?

I have hands-on experience with demos and implementation of Fortinet FortiGate. The AI and ML enhanced FortiGuard services are quite new, and I have some experience but not much since they are a new feature.

What needs improvement?

The stability and performance of Fortinet FortiGate are mixed, as some features are quite good and very stable while others are quite new and very buggy.

There are quite a lot of bugs in Fortinet FortiGate, and they introduce new features every day that come with problems. I think they introduce them too fast.

Fortinet brings in new products every year and acquires new companies while inventing new products, which is good but also bad because they introduce a lot of workload and problems or bugs onto the table.

For how long have I used the solution?

I have been using Fortinet FortiGate for almost three years.

What do I think about the stability of the solution?

The stability and performance of Fortinet FortiGate are mixed, as some features are quite good and very stable while others are quite new and very buggy.

What do I think about the scalability of the solution?

Scalability highly depends on the purchase decision. If the user bought the appliance, then it is not scalable, but for the VM on the software side, it can expand.

How are customer service and support?

I have some experience with Fortinet's customer service and technical support. I would rate the technical support of Fortinet on a scale of 1 to 10 around a 7 or 8, primarily because they have local operations in Thailand, so they have at least some people who can speak Thai.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I do have experience in working with technologies other than email security solutions.

How was the initial setup?

If talking about the general product, the initial setup of Fortinet FortiGate is quite straightforward, simple, and easy. However, it depends on the DNA of the product. If the Fortinet product was acquired from another company, that is a different story.

What about the implementation team?

My role is usually on the pre-sales and the POC role in integrating SD-WAN capabilities with Fortinet FortiGate. I am not involved in the implementation side and cannot tell much about it.

What other advice do I have?

In Thailand, the concept of unified SASE is not very popular because the traffic has to go through the cloud, and they are not very afraid of the cloud or highly adopting it at this time. 

I know about dynamic segmentation in Fortinet FortiGate from the book and theory side, but on the implementation side, there are not many projects that implement it that way. It is probably never done.

There are several benefits that Fortinet FortiGate brings to the table, and I cannot speak of only one or two as it is too extensive. It highly depends on the use case, and the only word I can tell is that it is very multi-purpose or all-purpose and highly usable in many use cases. 

Fortinet FortiGate is quite a mix for organizations considering it, as some products are very easy and straightforward to start, making it easy to sell, and then they can expand to other more complex and advanced products.

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Last updated: Mar 11, 2026
Flag as inappropriate
PeerSpot user
Joseph Koomson - PeerSpot reviewer
Ip Network Security Specialist at MTN Ghana
Real User
Top 5
Aug 3, 2025
Process-Level CPU Visibility: Introduce detailed CPU-usage metrics per subsystem (e.g., IPS engine, logging) so administrators can quickly identify and address performance spikes.
Pros and Cons
  • "Since deploying FortiGate 3401E clusters, we have observed: Dramatic Reduction in Risk Exposure—blocked peer-to-peer and unauthorized applications (e.g., BitTorrent) at the perimeter and east-west segments, eliminating a major source of malware and bandwidth abuse."
  • "Onboarded three times more customers without adding firewall hardware, cut network expansion capital expenses by roughly 40 percent through VDOM consolidation, reduced vulnerability remediation costs by about 60 percent thanks to automated FortiGuard updates, shortened policy-deployment time by over 50 percent, freeing up 10 plus hours of engineering effort weekly, and achieved payback on the initial FortiGate investment within 9 months via increased tenancy revenue and lower OPEX."
  • "In the past six to seven years with the Fortinet FortiGate, we've had two major downtimes, both caused by firmware upgrades."

What is our primary use case?

Our primary deployment of FortiGate 3401E (v7.2.11-17.40) is as the perimeter and east-west firewall for four geographically distributed data centers, each secured with an HA-paired cluster. We handle over 500 Gbps of mixed Layer 3 to Layer 7 traffic across our data centers, where FortiGate 3401E appliances perform deep-packet inspection, SSL/TLS termination, and real-time application control to secure critical services.FortiGate enforces blacklists for unwanted apps and CVE-based signatures, isolates services via VDOMs (enterprise, core, billing, WAF), and automatically blocks zero-day threats using FortiGuard IPS feeds

How has it helped my organization?

Since deploying FortiGate 3401E clusters, we have observed:

Dramatic Reduction in Risk Exposure. Blocked peer-to-peer and unauthorized applications (e.g., BitTorrent) at the perimeter and east-west segments, eliminating a major source of malware and bandwidth abuse. Proactive IPS signature updates from FortiGuard closed zero-day and known-CVE gaps faster than our previous Huawei solution. Enhanced Visibility & Forensics. Full-packet captures and rich metadata logging in FortiAnalyzer enable sub-minute root-cause analysis of security events. Custom dashboards surface top-talkers and rule-hit counts, letting us fine-tune policies and prove compliance to auditors. Operational Efficiency. VDOM-based segmentation simplifies multi-tenant and multi-service management within a single chassis and no additional hardware required.

What is most valuable?

Analytics with FortiAnalyzer. Being able to pull in logs not just from our FortiGates but from all our other firewalls and then get them in one view has been a game changer. Whether I’m building an executive dashboard or doing a deep dive forensics session, I get everything I need without navigating consoles.Straightforward Application Control. FortiGate spots and blocks unwanted apps (eq. like BitTorrent or streaming services) with accuracy. Segmentation with VDOMs. We’ve carved our data center into four logical ‘mini-firewalls’ enterprise, core, billing, and WAF—all on one box. Each has its own rules and logs, and any traffic between them still gets inspected. It’s like having multiple appliances without the extra hardware. Always-Up-to-Date Threat Feeds. Daily signature updates and AI-driven threat sensing mean we’re blocking the latest vulnerabilities almost as soon as they’re announced.

What needs improvement?

The CPU spikes sometimes go up to 40 percent occur during background IPS updates, but there’s no visibility into which subsystem is responsible. Current Gap: Despite scheduling daily signature downloads, updates sometimes run outside the configured window triggering unplanned performance hits.

For how long have I used the solution?

I have been working with Fortinet FortiGate for almost six to seven years.

What do I think about the stability of the solution?

six to seven years in production with only two brief downtimes
both incidents stemmed from firmware upgrade bugs and were promptly identified
infosec alerts and FortiGuard advisories guide our version choices
support response and resolution averaged four to five hours per ticket
instituted rollback validation and staging procedures to avoid repeats
outside of upgrade windows the HA clusters have delivered near-100 percent uptime

What do I think about the scalability of the solution?

It is scalable.

How are customer service and support?

For Fortinet FortiGate, I would rate their technical support a nine out of ten. Compared to other products, Fortinet FortiGate provides timely updates, even coordinating with engineers for coverage. I've worked with other products, so I recognize their strengths in terms of support.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

our core perimeter and east–west inspection point was a Huawei Eudemon firewall cluster. While it handled basic stateful filtering it lacked Deep Packet Inspection Eudemon could not parse or enforce Layer-7 application contexts, leaving blind spots for evasive or nonstandard-port traffic. it also did Granular threat Intelligence, and it was limited, and updates were infrequent, delaying remediation of newly disclosed CVEs. Unified Logging and Forensics erm the Eudemon’s logging interface offered only summary-level records, forcing manual packet captures for any detailed analysis

How was the initial setup?

implementation used FortiGate 3401E running firmware 7.2.11 build 17.40

partner provided detailed timelines and low-level designs that we followed step by step

grace period and dedicated engineer ensured any questions were answered immediately

cut-over executed without major issues or unplanned downtime

post-deployment support window allowed smooth transition to steady-state operations

overall process was seamless and delivered on schedule

What about the implementation team?

There was involvement from a partner, although I can’t recall their name off the top of my head. I believe they were based in Nigeria. They were indeed helpful. They were great. Whenever we had an issue, we could call them at any time, and they would assist us promptly. They were genuinely helpful, no doubt about that.

I believe we purchased it through the third-party vendor they provided us with. So, the third party handled the purchase, interfacing with FortiGate, while we communicated with the vendor directly, if I remember correctly.

What was our ROI?

onboarded three times more customers without adding firewall hardware
cut network expansion capital expenses by roughly 40 percent through VDOM consolidation
reduced vulnerability remediation costs by about 60 percent thanks to automated FortiGuard updates
shortened policy-deployment time by over 50 percent, freeing up 10 plus hours of engineering effort weekly
achieved payback on the initial FortiGate investment within 9 months via increased tenancy revenue and lower OPEX

Which other solutions did I evaluate?

Check Point Infinity

Strengths- mature threat prevention suite, granular policy controls, strong management console

Weaknesses – high total cost of ownership, steep learning curve and management overhead at scale

Cisco Firepower

Strengths – tight integration with existing Cisco switching and routing fabric, robust SSL decryption

Weaknesses – underwhelming layer 7 DPI performance in our live 5G billing environment; fragmented logging requiring multiple consoles; protracted support cycles

Palo Alto Networks excluded from this evaluation to diversify our vendor mix and avoid single-vendor lock-in

FortiGate emerged as the best balance of performance, visibility and TCO after six months of PoC across four data centers

What other advice do I have?

I like how the role-based access control with granular admin profiles reduces risk of misconfiguration in multi-team environments

automatic configuration backups and revision history simplify audit compliance and rollback in case of errors

built-in high availability health checks and session-sync ensure seamless failover during maintenance or hardware faults

Which deployment model are you using for this solution?

On-premises
Disclosure: PeerSpot contacted the reviewer to collect the review and to validate authenticity. The reviewer was referred by the vendor, but the review is not subject to editing or approval by the vendor.
PeerSpot user
IT Consultant at a tech services company with 1-10 employees
Reseller
Top 20
May 22, 2025
Cloud features enhance security measures and simplify network management
Pros and Cons
  • "The scalability is easy with switches and access points that are basically plug-and-play for the most part."
  • "I've never had a problem with Fortinet FortiGate support, so I'd rate it ten out of ten."
  • "For Fortinet FortiGate, their code development would definitely be something they need to improve on to reduce vulnerabilities that need to be patched."

What is our primary use case?

We use Fortinet FortiGate for any of our customers or clients that need to have more security features built-in, whether licensed or not. 

For instance, if it's a medical firm doing VPN to ensure no traffic leaks, that would be a use case. We use Fortinet FortiGate for anything that needs specific features, such as SD-WAN or other security features, including malware checking and blocking. We also use it for Zero Trust.

How has it helped my organization?

It differs for everyone with Fortinet FortiGate, but one benefit was checking for malware on incoming traffic or security issues, compared to a users using a residential router off the shelf. 

The second benefit was properly dividing up the network, which helps us significantly.

Users benefit from a recognizable brand and good security features. 

What is most valuable?

Ease of use is one feature of Fortinet FortiGate, and the Cloud Controller and Cloud Connector are the second one; these are the two main features that are quite useful. For example, with the Cloud Connector in Fortinet FortiGate, if a user has an issue, we can see it directly without having to build a VPN tunnel or something of that nature.

From time of deployment, users tend to see benefits once there's a major event that stops. From my end, I see benefits right away.

What needs improvement?

For Fortinet FortiGate, their code development would definitely be something they need to improve on to reduce vulnerabilities that need to be patched. 

Additionally, if I were to suggest another improvement, it would be their competitive pricing.

For how long have I used the solution?

I have had experience with Fortinet FortiGate for six years.

What do I think about the scalability of the solution?

With Fortinet FortiGate, scalability is good; it's very easy to scale with them. 

The only downside is sometimes you can't just cut over, so if you go from a bigger model. Or if you need to upgrade the model, you would have to reprogram it, compared to just importing and exporting, which can be time-consuming. 

The scalability is easy with switches and access points that are basically plug-and-play for the most part.

How are customer service and support?

I've never had a problem with Fortinet FortiGate support, so I'd rate it ten out of ten. However, if you don't have a support contract, it's not easy to get support.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I've dealt with many firewalls, such as SonicWalls, UniFi, pfSense, and Cisco. We found SonicWall very confusing for the average network engineer or network administrator. I don't recommend SonicWall due to its hard-to-find auditing process for exploits. Although they have fewer exploits, when they do occur, they're significant.

With Fortinet FortiGate, you can access the whole firewall, with no hidden spots. pfSense is great, however, it requires a lot of manual work and has no Cloud Connect or easy management from an MSP's perspective. 

Palo Alto is another option that's great, but their price point isn't for everyone, especially for medium and small businesses; a $10,000 investment doesn't necessarily fit into most budgets.

UniFi is another product we've started to use more alongside Fortinet FortiGate, as they have almost all features without a license, with advanced rules that are relatively inexpensive compared to Fortinet FortiGate's $1,500 a year. 

Fortinet FortiGate and UniFi are the two firewalls we primarily deal with. My opinion is that UniFi has better integration and oversight of the environments compared to Fortinet FortiGate.

How was the initial setup?

From an average user's perspective, setting up Fortinet FortiGate is quite complex; most people don't understand the terminology, so I'd rate that complexity at a high nine out of ten. From an MSP's perspective, it's probably about a five or six out of ten in terms of difficulty; it's easy for us as an MSP. For the end-user, it would be really complicated. 

For Fortinet FortiGate, deployment takes approximately two to three hours.

What about the implementation team?

From our side, as an MSP, we require one person for Fortinet FortiGate. That job role is network administration.

What was our ROI?

For Fortinet FortiGate, calculating the return on investment is complex. 

The ROI is seen almost immediately in terms of security and protection against malicious attacks. While you never really get your money back in terms of direct investment, you get the security and protection benefits immediately. 

Fortinet FortiGate provides cost savings since you wouldn't need extra security features; you don't have to have four other programs for all the other parts of the environment, as it takes care of most of that.

What's my experience with pricing, setup cost, and licensing?

I'd rate the pricing eight out of ten. 

The Fortinet FortiGate security features cost approximately $1,500 a year. The firewall itself doesn't have a recurring cost. It's the security features on top of that that you pay for.

What other advice do I have?

I recommend Fortinet FortiGate. 

It's always updating the security package and security features. 

I have not looked into the solution's AI features.

Overall, on a scale of one to ten, I would rate Fortinet FortiGate a nine. I'd recommend the solution to others. It's always updating its security features. 

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Nitin Yadav - PeerSpot reviewer
Network & Security Engineer at Arrow PC Network Pvt.Ltd.
Real User
Top 5Leaderboard
Mar 30, 2026
Centralized security management has improved policy control and simplified daily operations
Pros and Cons
  • "By implementing Fortinet FortiGate in our organization, we can control applications and block unauthorized apps, and control security platform features such as policy enforcement and SD-WAN streaming particularly improve our work by reducing manual configuration across multiple devices, allowing faster change implementation, and reducing troubleshooting time."
  • "We can improve the UI readability when working with large configurations."

What is our primary use case?

I use Fortinet FortiGate in security and policy for security profiles, blocking and allowing for certification on a day-to-day basis.

I block Gmail and personal mail along with other applications. We block webmail and allow corporate mail, Microsoft 365, and block unwanted categories such as pornography and weapons while implementing URL filtering.

Global systems use standard Fortinet terminology. We use FortiManager and FortiAnalyzer, where FortiAnalyzer is used for logging and FortiManager is used for centralized management across multiple gateway devices.

By implementing Fortinet FortiGate in our organization, we can control applications and block unauthorized apps.

Control security platform features such as policy enforcement and SD-WAN streaming particularly improve our work by reducing manual configuration across multiple devices, allowing faster change implementation, and reducing troubleshooting time.

This control typically leads to measurable outcomes across operations, security, and performance.

We use Fortinet FortiGate on-premises and in the public cloud.

What is most valuable?

In my experience, the best feature Fortinet FortiGate provides is its impressive logging system, which is very easy to read to understand what the issue is.

The SD-WAN feature is very valuable for us. By integrating SD-WAN, we can manage our ISP links and SD-WAN rules.

Using SD-WAN on Fortinet FortiGate provides lower latency and stability improvements, critical application routing via lower latency links, reduction in jitter and packet loss, with both links actively used instead of one idle backup, leading to better bandwidth utilization.

The biggest strength is the consolidated platform that combines firewall, SD-WAN, VPN, and security stack in one device.

What needs improvement?

We can improve the UI readability when working with large configurations. I chose a rating of nine because of the troubleshooting power and launch issues. We need CLI debug capabilities in addition to the UI.

For how long have I used the solution?

I have been working in my current field for the last three years.

What do I think about the stability of the solution?

Fortinet FortiGate is a stable and scalable firewall.

What do I think about the scalability of the solution?

Fortinet FortiGate is manageable on one platform, but scalability depends on how we scale. Model ranges for small branches and high-end applications are delivered easily by moving to a higher model.

How are customer service and support?

Support is also good.

Which solution did I use previously and why did I switch?

I previously used Sophos firewall before moving to Fortinet FortiGate.

What about the implementation team?

We evaluated other options such as Palo Alto before choosing Fortinet FortiGate. We evaluated both Palo Alto and Sophos firewalls during our selection process.

What was our ROI?

It is a time-saving product.

What's my experience with pricing, setup cost, and licensing?

My experience with pricing, setup cost, and licensing for Fortinet FortiGate is generally positive from a value perspective.

What other advice do I have?

I advise others to use Fortinet FortiGate, considering the firewall size, throughput including IPS, SSL-VPN, web filtering throughput, VPN load, and UTM versus Enterprise bundle.

Which deployment model are you using for this solution?

Hybrid Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Last updated: Mar 30, 2026
Flag as inappropriate
PeerSpot user
reviewer2379771 - PeerSpot reviewer
IT Professional at a wholesaler/distributor with 51-200 employees
Real User
Top 20
May 29, 2025
Ease of setup and cost-effectiveness but support needs improvement
Pros and Cons
  • "The primary feature I appreciate about Fortinet FortiGate is the ease of setup."
  • "The AI with Fortinet FortiGate is not very well integrated on their devices, and their cloud infrastructure is not as good as Cisco's."
  • "The support is inadequate. The support staff I have dealt with lately are very rude. Some support staff are not up-to-speed with the technology. They basically read a script."

What is our primary use case?

Fortinet FortiGate is used on three separate sites: one in Tehachapi, one in Simi Valley, California, and one in Memphis, Tennessee. I work in distribution with Fortinet FortiGate

What is most valuable?

The primary feature I appreciate about Fortinet FortiGate is the ease of setup. It's more affordable than Cisco and very configurable. When discussing configurability regarding Fortinet FortiGate, I don't have to download modules to have features such as IPSec VPN or SSL VPN - it's already there. Most of the popular features are pre-installed and I only need to configure them, unlike with MikroTik where I have to download components that may not work, and with Netgate, I can't install everything I want without uninstalling other packages.

Fortinet FortiGate is very competitive compared to Palo Alto Networks and Cisco; they are better priced than both competitors. On average, Cisco would be 10% to 20% higher than Fortinet FortiGate, and the same applies to Palo Alto.

What needs improvement?

The AI with Fortinet FortiGate is not very well integrated on their devices, and their cloud infrastructure is not as good as Cisco's. 

The support is inadequate. The support staff I have dealt with lately are very rude. Some support staff are not up-to-speed with the technology. They basically read a script. If they don't know how to fix an issue, they send me to another engineer. 

For how long have I used the solution?

I have used Fortinet FortiGate since 2012.

How are customer service and support?

The support is inadequate. The Fortinet FortiGate support staff I have dealt with lately are very rude and some of them are not up-to-speed with the technology; they basically read a script. If they don't know how to fix an issue, they send me to another engineer. The last representative I had to deal with was very rude to me. 

How would you rate customer service and support?

Neutral

Which solution did I use previously and why did I switch?

I wasn't involved in the decision of picking Fortinet FortiGate, however, before we switched over, we were using SonicWall firewall appliance.

How was the initial setup?

I was part of the initial setup of Fortinet FortiGate. When it was originally set up, on a scale between one to ten, with ten being really easy to set up, I would rate it about an eight or nine.

When we first deployed Fortinet FortiGate, it was just me, and one person could actually deploy it in three sites, so it's relatively easy.

Once we deployed the last time, we actually moved our whole management of it to a third party. They manage our Fortinet for us now. It's supposed to be easy, however, during the last deployment, when they upgraded us, there was some project management snafu. That said, that's not a Fortinet issue. When I was deploying it, it was relatively easy. 

What's my experience with pricing, setup cost, and licensing?

Currently, we are paying about $1,500 a month for three sites. We have a company that leases the equipment from Fortinet FortiGate, configures it, and I tell them what features I want on and off and how to secure it. We paid about $1,500 on the last contract, and it's probably going to go up this year.

Which other solutions did I evaluate?

I've also evaluated other options. Other than price, Cisco has a better cloud management infrastructure, while Palo Alto has better security features such as deep packet inspection algorithms and AI integration on their devices.

What other advice do I have?

I would recommend Fortinet FortiGate if you have a small to medium business, which we have. For a large business with multiple campuses, Fortinet FortiGate is probably not going to work for you. 

On a scale of one to ten, I give this solution a rating of seven.

Which deployment model are you using for this solution?

On-premises

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Other
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
UC Solutions Architect at a comms service provider with 10,001+ employees
Reseller
Top 5
Aug 15, 2025
Next-gen firewall strengthens security focus and offers valuable features while opportunities for application identification improvements remain
Pros and Cons
    • "The FortiGate Next Generation Firewall (NGFW) could be improved in application control if they can have a bigger baseline of applications that they can identify, because this is something that is always growing."

    What is our primary use case?

    We deploy the FortiGate Next Generation Firewall (NGFW) mainly in education, with retail, big retails, and other industries such as manufacturing, agriculture, and some banking.

    What is most valuable?

    Some of the best features with the FortiGate Next Generation Firewall (NGFW) particularly are its security focus, the easy to configure IPS, the Layer 7 capabilities, and the easy way to configure different VDOMs in each equipment so we can separate the different features or the different sites that the client may use in one data center.

    The application control feature has helped manage the network traffic with filtering and antivirus capabilities. When we use it in SD-WAN solutions, we can apply in a unified and easy way the different profiles for each branch, and we can also have one profile for the hub if they have a data center with some servers connecting to the FortiGate. We can have different profiles, and it helps us to detect easily any threat that we may have in the network and control the outbound traffic to the internet, restricting those applications or those web services that the final users don't need to have access to.

    The FortiGate Next Generation Firewall (NGFW)'s anti-malware protection is very effective, as we have demonstrated through our work with this feature.

    The FortiGate's analytic tools have provided insights into network security events by implementing the IOC license, Indicator of Compromise, in some customers, which has been very helpful because it demonstrates that we can identify the threats more easily or the difference in the way that the customers use the network. We can identify the possible behavior of the customers on the network and can identify the possible threats and isolate that customer if we receive any threat for the network or the company.

    The web filtering has also helped for maintaining network security because we have been implementing some filters in customers so they don't have access to potential sites that can make a threat to our network, for example, to access peer-to-peer networks or any other sites that are not allowed in the company.

    What needs improvement?

    The FortiGate Next Generation Firewall (NGFW) could be improved in application control if they can have a bigger baseline of applications that they can identify, because this is something that is always growing. I know that Fortinet with the team is updating this database, but it's something that grows at a pace that is very difficult sometimes to keep up. This applies to all vendors, not only Fortinet.

    How are customer service and support?

    I would rate their support for the FortiGate Next Generation Firewall (NGFW) on a scale of one to ten as 7.5.

    How would you rate customer service and support?

    Positive

    What's my experience with pricing, setup cost, and licensing?

    The pricing for the FortiGate Next Generation Firewall (NGFW) is fair.

    What other advice do I have?

    My company has a business relationship with Fortinet as we are both resellers and we also use the technology. If they had any questions regarding my feedback on the FortiGate solution, not the NGFW, but the FortiGate, it would be okay for them to contact me in that regard. I rate the FortiGate Next Generation Firewall (NGFW) 8.5 out of 10.

    Which deployment model are you using for this solution?

    On-premises

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Yaw Agyare - PeerSpot reviewer
    Manager at Volta River Authority
    Real User
    Top 5
    May 31, 2025
    Ensures business continuity with reliable internet connectivity and robust security features
    Pros and Cons
    • "Stateful packet inspection is valuable. It also does SSL packet inspection. It is able to provide a VPN for remote users with secure connectivity."
    • "For the performance they provide, the price is acceptable."
    • "I wish that they could integrate zero-trust technology into Fortinet FortiGate. I am not sure whether it has been done already, but if they could implement that, it would help significantly."

    What is our primary use case?

    We are using it for perimeter security. By implementing Fortinet FortiGate, we wanted to have secure internet access to our network and prevent cyber risks.

    How has it helped my organization?

    The content filtering and URL filtering capabilities, along with packet content filtering, are very good. It helps us restrict internet traffic during working hours to legitimate work-related traffic. Workers are only able to access social media, YouTube, and similar sites after work hours.

    It helps in protecting the edge significantly because we are able to determine what must be accepted and what must not be accepted. We also have FortiAnalyzer, which is the log analyzer for Fortinet FortiGate. Being AI-driven, it helps us see what is happening and new emerging threats quickly. We are able to make the necessary interventions to protect the network.

    We are using QRadar as a SIEM, and Fortinet FortiGate integrates with it seamlessly. FortiAnalyzer picks all logs from Fortinet FortiGate, integrates with QRadar, and allows us to see everything. It also integrates beautifully with our EDR from WithSecure.

    It also helps reduce power consumption. Fortinet FortiGate is a greener listing in terms of power consumption.

    What is most valuable?

    Stateful packet inspection is valuable. It also does SSL packet inspection. It is able to provide a VPN for remote users with secure connectivity. Being a next-generation firewall, it helps. 

    It has been able to host internet feeds from two different ISPs, with one as a backup. We've two internet services on Fortinet FortiGate. We have been able to deploy it in a high-availability mode. We have redundancy. When there is a problem with one, the other picks up quickly, ensuring business continuity. 

    What needs improvement?

    I wish that they could integrate zero-trust technology into Fortinet FortiGate. I am not sure whether it has been done already, but if they could implement that, it would help significantly.

    For how long have I used the solution?

    I have been using it for about ten years now.

    How are customer service and support?

    Their support is good. 

    How would you rate customer service and support?

    Positive

    Which solution did I use previously and why did I switch?

    I didn't use any similar solution previously.

    How was the initial setup?

    I wasn't involved in the recent deployment. 

    It was quite quick. The last deployment was more of a migration, where we migrated from an old platform to a new platform. It was a matter of hours because the configs had been backed up. In eight hours, we were done completely.

    What about the implementation team?

    We had two people from my side and two from Fortinet's side.

    What was our ROI?

    If we look at the average revenue loss due to downtime, even if I conservatively put it at $10,000 an hour, we have paid back the investment within six months.

    Compared to a sister company that did not take security seriously and lost significant money through ransomware attacks and outages, we have not experienced a single successful ransomware attack. In one instance, we were able to thwart an attack by detecting the initial steps quickly through EDR and FortiAnalyzer. We saw the footprints and stopped it before it reached the encryption phase of the ransomware attack.

    The analysis being AI-based helped us quickly pick up unusual activity. Once alerted, we were able to quickly identify the affected nodes, isolate them, and stop the attack.

    It has reduced the total cost of ownership by 10%.

    What's my experience with pricing, setup cost, and licensing?

    For the performance that we get, the price is reasonable. There are cheaper options, but they may not deliver the same kind of performance that we want. For the performance they provide, the price is acceptable.

    What other advice do I have?

    Currently, there is a project we are doing to converge OT and IT using Fortinet FortiGate, because of the cluster we have. Fortinet FortiGate is going to broker the convergence between IT and OT. We want to make the convergence one-way, with only read-only data coming from OT into IT.

    They keep bringing new versions and firmware updates, making sure that their products are always relevant. They are always providing what the industry needs.

    We have implemented FortiAnalyzer. We are also looking seriously at FortiIdentity to help us with enterprise single sign-on and multi-factor authentication. Because we already have Fortinet FortiGate in the system, we are seriously considering other Fortinet solutions.

    I would rate this solution a nine out of ten.

    Which deployment model are you using for this solution?

    On-premises
    Disclosure: My company does not have a business relationship with this vendor other than being a customer.
    PeerSpot user
    Buyer's Guide
    Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.
    Updated: September 2026
    Buyer's Guide
    Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.