Try our new research platform with insights from 80,000+ expert users
PeerSpot user
Network Security Coordinator at a energy/utilities company with 1,001-5,000 employees
Real User
Jul 11, 2017
The VPN capabilities provide a reliable connection to our corporate network over low cost internet services.
Pros and Cons
  • "LinkGreat firewall capabilities"
  • "These devices allowed my organization to connect a network of gas stations and convenience stores nationwide."
  • "Stability and technical support are the two major issues I have found with Fortinet."
  • "Stability and technical support are the two major issues I have found with Fortinet."

How has it helped my organization?

These devices allowed my organization to connect a network of gas stations and convenience stores nationwide. The VPN capabilities provide a reliable connection to our corporate network over very low cost internet services (basically, any Internet service locally available can be used for this connections).

We also leverage the NGFW, UTM and WLAN controller features to provide security for corporate network traffic, and secure, content-filtered guest internet access for customers in the convenience stores. All this at a relative low cost.

What is most valuable?

  • LinkGreat firewall capabilities
  • Great IPS and web filter for small remote locations, with VPNs for tunneling to the corporate network, makes this device a solid choice for many sites.

What needs improvement?

Stability and technical support are the two major issues I have found with Fortinet.

What do I think about the stability of the solution?

We’ve had cases of unexplained bugs that go away with a simple device reboot. Software updates usually help with these issues.

Buyer's Guide
Fortinet FortiGate
March 2026
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: March 2026.
884,933 professionals have used our research since 2012.

What do I think about the scalability of the solution?

I have personally found that Fortinet advertising can be misleading. The devices will usually fail way before reaching the capacity advertised in the data sheets, especially when you activate several of the features the device can handle. This is not a dealbreaker for me, especially because of the cost. But I would advise care when dimensioning the devices you’ll need.

How are customer service and support?

Customer Service:

Customer service in Fortinet is OK. Lately they've been making efforts in this area. They actually call you when licenses are about to expire which is a nice touch on their part.

Technical Support:

I would say technical support is 6/10. I’ve found tech support to vary, sometimes being decent, sometimes painfully inefficient. Much room for improvement here IMHO.

Which solution did I use previously and why did I switch?

We still use Cisco for some cases. However, where we need the advanced security and UTM features, Cisco’s prices can be very restrictive. Fortinet is a much more cost-effective choice for those cases.

How was the initial setup?

Initial setup was very straightforward. Interface is very friendly and easy to comprehend.

Which other solutions did I evaluate?

Before choosing this product, we also evaluated Cisco.

What other advice do I have?

Be careful with dimensioning. Don’t expect the device to handle ALL the features. Usually firewall, Web Filter and the WLAN controller work well. But if you need IPS, app control and AV, I would advise over-dimensioning the device a bit (taking Fortinet data sheets as the reference).

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Vendor
Jul 10, 2017
We use it as an internal firewall for VLAN segmentation.
Pros and Cons
  • "Layer-3 firewall and routing are the most valuable features."
  • "It's a user-friendly and stable firewall."
  • "They should improve high CPU and memory usage that occurs."
  • "They should improve high CPU and memory usage that occurs."

How has it helped my organization?

We have secured our LAN IP subnets with VLAN segregation.

What is most valuable?

Layer-3 firewall and routing are the most valuable features. We use it as an internal firewall for VLAN segmentation.

What needs improvement?

When we need to enable Netflow on the firewall, there is a high CPU and memory usage that occurs. They should improve that high CPU and memory usage that occurs.

What do I think about the stability of the solution?

There were no stability issues.

What do I think about the scalability of the solution?

There were no scalability issues.

How are customer service and technical support?

Technical support is good.

Which solution did I use previously and why did I switch?

We were previously using the Check Point and Palo Alto software. The price and user-friendly GUI are the reasons that we switched to this solution.

How was the initial setup?

It is an easy setup and configuration.

What other advice do I have?

It's a user-friendly and stable firewall. You can safely use it for all small and big LAN networks.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Fortinet FortiGate
March 2026
Learn what your peers think about Fortinet FortiGate. Get advice and tips from experienced pros sharing their opinions. Updated: March 2026.
884,933 professionals have used our research since 2012.
it_user454521 - PeerSpot reviewer
Deputy Chief Manager at a newspaper with 5,001-10,000 employees
Vendor
Jun 26, 2017
It has given us improved security over the internet. It is easy to use with a single console and unified threat management features.
Pros and Cons
  • "Unified Threat Management (UTM) features."
  • "Ease of use, single console, Unified Threat Management (UTM) features."
  • "NGN, reporting and controls."
  • "There was a hardware limitation, affecting scalability."

How has it helped my organization?

It has given us improved security over the internet.

What is most valuable?

Ease of use, single console, Unified Threat Management (UTM) features.

What needs improvement?

NGN, reporting and controls.

What do I think about the stability of the solution?

We had some stability issues but we upgraded.

What do I think about the scalability of the solution?

There was a hardware limitation, affecting scalability.

How are customer service and technical support?

I would rate the technical support as 8/10.

Which solution did I use previously and why did I switch?

We had a different solution in the organization arising from different OEMs and this solution was chosen with consideration of requirements and costs.

How was the initial setup?

The initial setup was simple but the DC was complex.

What's my experience with pricing, setup cost, and licensing?

Go for long term pricing negotiated at the time of purchase.

Which other solutions did I evaluate?

We evaluated Check Point, Cisco ASA.

What other advice do I have?

You should be clear concerning the scope and outcome you are looking for.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user677703 - PeerSpot reviewer
Superintendent, Process Automation and Safety at a pharma/biotech company with 5,001-10,000 employees
Real User
Jun 6, 2017
Allows for firewall rules to be programmed and named in a way that makes it readable.
Pros and Cons
  • "Allows for firewall rules to be programmed and named in a way that makes it “readable”"
  • "It is an excellent product and works extremely well."
  • "It would be nice if backups could more easily migrate between different models."
  • "It is difficult as an end-user to setup continuing license contracts."

What is most valuable?

  • Flexible enough to handle everything we could want
  • Configuration layout is easily understandable
  • Allows for firewall rules to be programmed and named in a way that makes it “readable”
  • VPN support and some anti-virus protection.

What needs improvement?

It would be nice if backups could more easily migrate between different models.

What do I think about the stability of the solution?

I did not encounter any issues with stability.

What do I think about the scalability of the solution?

No scalability issues, but communications is severely limited in our case by design.

Which solution did I use previously and why did I switch?

They were our first firewalls on site.

How was the initial setup?

It does require someone knowledgeable in routing, firewall rules, and these firewalls in particular. Once it is set up, they are easy to modify and maintain.

What's my experience with pricing, setup cost, and licensing?

It is difficult as an end-user to setup continuing license contracts. It is possible to do between emails and their website, but it is practically impossible to find a phone number to call anyone directly.

Which other solutions did I evaluate?

We considered SonicWall .

What other advice do I have?

It is an excellent product and works extremely well. If it is set up in a logical way, it is very easy to understand and modify. It is highly recommended to have a service “expert” familiar with these to set it up initially with customer direction.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Hamza_Farhan - PeerSpot reviewer
Hamza_FarhanProfessioan Services Engineer at a tech vendor with 501-1,000 employees
Real User

The easy way to migrate from one model to another is taking the config file and modify it manually, say rename port WAN to port-1 ( sometimes you need to modify the syntax of commands when moving between different versions) and upload the config back. Another method is to divided the config file to multiple sections say interfaces , NAT policies , Firewall ACLS / objects / object groups , then modify every part as required and upload them one-by-one.

PeerSpot user
Senior Security Consultant with 501-1,000 employees
Real User
Mar 23, 2017
They added a valuable WAF feature to the latest version.
Pros and Cons
  • "ROI is very high, it has hands-down the best price/performance/features ratio in the market."
  • "The tech support is not excellent; this is where Fortinet saves money compared to others... But plenty of free, clear and public documentation is available and this compensates for the most part the tech support shortcomings."

What is most valuable?

  • Complete and cost-effective next-generation firewall features with app identification, and IPS and URL filtering with SSL inspection.

How has it helped my organization?

  • Better manageability
  • Straightforward deployments
  • Streamlined and reliable upgrades

Customers have more time to focus on security because maintaining the firewalls is completely hassle-free.

What needs improvement?

Grouping/tabbing (not only by interface) in the policy table of the web GUI would be a great addition.

For how long have I used the solution?

I have used it for two years.

What was my experience with deployment of the solution?

We have not encountered any deployment issues.

What do I think about the stability of the solution?

We have not encountered any stability issues. Stability has dramatically improved over the previous main version branch of FortiOS; 5.2.x and 5.4.x are stable enough for critical environments.

What do I think about the scalability of the solution?

We have not encountered any scalability issues; proven that you properly sized the FortiGate model that fits your environment.

How are customer service and technical support?

Customer Service:

Customer service is sufficient.

Technical Support:

The tech support is not excellent; this is where Fortinet saves money compared to others... But plenty of free, clear and public documentation is available and this compensates for the most part the tech support shortcomings.

Which solution did I use previously and why did I switch?

We previously used Cisco ASA. We switched because the old ASA has no next-generation features.

How was the initial setup?

IMHO It is the most straightforward enterprise-level next generation firewall.

What about the implementation team?

All implementations were done in-house.

What was our ROI?

ROI is very high, it has hands-down the best price/performance/features ratio in the market...

What's my experience with pricing, setup cost, and licensing?

The licensing model is straightforward, easy to understand and purchase; prices are fairly low compared to other vendors.

Which other solutions did I evaluate?

Before choosing this product, we also evaluated Check Point and Palo Alto Networks.

What other advice do I have?

In version 5.4, they added a WAF feature that is absolutely unique for this kind of product; no other NGFW product can also be a WAF and this is a great added value...

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
IT Infrastructure Engineer at a tech company with 11-50 employees
Real User
Mar 15, 2017
FortiGate/FortiWiFi; FortiManager; FortiAnalyzer
Pros and Cons
  • "Fortinet solutions are very easy to implement, proven, certified and tested."
  • "They could improve vulnerability scanning."

What is most valuable?

FortiGate/FortiWifi:

  • IPS
  • Application control
  • IPsec & SSL VPN
  • Web filtering
  • E-mail security
  • Data leak prevention
  • Wireless security and wireless controller
  • Central antivirus (FortiClient)
  • HW & SW token controller (FortiToken) etc.
  • FortiManager
  • Central management
  • Administrative domains (can group devices according to geographical are, functionality, admins, etc.)
  • FortiGuard management
  • Logging and reporting
  • Configuration version control and tracking
  • Firmware management
  • Scripting

  • FortiAnalyzer
  • Centralized security log analysis and forensics
  • Centralized graphical reports
  • Customized reports
  • Scheduled reports
  • Queries
  • Content archiving/data mining

How has it helped my organization?

Routing and security policies, central management and all of the other features help us to improve network performance and implement organization policies.

What needs improvement?

They could improve vulnerability scanning.

For how long have I used the solution?

I have used it for three years.

What do I think about the stability of the solution?

We encountered a few stability issues; maybe one case per year.

What do I think about the scalability of the solution?

I did not encounter any scalability issues.

How are customer service and technical support?

Technical support is 10/10. They respond and offer solutions very fast.

Which solution did I use previously and why did I switch?

We previously used Cisco solutions. They are more expensive, have fewer features, are more difficult to use, and response and help from
technical support is not quick.

How was the initial setup?

For Fortinet solutions, the initial setup is very easy.

What's my experience with pricing, setup cost, and licensing?

They are very cheap compared to other vendors.

What other advice do I have?

Fortinet solutions are very easy to implement, proven, certified and tested.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
ICT Manager at a aerospace/defense firm
Real User
Jan 25, 2017
Virtual domains are treated as separate firewall instances
Pros and Cons
  • "You can create multiple Virtual Domains (VDOMs), which are treated as separate firewall instances."
  • "The reporting you receive out of this appliance is excellent. You will not need an external management system."
  • "The user interface is relatively easy. The devices are easy to deploy and figure out when you have experience with other security appliances."
  • "The ROI is great, as these boxes are not that expensive compared to what they can do, their functionality, and the reporting you receive."
  • "I could not configure sFlow from the FortiGate graphical user interface. I realized that the sFlow configuration is available only from the CLI, and discovered that sFlow is not supported on virtual interfaces, such as VDOM links, IPsec, or GRE."
  • "There is one big configuration file with no separations for the unique VDOMs. Maybe they could separate individual VDOM configuration files with the root VDOM configuration file referencing the individual VDOM config files.​"
  • "I could not configure sFlow from the FortiGate graphical user interface. I realized that the sFlow configuration is available only from the CLI, and discovered that sFlow is not supported on virtual interfaces, such as VDOM links, IPsec, or GRE."

How has it helped my organization?

There is no need to buy physical firewall hardware when you host multiple customers requiring individual secure access to their FW. You just create virtual domains (VDOMs).

What is most valuable?

You can create multiple Virtual Domains (VDOMs), which are treated as separate firewall instances. The reporting you receive out of this appliance is excellent. You will not need an external management system.

What needs improvement?

1. sFlow and NetFlow

I could not configure sFlow from the FortiGate graphical user interface. I realized that the sFlow configuration is available only from the CLI, and discovered that sFlow is not supported on virtual interfaces, such as VDOM links, IPsec, or GRE.

NetFlow is a network protocol developed by Cisco for collecting IP traffic information and monitoring network traffic. It is not supported on FortiGate for those who have a NetFlow analyzer/collector already setup in their network.

2. Policies

To control traffic in a firewall, you need to create and apply policies to the FW interfaces. By default, policies are sorted by FW interfaces and this makes FW interfaces an integral part of the policies. Zones provide the option to logically group multiple virtual and physical FortiGate firewall interfaces. Then, you apply security policies to those zones (logical groups of interfaces) to control traffic flow on those interfaces.

In a FortiGate unit with a lot of interfaces (including virtual interfaces), there is a high probability of having duplication of policies.

For how long have I used the solution?

Three to five years.

What do I think about the stability of the solution?

These devices are very stable.

What do I think about the scalability of the solution?

They are easily scalable with multiple built-in interfaces. It supports a minimum of 10 VDOMs. VDOM supports all dynamic routing protocols like RIP, OSPF, BGP, and IS-IS. You do not need to reboot after enabling the VDOMs.

Area for improvement - there is one big configuration file with no separations for the unique VDOMs. Maybe they could separate individual VDOM configuration files with the root VDOM configuration file referencing the individual VDOM config files.

How are customer service and technical support?

Customer Service:

Customer service is great, an eight out 10.

Technical Support:

I will give technical support an eight out 10.

Which solution did I use previously and why did I switch?

We previously used different solutions as well. We did not switch, we have different requirements for different customers.

How was the initial setup?

The user interface is relatively easy. The devices are easy to deploy and figure out if you have experience with other security appliances.

What about the implementation team?

It was an in-house installation.

What was our ROI?

The ROI is great. These boxes are not that expensive compared to what they can do, their functionality, and the reporting you receive.

What's my experience with pricing, setup cost, and licensing?

Fortinet licensing is straightforward and less confusing compared to Cisco. Fortinet has one or two license types, and the VPN numbers are only limited by the hardware chassis make.

Which other solutions did I evaluate?

I already have experience with Cisco ASA, so it was simply a customer preference and well within the budget.

What other advice do I have?

Great appliances, and it is affordable.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Simon Chaba - PeerSpot reviewer
Simon ChabaICT Manager at a aerospace/defense firm
Real User

Hi Becky. I chose Fortigate mainly because it provides the capabilities to provide logical separate firewall instances to multiple customers. These logical firewall are know as VDOMs. I have the partitions the physical fw devices to multiple logical units thus saving costs.

See all 3 comments
PeerSpot user
Dëvóps Engineer at a tech company with 51-200 employees
Real User
Leaderboard
Jan 22, 2017
Fortigate is only cheap if you don't value your time or product quality

I have had the displeasure of having to support SOHO Fortigate offerings (Fortigate/Fortiwifi). in almost any measure, I have found these products inferior to respective solutions from cisco and juniper (two examples i've had experience with).

I'll start with the most egregious and disturbing: the product is unstable. the VPN client is crash prone and the VPN daemon is crash prone. if you want to enjoy having to drive to the office when the roads are iced because the VPN daemon just gave up the ghost again, just to reboot a unit, by all means - choose Fortigate.

I'll continue with support - pretty much a joke, although being fair here, it is similar in other respective products. by the time a competent engineer reviews your case, you may have to wade through more than a month of back and forth with t1/t2 support who offer very little usable assistance.

And final insult to injury - aggressive and clueless resellers. Fortigate tries to distance themselves from customers via resellers (as if support filtering wasn't enough). getting the wrong product or wrong configuration is very common, especially with unneeded packages.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user3483 - PeerSpot reviewer
it_user3483Senior Consultant at a financial services firm with 501-1,000 employees
Real User

Everyone writes basing on his own experience.
In this specific case (and I hope that it does not disturb you) would divide your review in two parts.

I agree with your complains regarding support.
My impression is that Fortinet prefers to delegate a big part of the problems to its reseller channel.
From then on, it is a simple matter of luck to find a company that is competent and able to help or not (I have found more often the second kind).

As you pointed out, it is not a different scenario from the one you have with other vendors, but it did NOT constitute a justification.

I do not use SOHO appliances (or not as often as you) so maybe they are not good as you noticed.
Again, probably the SOHO market, based on low prices - low quality is full of products that are not worth our time, not only the Fortinet's one.

Said so, I disagree from you about the Fortigate family of products to be not good as a whole. Their medium/high level appliances are so good (and so rich in features) that is really hard to find something like it on the market.

We are talking about UTM devices, able to replace what other vendors do with a lot of different pieces. They are not hard to configure (of course, it is not something for "newbies") and reliable.

I keep up networks with thousands of geographically dispersed users with no issue at all, and using only FortiGate appliances.

So, let me add (based on my experience, this time): support is not good. The high-end appliances from the FortiGate family are really good.

Buyer's Guide
Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.
Updated: March 2026
Buyer's Guide
Download our free Fortinet FortiGate Report and get advice and tips from experienced pros sharing their opinions.