What is our primary use case?
The solution is mainly used for remote connectivity and endpoint and gateway network security.
What is most valuable?
The most valuable aspect of the solution is the V-Scanner which is the monitoring software. That's something that I love.
We are able to closely monitor the usages of individual users and see their usage habits and other items, including the data itself, which gives us quite a bit of visibility.
What needs improvement?
I think one thing we couldn't find in the software console was all of our logs. In the logs themselves, for example, we couldn't find if a user was accessing all of the VPN. We don't get to know or we don't have a report that shows on what date or for how long and from what time he user has logged on. We don't have that particular feature or that kind of visibility. That could be improved. Reporting, therefore, in general, could be improved.
The one thing that could be improved is the integration with the exchange. The gateway level controls can be enhanced a bit more. For example, it's still little here and there. You do get malicious attacks and suspicious emails like spam. It's not like Sophos where we got a lot of spam email, and yet, it's still relatively vulnerable. It can be upgraded, maybe with a fifth-generation firmware that it is ready for unknown threats.
Especially after this pandemic situation, it requires a little more enhancement. For an SME level organization, it's okay, but when it comes to corporate and banking enterprises it still requires a lot of enhancement. Comparing it to Palo Alto, for example, it's still very behind the curve.
For how long have I used the solution?
We've been using the solution for two years.
What do I think about the stability of the solution?
The solution is very stable. It's reliable, for the most part.
It's stable, comparatively, to the fifth generation UDL appliances or other software that is available in the market. It's quite stable for the integration. It still requires more of a formal enhancement for speedy patches and speedy updates.
What do I think about the scalability of the solution?
The solution has a moderate amount of scalability potential. I wouldn't say it's the best, however, it is possible to scale it if you need to.
We have about 25-30 people on the VM currently.
How are customer service and technical support?
We've never had to contact Fortigate's technical support, so I can't speak to their quality of service. If we have any issues on the solution, we tend to handle the problem internally.
Which solution did I use previously and why did I switch?
We used to have Sophos and we shifted to Fortinet about two years ago.
The integration of the active directory with Sophos was not up to spec. We decided to drop it and instead went ahead with Fortinet.
How was the initial setup?
The initial setup was a bit difficult. It's not perfectly straightforward. This may have been due to the fact that we were using ISA, which is pretty determined, and we had to migrate from ISA to Sophos and from Sophos to Fortinet. It was a little difficult, but not that complex.
For us, the implementation took about two weeks.
Each quarter we have a managed service contract with the integrator and they do any preventative maintenance every quarter. We have four visits in a year that we have agreed upon. Every quarter they come to us and they do some penetration testing and see the usability features and give us a report.
What about the implementation team?
We outsourced the implementation to an integrator that handled the setup for us. They also handle quarterly maintenance for us.
What's my experience with pricing, setup cost, and licensing?
The pricing of the solution is moderate. It's competitive, although I wouldn't consider it a cheap solution per se.
Aside from the licensing, there are some add-ons that need to be added that we personally haven't added. There are features such as content filtering, etc., that we haven't opted for. However, users can add them on if they need to for an additional cost.
What other advice do I have?
We're just customers. We don't have a professional relationship with the organization. We're using the latest version of the solution.
I have learned that they have some internal resources available. However, those who are not trained and certified should not be experimenting with it.
I'd advise other organizations that, if they don't have a proper administrator who can monitor and maintain their appliance, it's better they if don't implement it. It's not like somebody who has a background of software can handle Fortinet. They need to be properly trained and knowledgable.
I'd rate the solution seven out of ten overall.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.