Try our new research platform with insights from 80,000+ expert users
IT Security Analyst at a energy/utilities company with 51-200 employees
Real User
Dec 4, 2023
Reduces our remediation time and our operational expenses
Pros and Cons
  • "I appreciate FortiGate's flexibility, which allows for centralized management through FortiManager."
  • "Fortinet needs to overhaul its documentation."

What is our primary use case?

We utilize Fortinet FortiGate appliances at six branch offices, one data center, and one DLP site. Our network is driven by SD-WAN, and we employ FortiGate as our firewall, FortiEDR for endpoint protection, and FortiSwitch for alerting on all layers of the network.

For me, the best practice is to deploy on-premises for data centers. However, for small branch offices with over ten to twenty staff members, I can deploy the devices remotely. We can provision our cloud and push the configuration to those devices from the cloud.

How has it helped my organization?

The visibility that FortiGate provides into our devices is crucial for network segmentation. I want to see the output in a specific way. The traditional approach has shifted slightly, as I'm accustomed to Cisco networking equipment. Typically, we have a call feature, but I'm currently using all the call features for internal routing. However, with FortiGate, most security subnets are segmented and protected behind the firewall. This allows me to lock down or secure sensitive subnets, such as HR or departmental information. I can log in from there, and all other subnets for client users require centralized access. This means that all traffic must go through the firewall, enhancing security.

FortiGate enabled us to achieve compliance with governance requirements. The FortiGate, along with fabric security and checkpoints, essentially act as regulatory checkers, reviewing our security practices against industry best practices and guidelines. If they identify any discrepancies, they alert us, allowing us to develop and implement mitigation plans to address the issues. For instance, if our SSH configurations don't meet security standards, such as algorithm or cipher requirements, FortiGate will notify us, enabling us to take corrective action and regain compliance.

We utilize API calls for FortiGate, including those related to our PRTG monitoring system. Additionally, we employ HVAC calls and leverage another MDR solution from Arctic Wolf to trigger specific events on the FortGate. This API functionality enables us to generate API keys and seamlessly integrate with API features across various platforms.

Integrating FortiGate into our environment is straightforward. Our transition from Palo Alto to FortiGate was seamless, utilizing our existing policies and migration tools. FortiGate also provides provisioning capabilities for defining branch office configurations. As long as branch office devices can access the internet to communicate with Fortinet Cloud, we can remotely implement provisioning for these devices, offering greater convenience for small branch offices.

The built-in APIs streamline integrations with other vendors, reducing deployment time. They effortlessly generate API keys upon logging into the Fortinet network, facilitating the deployment of our PRTT monitor tools. These tools seamlessly integrate with each other, fostering rapid deployment. Most platforms, including Cisco Meraki, Palo Alto, and Check Point, now adhere to industry standards and support API calls.

FortiGate has been instrumental in mitigating the risk of cyberattacks that could potentially disrupt our production operations. I am particularly impressed with Fortinet's cloud-based FortiGuard service, which continuously updates our systems with the latest zero-day attack protection, significantly reducing the threat landscape within our industry. Given the energy industry's heightened vulnerability to cyberattacks, we have implemented measures to restrict access to our network based on geolocation IP addresses. This includes restricting access from countries such as Russia and China, further safeguarding our environment from potential threats. Additionally, FortiGuard's regularly updated list of malicious websites provides an invaluable layer of protection for our industry.

In the event of a production-disrupting attack, we can utilize FortiManager to remotely isolate and mitigate the threat by shutting down specific subnets or networks. We can easily navigate through the unpacked data, and upon detecting a suspicious event, we can initiate automation or SOAR processes to notify the Cloud Service Provider team with whom we have been collaborating. Additionally, we can establish traffic alerts. For instance, since not all users access the AD server simultaneously each month, if we observe such suspicious behavior, we can remotely shut down that network, thereby minimizing our risk exposure.

FortiGate provides us with actionable insights to guide our decision-making regarding the appropriate actions to take. We generate 20 gigabytes of log data daily, which we utilize to establish a baseline for network traffic on our servers and compare it to our generated report. This approach allows us to set a threshold for the read volume of 20 gigabytes of FortiGate data attempting to reach a server from an external source. If this threshold is exceeded, an alert is triggered, prompting us to take corrective action. The centralized monitoring of our environment provides significant value.

Security is not a single, isolated element. It encompasses the entire network infrastructure, including firewalls, routers, switches, endpoints, and even mobile devices. The Fortinet Security Fabric seamlessly integrates these components to provide comprehensive protection. It generates detailed logs, including those from access points linked to FortiSwitch. The FortiSwitch, fully integrated with the FortiGate Fabric, relays security alerts to the FortiViewer in the SOC. This centralized view provides complete visibility into the network, including SSIDs, wireless networks, subnets, and devices protected by FortiClient. The Fortinet Security Fabric tracks individual devices connected to the network, including compromised laptops. FortiClient triggers alerts and sends them to FortiCloud, which also receives logs from the EMS server and the firewall. These logs are consolidated in the FortiAnalyzer and forwarded to the cloud-based log server for analysis. This comprehensive approach to security ensures that all potential threats are identified and addressed promptly.

FortiGate has contributed to a reduction in our operational expenses. Prior to adopting Fortinet, we utilized Palo Alto for firewalls and Cisco for call switches. However, as we began using Fortinet, we gradually transitioned to their products. Currently, we employ FortiGate for our firewall, FortiSuite, and FortiAP Access Points, phasing them in one at a time. This approach has effectively minimized downtime and lightened our workload by enabling centralized management through a single pane of glass.

FortiGate has significantly reduced our time to remediation. We can now check logs from servers, firewalls, switches, access points, clouds, and even devices from different brands, all from a single centralized location. This has greatly reduced the time required for threat hunting and security event investigation.

Fortinet has been instrumental in enhancing our cybersecurity approach to safeguard our industrial machinery. We rely on some heavy equipment that is critical to our industry's operations. To protect this equipment, we have isolated it on a single subnet and implemented strict access controls, allowing only authorized users and MAC addresses to access the network. This ensures that only internal staff can operate the equipment unless authorized maintenance personnel are present. The high level of security we have implemented is essential because our industry's operations are closely tied to the core applications of our industry. We are committed to safeguarding our equipment and preventing any potential risks.

What is most valuable?

I appreciate FortiGate's flexibility, which allows for centralized management through FortiManager. Additionally, its integration with FortiAnalyzer, which can be deployed in the cloud, enables centralized monitoring of all firewall logs.

What needs improvement?

Fortinet needs to overhaul its documentation. Our current reliance on outdated documentation has resulted in significant time wastage. While we can locate the necessary documentation, the constant daily revisions necessitate meticulous identification of the relevant documents to prevent the use of outdated information that could jeopardize our environment. At the very least, Fortinet should classify its documentation to clearly indicate the applicable version, as our attempts to do so manually are becoming increasingly tedious.

Buyer's Guide
Fortinet FortiGate-VM
February 2026
Learn what your peers think about Fortinet FortiGate-VM. Get advice and tips from experienced pros sharing their opinions. Updated: February 2026.
881,757 professionals have used our research since 2012.

For how long have I used the solution?

I have been using Fortinet FortiGate for over three years.

What do I think about the stability of the solution?

Fortinet FortiGate is stable. I have not encountered any performance issues.

What do I think about the scalability of the solution?

Fortinet FortiGate is scalable. 

How are customer service and support?

The speed of Fortinet's technical support is significantly faster compared to Palo Alto. I recall an instance where I experienced an issue with Palo Alto, and it took an hour to connect with a real technician from Palo Alto. However, when I call Fortinet, it takes a maximum of two minutes to get a knowledgeable individual to address my concerns. Considering the stark contrast in service levels, imagine having a network issue with Palo Alto and having to wait an hour for support. Conversely, with Fortinet, we can receive proper assistance within two minutes. The difference is immense. This is the one aspect I find lacking in Palo Alto.

The reason I don't give Fortinet's support a perfect score is that I've worked in this field for many years and have come to expect a certain level of expertise. Even when we call Palo Alto, Cisco, Check Point, or any other support service, our experience can vary depending on who we get on the phone. If we're lucky, we'll get a highly experienced expert who can quickly resolve our issue. However, we may also get someone who is new to the team or to their role, and they may take a long time to understand our problem. While Fortinet's support is generally excellent, I have had a couple of experiences where I felt like the person on the other end was inexperienced and asked me irrelevant questions. Despite these occasional issues, I am still very satisfied with Fortinet's support overall, but I wouldn't give it a perfect score.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We previously used Palo Alto for five years and switched to Fortinet FortiGate. Palo Alto is expensive.

How was the initial setup?

The initial deployment is simple. We need to determine which interface is the WAN interface and which is the internal interface.

With Fortinet, we should prioritize a centralized approach to ensure synchronization and consistency across the network. This centralized management strategy will streamline the implementation of SD-WAN, as it allows for the deployment of standardized templates and traffic configurations. Centralized management also simplifies future modifications, as minor changes can be pushed down without requiring complete redesigns. Conversely, deploying SD-WAN without prior centralized management can lead to complexities and potential disruptions. For instance, if WAN interfaces are configured independently of SD-WAN, integrating SD-WAN later will necessitate removing and reconfiguring existing data, policies, firewall policies, and rules. This process can be time-consuming and error-prone.

What's my experience with pricing, setup cost, and licensing?

For medium and enterprise organizations, FortiGate is more affordable. We can choose from a variety of bundles to find the right license for our needs. The software is reliable and easy to install, and it will run smoothly on our systems. FortiGate is priced lower than Palo Alto.

What other advice do I have?

I would rate Fortinet FortiGate nine out of ten.

I compared SD-WAN solutions offered by companies like Cisco Meraki, and Palo Alto. I'm impressed with SD-WAN solutions in general, but I recommend considering purchasing Fortinet's SD-WAN solution, as it could lead to significant cost savings. However, proper planning and design are crucial before deployment to avoid incurring additional expenses due to rework. That's my suggestion.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Senior Network Consultant at a computer software company with 5,001-10,000 employees
Real User
Top 5
Dec 29, 2024
Cost-effective solution with strong network security features and VPN capabilities
Pros and Cons
  • "The ease of deployment and management is commendable."
  • "I observed a fifty to sixty percent reduction in operational costs after migrating to FortiGate VM."
  • "Interoperability could be improved."
  • "Interoperability could be improved. The API needs better integration to match accounts and objects more effectively."

What is our primary use case?

I use FortiGate VM primarily to enhance network security within our environment. It acts as a primary firewall.

What is most valuable?

FortiGate VM provides valuable network security features that are effective in enhancing our security posture. The ease of deployment and management is commendable. Its VPN capabilities support our remote workforce effectively. Monitoring and cost-effectiveness are also significant areas where it helps. AI integration has not been tested yet.

What needs improvement?

Interoperability could be improved. The API needs better integration to match accounts and objects more effectively. VPN capabilities present some issues, and configuration and customization could be refined.

For how long have I used the solution?

I have been using FortiGate VM for four years now.

What do I think about the stability of the solution?

I rate the stability of the solution at eight out of ten.

What do I think about the scalability of the solution?

I rate the scalability of the solution at nine out of ten.

How are customer service and support?

I rate technical support at eight out of ten. Their support is helpful and effective.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I switched from another vendor to FortiGate VM, which has significantly reduced our operational costs.

How was the initial setup?

The initial setup was easy, and I did it myself without requiring assistance from third-party services.

What about the implementation team?

Two engineers from our side were involved in the installation process.

What was our ROI?

I observed a fifty to sixty percent reduction in operational costs after migrating to FortiGate VM.

What's my experience with pricing, setup cost, and licensing?

I find the pricing of FortiGate VM to be quite affordable.

Which other solutions did I evaluate?

I considered other vendors and chose FortiGate VM primarily for its cost-effectiveness.

What other advice do I have?

I would recommend FortiGate VM to others due to its ease of deployment, ease of management, and cost-effectiveness. 

I rate the overall solution eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Fortinet FortiGate-VM
February 2026
Learn what your peers think about Fortinet FortiGate-VM. Get advice and tips from experienced pros sharing their opinions. Updated: February 2026.
881,757 professionals have used our research since 2012.
William Nogueira - PeerSpot reviewer
IT Security Specialist at a agriculture with 1,001-5,000 employees
Real User
Dec 14, 2023
Helps reduce our mean time to remediate and our security risk, and provides good visibility into our environment
Pros and Cons
  • "The Intrusion Prevention System and the web filtering are both working well."
  • "The debugging and troubleshooting has room for improvement."

What is our primary use case?

Fortinet FortiGate is our primary security solution for network communication. It enforces segregation between the IT and OT networks. All communication, integrations, and other traffic between IT and OT must pass through the FortiGate, which inspects and controls it.

FortiGate also serves as our VPN concentrator. Both internal users and partners connect their VPNs to FortiGate. We manage the entire VPN process, including access control and security policies.

All web traffic within the organization flows through the FortiGate for inspection and security controls. We leverage FortiGate's UTM capabilities, including web filtering, intrusion prevention, and application control.

While we have several websites running behind FortiGate, they are primarily static content sites with limited business activity. Therefore, we utilize the basic WAF functionality within FortiGate instead of a dedicated WAF device. This approach has proven effective for our needs due to the low volume of transactions and sensitive data on these websites.

FortiGate also manages communication between our internal IT units. With five units in operation, efficient inter-unit communication is critical. FortiGate ensures secure and controlled data exchange between these units.

How has it helped my organization?

FortiGate provides us with both visibility and segmentation for our industrial devices. This allows us to achieve good segmentation and also gain a clear view of the assets that reside behind them. Now, if I need to find a specific asset within our industrial environment, I can simply access Fortinet and check the assets listed there. Additionally, FortiGate utilizes sensing technology that identifies the type of each device, further enhancing our overall visibility.

FortiGate helps a lot to reduce the risk of cyberattacks that could disrupt our production.

FortiGate enables centralized management of our organization's network and security operations, providing comprehensive visibility into our environment for proactive threat detection and mitigation.

The effectiveness of our response to a production disruption depends on the affected environment. Some environments have sufficient redundancy to continue operating without the system, while others require immediate intervention. To address this variability, we utilize a strategically deployed FortiGate across all environments. This firewall enforces pre-defined rules to manage traffic and data flow effectively, ensuring that disruptions are minimized and operations continue smoothly.

FortiGate provides us with actionable data, enabling us to make informed decisions. The visibility it grants into the devices operating within our environment empowers us to take timely action and safeguard them.

All our OT traffic traversing to and from our IT environment passes through our Fortinet FortiGate firewall, which helps to reduce our operational expenses.

The security fabric helps reduce our mean time to remediation.

Fortinet has helped us take a more serious approach to cybersecurity. 

What is most valuable?

The Intrusion Prevention System and the web filtering are both working well. The Deep Packet Inspection is also functioning properly, allowing us to see all network traffic, including encrypted data. I find the DPI to be a valuable and user-friendly feature. Additionally, the logs are clear and easy to understand. Having worked with Cisco and Check Point in the past, I can confidently say that these logs are on par with those of other leading security solutions. They greatly aid in troubleshooting, investigations, and general network monitoring. Overall, I am impressed with this solution's web filtering capabilities and robust IPS functionality. It is both easy to manage and deploy, making it a valuable tool for our network security.

What needs improvement?

While FortiGate offers a wide range of security features, I sometimes feel that the platform could benefit from more extensive improvements. Given the multitude of functions it provides, I wonder if the developers have enough time to adequately refine each aspect. However, for our specific needs, FortiGate currently performs adequately.

The debugging and troubleshooting has room for improvement.

I would like to see greater integration with third-party solutions. For instance, one example would be integrating Endpoint Protection with FortiGate, such that if an issue arises with Endpoint Protection, an action could be automatically triggered on FortiGate.

I am concerned about Fortinet's ability to help us meet regulatory compliance because its optimal functionality requires deploying all solutions within the mesh as Fortinet products. This raises questions about the compatibility and integration of non-Fortinet technologies within the Fortinet Security Fabric. 

For how long have I used the solution?

I have been using Fortinet FortiGate for two years.

What do I think about the stability of the solution?

I would rate the stability of Fortinet FortiGate an eight out of ten. 

What do I think about the scalability of the solution?

I would rate the scalability of Fortinet FortiGate an eight out of ten.

How are customer service and support?

The technical support responds quickly.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I have worked with Cisco, Check Point, and Palo Alto. I worked with Cisco for ten years and I find Fortinet FortiGate to be a better solution.

What's my experience with pricing, setup cost, and licensing?

The price is fair for what we get with FortiGate.

What other advice do I have?

I would rate Fortinet FortiGate a nine out of ten.

Although we currently don't use any Fortinet devices designed for extreme environments, we are planning to test a few Fortinet switches in such conditions. This initial experiment aims to assess their performance and suitability for our harsh environment. If the switches perform well, we may consider switching our current supplier. While we don't frequently change our OT networks, prioritizing long-term stability has been our main objective, and we've achieved that so far. However, since Fortinet is our network supplier, testing their switches and confirming their reliability is a prudent step for when we need to update our switches.

Potential users should understand their needs before purchasing the solution.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
SHUBHAM BHINGARDE - PeerSpot reviewer
Project Engineer at a computer software company with 1,001-5,000 employees
Real User
Top 5Leaderboard
Feb 16, 2024
A tool to help businesses create a blockage for external traffic
Pros and Cons
  • "The tool improved the security in our company's virtualized environment, as it was helpful in creating an additional layer of security for the organization and for the use of the internet."
  • "The product's initial setup phase is a bit complex."

What is our primary use case?

My company had once deployed multiple firewalls and switches in an organization.

My company uses the firewall capabilities of the product for L1, L2, and L3 switches, along with FortiClient VPN.

My company mostly deals with an organization that works with on-premises software. My company uses the tool to block the traffic from the outside area that may reach our infrastructure or network. My company uses the product as a firewall to create a blockage for outside traffic.

What is most valuable?

The most likable feature of the firewall functionalities stemmed from the fact that it did not allow anyone from outside the organization to have any kind of access to the company's information, and it ensured that it blocked outside traffic.

What needs improvement?

The product's setup is quite complex, making it an area where improvements are required.

For how long have I used the solution?

I have experience with Fortinet FortiGate-VM for four to five years.

What do I think about the stability of the solution?

Stability-wise, I rate the solution an eight out of ten.

My company is involved in research and development activities, and some of our employees or teams are constantly involved in research or development, owing to which some product features are not implemented in our organization. In general, the product is not used to its 100 percent potential.

What do I think about the scalability of the solution?

Scalability-wise, I rate the solution a ten out of ten.

Which solution did I use previously and why did I switch?

I have experience with Palo Alto Networks.

How was the initial setup?

The product's initial setup phase is a bit complex.

The solution is deployed on an on-premises model.

The solution can be deployed in three working days.

What about the implementation team?

The deployment process can be carried out with the help of our company's in-house team.

What was our ROI?

Though I cannot give any numbers, I can say that the product's ROI is good. The tool is able to give good returns considering the amount of money that my company invested in the product for our infrastructure.

I rate the tool's benefits a nine out of ten since the product always helps to maintain security and safety in our company.

What's my experience with pricing, setup cost, and licensing?

There is a need to make payments towards the licensing costs attached to the solution.

What other advice do I have?

The tool improved the security in our company's virtualized environment, as it was helpful in creating an additional layer of security for the organization and for the use of the internet. The tool was the most important product to be implemented in the organization.

To be able for our organization to build our services, we need to operate inside a certain network while ensuring that the outside traffic gets blocked by using the firewall services from the tool, as it helps to create a secure network inside our company. Without the tool in our organization, our network would have been compromised. The aforementioned area consists of details related to how the tool helps with the workload protection aspect.

I recommend the solution to others who plan to use it since it helps in areas where it helps block a particular website with the help of the firewall functionalities that it possesses. The tool also helps block outside traffic, and it is mandatory to implement a firewall as an organization grows for the smooth operations of business.

I rate the tool a ten out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Deputy General Manager at a healthcare company with 501-1,000 employees
Real User
Top 5
Sep 2, 2024
I like the solution's IPS, IDS, and URL filtering
Pros and Cons
  • "I like FortiGate's IPS, IDS, and URL filtering."
  • "I think Fortinet should provide us with more reporting from the AI/ML point of view. They could also offer the SaaS application in a single box. The VPN and ZTNA have so many verticals that they work as a standalone solution. They need to be in a single box."

What is our primary use case?

We use FortiGate-VM as a firewall. My company has more than 4,000 users, and we plan to increase usage. 

What is most valuable?

I like FortiGate's IPS, IDS, and URL filtering. 

What needs improvement?

I think Fortinet should provide us with more reporting from the AI/ML point of view. They could also offer the SaaS application in a single box. The VPN and ZTNA have so many verticals that they work as a standalone solution. They need to be in a single box.

For how long have I used the solution?

I have worked with FortiGate-VM for the last three years.

What do I think about the stability of the solution?

I rate FortiGate-VM eight out of 10 for stability. 

What do I think about the scalability of the solution?

From a scalability point of view, we have a physical user license. If we need to upgrade, we can get a box. There is presently sufficient formal organization to scale up.

How are customer service and support?

I have no problems with Fortinet support.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We have used Check Point and Palo Alto firewalls. 

How was the initial setup?

We deployed FortiGate-VM with the help of a partner and the vendor. The deployment process took three months. We previously used Cisco ASA and had no migration tool, so we had to start from scratch. 

What's my experience with pricing, setup cost, and licensing?

FortiGate-VM is affordable. In terms of operating costs, we contract with the OEM for a three-year contract and then renew. We haven't received any notice from them because all of our infrastructure is under contract. Every three years, if we cannot get a good price from the vendor, we replace the box.

What other advice do I have?

I rate Fortinet FortiGate-VM eight out of 10. It has all the features. The only recommendation is to combine the vertical into a single box. To improve performance, they should build an engine in the box that enables them to scale per the user requirement. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
SelormAhiataku - PeerSpot reviewer
System&Network Administrator at a computer software company with 11-50 employees
Real User
Top 5
Feb 16, 2024
A value-for-money appliance that provides good security and technical support
Pros and Cons
  • "The solution is very secure, and its technical support is on point."
  • "Fortinet FortiGate-VM should improve its asset identification, wherein the device can identify assets on the network, like computers."

What is our primary use case?

Fortinet FortiGate-VM is used for the firewall. Some clients would like to go for the solution because of pricing. They feel they can run it on their own hardware, cut down costs, and manage it.

What is most valuable?

I can vouch for the security aspect of Fortinet FortiGate-VM. It's a value-for-money appliance. Fortinet has always been our number one firewall appliance regarding recommendations to customers. The solution is very secure, and its technical support is on point.

I like Fortinet FortiGate-VM for tutorial purposes. You can set up the solution on your personal computer for apps and teaching.

What needs improvement?

Fortinet FortiGate-VM should improve its asset identification, wherein the device can identify assets on the network, like computers. We should be able to identify a device and the user account used to log on to that device.

For how long have I used the solution?

I have been using Fortinet FortiGate-VM for more than five to six years.

What do I think about the stability of the solution?

Since it is a VM, the solution runs on a client-provided host machine. Most of the time, the host machine gives issues that affect the VM.

I rate the solution a five out of ten for stability.

What do I think about the scalability of the solution?

Around 20 users are using Fortinet FortiGate-VM in our organization.

I rate the solution an eight out of ten for scalability.

How are customer service and support?

The solution's technical support is responsive, but the only issue is you need to be specific with your problem. If you are not specific with your problem, it will take longer to resolve the issue because of time zone differences. All the engineers would like to know exactly the problem before they offer solutions.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We previously worked with pfSense. We switched to Fortinet FortiGate-VM because pfSense was giving us issues.

How was the initial setup?

Fortinet FortiGate-VM is easy to implement, provided you know your network architecture and the basics.

On a scale from one to ten, where one is complex and ten is easy, I rate the solution's initial setup a nine out of ten.

What about the implementation team?

The solution can be deployed in less than ten minutes.

What's my experience with pricing, setup cost, and licensing?

Fortinet FortiGate-VM is a very expensive solution. It's a value-for-money appliance. You don't have every client going in for the solution unless there are some specific points.

You need to know exactly what you need at the point of purchase. That will guide you in purchasing the required license. If you miss and purchase the wrong license, you can wait and purchase another license during renewal. You can also negotiate with Fortinet to have your license changed to get the feature you want.

On a scale from one to ten, where one is expensive and ten is cheap, I rate the solution's pricing a three out of ten.

What other advice do I have?

We used to troubleshoot for Fortinet FortiGate-VM, but now the new firmware doesn't really give issues. We do maintain the solution by checking on devices and updating the firmware. We have seven engineers in our technical team to deploy and maintain the solution.

I would not recommend Fortinet FortiGate-VM to other users because most users don't have the infrastructure. They will tell you they want to cut down costs. You get them the solution, and at the end of the day, as a technical person, you will be bothered by the solution.

Regarding the upgrade, the only time we've had an issue is when the customer gave the wrong information. The utilization exceeded what they actually needed. Aside from that, Fortinet FortiGate-VM is a good appliance for us.

Overall, I rate the solution an eight out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
Network Administrator at a tech services company with 51-200 employees
Reseller
Top 20
Oct 16, 2025
A robust solution with automated threat response and easy setup
Pros and Cons
  • "The best feature of Fortinet FortiGate-VM is the deployment; I applied best practices for deployment with Fortinet FortiGate-VM by the VPN connection into the site, on-premise and cloud or hybrid for segmentation of level of security, the perimeter and inside zone."
  • "Licensing could be easier to understand."

What is our primary use case?

I have experience in deployment for banking processes and at the perimeter of a financial institution. I have experience in configuration for PCI DSS compliance.

What is most valuable?

The best feature of Fortinet FortiGate-VM is the deployment. I applied best practices for deployment with Fortinet FortiGate-VM. By the VPN connection into the site, on-premise and cloud or hybrid for segmentation of level of security, the perimeter and inside zone.

It's very robust. It's a solution that is very complete with accessible support. The feature for deep inspection (DPI) for Fortinet FortiGate-VM is used for generating alerts or to automate threat response.

What needs improvement?

Licensing could be easier to understand.

For how long have I used the solution?

I have been using Fortinet FortiGate-VM for around six years and Cisco for around 10 years.

How are customer service and support?

The support deserves a rating of ten out of ten.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

I have also worked with Cisco firewalls. The main differences between FortiNet and Cisco include the price, which is very different. The variant of Cisco ASA, Cisco Firepower, is more difficult for configuration. Firepower is more complicated. Fortinet FortiNet is easier to deploy and also less expensive.

How was the initial setup?

I find that the initial setup of Fortinet FortiGate-VM is easy. Of course, I am very experienced in the area of telecom, and this setup and configuration is friendly. I see that other people find Fortinet FortiGate-VM to be user-friendly. The setup and learning curve is short.

What other advice do I have?

I would rate Fortinet FortiGate-VM a 10 out of 10. It is very good.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Last updated: Oct 16, 2025
Flag as inappropriate
PeerSpot user
Information Technology Division Director at a insurance company with 201-500 employees
Real User
Top 5Leaderboard
Aug 1, 2024
Helps segregate the VLANs in the data center, but it needs to improve on the security part
Pros and Cons
  • "It is scalable because it is a virtual appliance. You can probably scale it up more."
  • "The security offered by the tool has certain shortcomings, making it in area where improvements are required."

What is our primary use case?

I use the solution in my company for the data center's server protection to segregate the data center VLANs and the other VLANs used in the production, testing, and development phases, including the areas consisting of DMZ and VLAN. We are using Fortinet FortiGate-VM as a software-based tool and as a firewall for our data center.

What is most valuable?

It filters out the unnecessary connectivity that I would probably expect to be connected from the end user site or from external to the data center site. It is also used to filter unauthorized access to sites and to mitigate risks if, in cases, because of the asset policy, the remote desktop connectivity or remote connectivity is not allowed to restrict something. It is used to deal with phishing or something that may not pass through the network. The tool serves as an industrial firewall so that we can use it as a filter more efficiently.

What needs improvement?

The security offered by the tool has certain shortcomings, making it in area where improvements are required. Security, by nature, is very dynamic, and continuous improvement is required. Every time, the policy and the configuration need to be checked in that aspect now, so in that aspect, it needs some improvement, especially when it comes to some filtering mechanisms, and protocols.

For how long have I used the solution?

I have been using Fortinet FortiGate-VM for more than three years.

What do I think about the stability of the solution?

In terms of stability, it is stable. Stability-wise, I rate the solution an eight out of ten.

What do I think about the scalability of the solution?

It is scalable because it is a virtual appliance. You can probably scale it up more.

Fortinet FortiGate-VM is a security solution, so users are not expected to access it. It is actually required to protect the network and the environment, so there is no need for actual user access for the solution.

How was the initial setup?

The product's initial setup phase requires some special expertise. The initial setup phase might not be complex, but it requires experts since it is a security solution.

If there is an expertise that is actually doing the implementation or deployment, then it is a straightforward process.

What's my experience with pricing, setup cost, and licensing?

The solution requires a license. The tool is neither expensive nor cheap, so it is okay.

What other advice do I have?

The product's implementation does affect our compliance with industry regulations, and it is one of the reasons why we prefer using Fortinet FortiGate-VM.

My suggestion to other people related to the tool depends on their requirements because there are other different solutions in terms of cost, efficiency, security, reliability, and security. Depending on the requirements, the tool is recommendable. Fortinet is one of the top security solutions in the market. Anybody can choose from multiple tools in the market, including Palo Alto products and other solutions. Fortinet is usually recommended to others.

I think that Fortinet FortiGate-VM has some solutions that offer AI features. For our use case, we don't actually use the AI functionalities since we want to control everything. In my company, we are the ones who are actually dealing with the product and are just not supported by AI.

I rate the tool a seven out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Fortinet FortiGate-VM Report and get advice and tips from experienced pros sharing their opinions.
Updated: February 2026
Product Categories
Firewalls
Buyer's Guide
Download our free Fortinet FortiGate-VM Report and get advice and tips from experienced pros sharing their opinions.