We use FortiGate-VM to access clients' networks. These are generally Azure cloud environments in which we set up resources for clients to use.
Information Security Manager at a financial services firm with 501-1,000 employees
Easy to use and setup but could use more documentation and true layer-7 protection
Pros and Cons
- "I have worked on some of the largest and smallest solutions that Fortinet sells and they all scale really well."
- "The most valuable FortiGate-VM features are the ease of use and setup."
- "FortiGate-VM does have that too, but it doesn't work as well."
What is our primary use case?
What is most valuable?
The most valuable FortiGate-VM features are the ease of use and setup.
What needs improvement?
Sometimes, FortiGate-VM is a little different to set up than other firewalls that I've managed. It would be better if it was just a little more mainstream. Some more documentation would be nice as well. Documentation has always kind of been our problem with FortiGate-VM.
There's a lot of stuff I like about FortiGate-VM, but like I said, we still do a lot more Palo Alto firewalls than anything because they have true layer-seven attack prevention. FortiGate-VM does have that too, but it doesn't work as well. I would like to see more layer-seven functionality and expect to realistically block things at the top level.
For how long have I used the solution?
We have been using this solution for two years.
Buyer's Guide
Fortinet FortiGate-VM
August 2026
Learn what your peers think about Fortinet FortiGate-VM. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
909,153 professionals have used our research since 2012.
What do I think about the stability of the solution?
FortiGate-VM is stable. They have been okay for everything that I have done with them.
What do I think about the scalability of the solution?
I have worked on some of the largest and smallest solutions that Fortinet sells and they all scale really well.
How was the initial setup?
The initial setup is straightforward and only takes hours to deploy.
What about the implementation team?
We implemented FortiGate-VM in-house.
What other advice do I have?
Make sure that you're on the latest stable versions when you update code and stuff like that. That's one of the things that we've had some issues with in the past.
Which deployment model are you using for this solution?
Private Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Principal Network Engineer at a computer software company with 201-500 employees
Intuitive solution with comprehensive features and an extensive threat database
Pros and Cons
- "FortiGate-VM has many valuable features: it's easy to use, it's intuitive, it's got very good traffic inspection features, it's got comprehensive filtering categories, and it has an extensive threat database, using FortiGuard."
- "FortiGate-VM could be improved by making it cloud-based. I'd like it to be a cloud-based management solution instead of just a dedicated management orchestration tool."
What is our primary use case?
My primary use case of this solution is for advanced security in the cloud, as well as SD-WAN and branch connectivity. We use version 6.4 and are just now moving to 7.0.
What is most valuable?
FortiGate-VM has many valuable features: it's easy to use, it's intuitive, it's got very good traffic inspection features, it's got comprehensive filtering categories, and it has an extensive threat database, using FortiGuard.
What needs improvement?
FortiGate-VM could be improved by making it cloud-based. I'd like it to be a cloud-based management solution instead of just a dedicated management orchestration tool.
For how long have I used the solution?
I have been using FortiGate-VM for five years.
How are customer service and support?
Personally, I like Fortinet support. I know other colleagues and people think it's slow, but I don't.
Which solution did I use previously and why did I switch?
I used FortiGate for 10 years. I also have experience with Azure Firewall Premium, Cisco ASA, and Cisco Firepower.
How was the initial setup?
The installation is really easy. There's HA deployment in the marketplace involving Azure and AWS. I handle the installation myself.
What about the implementation team?
I implement this solution myself for customers.
What's my experience with pricing, setup cost, and licensing?
There are yearly or monthly licenses which you can choose from.
What other advice do I have?
I rate FortiGate-VM an eight out of ten. I recommend this solution to others. There's a use case, like any cloud-based firewall.
We're an MSP, so we sell, configure, and manage these solutions for customers.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: My company has a business relationship with this vendor other than being a customer.
Buyer's Guide
Fortinet FortiGate-VM
August 2026
Learn what your peers think about Fortinet FortiGate-VM. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
909,153 professionals have used our research since 2012.
Network Administrator at Furnmart
Work filter is able to detect anything coming in that is not supposed to be on the network
Pros and Cons
- "The most valuable feature is that its IPsec works perfectly."
- "Our main ROI has been the extra stability on our network - since we implemented this solution, we haven't had any major attacks."
- "We have had some issues with connecting to the VPN from home after firmware updates, which could be an area for improvement."
What is our primary use case?
My primary use case is for controlling the internet in our organization, as well as for our VPN for those working from home. I also use it for routing the connection to stores so we can access them.
How has it helped my organization?
This solution allows us to easily access the stores from where we are. It also blocks a lot of websites that we don't want to allow access to during working hours. It has also made our network more secure, and it's now much harder for people to intrude into our network.
What is most valuable?
The most valuable feature is that its IPsec works perfectly. The work filter also works perfectly - it's able to detect anything coming in that is not supposed to be on the network.
What needs improvement?
We have had some issues with connecting to the VPN from home after firmware updates, which could be an area for improvement.
For how long have I used the solution?
I have been using this solution for about five years.
What do I think about the stability of the solution?
I think the product's stability is very good.
What do I think about the scalability of the solution?
The scalability depends on what you want to use it for - previously, we were using 60D, and it wasn't accommodating some features we wanted, so we had to go to 100D.
How are customer service and support?
The technical support is very helpful.
Which solution did I use previously and why did I switch?
I previously used pfSense but found it was a bit complicated in terms of configuration and didn't give periodic updates. I switched to FortiGate because they were very consistent in giving updates on outbreaks and what they were doing to resolve them.
How was the initial setup?
The setup was straightforward because of the integrator's help. Deployment took about two days, and only my assistant and I were required for deployment and maintenance.
What about the implementation team?
I implemented through an integrator.
What was our ROI?
Our main ROI has been the extra stability on our network - since we implemented this solution, we haven't had any major attacks.
What's my experience with pricing, setup cost, and licensing?
The cost of this product is too high on a yearly license. The license can be renewed on a monthly or yearly basis. There are additional costs for extra features.
What other advice do I have?
To me, this is one of the best firewalls I've ever used. I would rate this solution as nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Works at a hospitality company with 10,001+ employees
Easy to use, stable, but performance could improve
Pros and Cons
- "Fortinet FortiGate-VM is easy to use."
- "The performance could be better. Some features need to have quality control when the switch is working. The dedicated bandwidth for some users is not reliable."
- "The technical support could improve. They took approximately one month to solve a firewire issue to update."
What is most valuable?
Fortinet FortiGate-VM is easy to use.
What needs improvement?
The performance could be better. Some features need to have quality control when the switch is working. The dedicated bandwidth for some users is not reliable.
For how long have I used the solution?
I have been using Fortinet FortiGate-VM for approximately one year.
What do I think about the stability of the solution?
I have found Fortinet FortiGate-VM to be stable.
What do I think about the scalability of the solution?
We have approximately 150 people using the solution.
How are customer service and support?
The technical support could improve. They took approximately one month to solve a firewire issue to update. I would not recommend it.
Which solution did I use previously and why did I switch?
I have used Sophos previously and I could it to be better. However, we have found the performance to be the same as Fortinet FortiGate-VM.
How was the initial setup?
The company that provided the solution that was installing it took approximately three days.
What about the implementation team?
I can do the implementation by myself. I do the maintenance and support of the solution.
What's my experience with pricing, setup cost, and licensing?
There is an annual license required to use the solution.
What other advice do I have?
I rate Fortinet FortiGate-VM a seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Head of IT at a mining and metals company with 10,001+ employees
Easy to maintain, simple to set up, and offers good stability
Pros and Cons
- "The solution can scale well."
- "The maintenance part is definitely quite easy as we do not require any additional manpower to maintain this since it's quite simple and has the least required manpower based on an individual unit."
- "Price-wise, it could be slightly better, however, if you compared it to other makes and models of equal category, it is generally cheaper."
What is our primary use case?
We primarily use the solution for our internal worldwide corporate network.
How has it helped my organization?
It's allowed us to have fewer personnel requirements in relation to maintenance.
What is most valuable?
The maintenance part is definitely quite easy. We do not require any additional manpower to maintain this. It's quite simple and it has the least required manpower over it based on an individual unit.
The initial setup is pretty simple.
The solution can scale well.
The stability is quite good.
What needs improvement?
Right now, we are totally satisfied with this solution. There are several units worldwide. We have only one unit at our Kolkata location, and we are satisfied as of now in terms of its capabilities.
Price-wise, it could be slightly better, however, if you compared it to other makes and models of equal category, it is generally cheaper.
For how long have I used the solution?
I've used the solution over the last seven months.
What do I think about the stability of the solution?
The stability has been good. Its performance is reliable. There are no bugs or glitches. it doesn't crash or freeze.
What do I think about the scalability of the solution?
The scalability is there. When taking into consideration our business environment right now, I find that this is capable of handling all the requirements until the end of 2022.
Right now in the Kolkata office, we are around a hundred people - and that is in the Kolkata office only. If you talk about India, then we have around 250.
We do not plan to increase usage at this time. However, in the future, scaling may be required.
How are customer service and support?
I've never directly dealt with technical support and therefore cannot speak to how helpful or responsive they are.
Which solution did I use previously and why did I switch?
We did previously use a different solution, however, the main office makes the decisions around product changes. They may have chosen this product as it is less expensive.
We had been using a British Telecom hybrid VPN solution. In April, we stopped that and migrated to this new SD-WAN connectivity solution based on the Fortinet firewall.
How was the initial setup?
The implementation process was not complex or difficult. It was straightforward.
The deployment takes around two to three hours.
Maintenance aspects are handled by the vendor.
What about the implementation team?
The implementation was done by our vendor as well as our internal team.
What was our ROI?
We won't have a sense of an ROI until we've used the solution for another year and a half.
What's my experience with pricing, setup cost, and licensing?
The pricing is pretty reasonable when compared to other solutions of the same caliber.
We pay a yearly licensing fee. I do not know the exact costs, however, as that is handled by the team in Luxembourg.
Which other solutions did I evaluate?
We don't make product decisions. Decisions of that scale come from Luxembourg.
What other advice do I have?
We are a customer and an end-user.
I'm not sure which version of the solution we're using.
I'd rate the solution at a nine out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Tech Security & Networking Support Lead at a venture capital & private equity firm with 51-200 employees
Feature-rich, reliable, easy to scale, and has good support
Pros and Cons
- "The most valuable features are the IPS and Antivirus."
- "Apart from the firewall, it comes with antivirus, IPS, and Web Application Firewall, and it has a lot of integration with external connectors, such as Teams, that are protected from threats that come from external sources."
- "It needs an Application Inspection."
What is our primary use case?
FortiGate is an Exhibition Firewall that comes with the Antivirus, IPS, and Web Applications
What is most valuable?
The most valuable features are the IPS and Antivirus.
The firewall functionalities are fine.
It has a lot of features.
What needs improvement?
It needs an Application Inspection. The threat landscape is very high. Anyone can exploit the flow-based policies. It is always better to have intern-based policies.
For how long have I used the solution?
I have been using Fortinet FortiGate-VM for more than two years.
We are using the latest version.
What do I think about the stability of the solution?
Fortinet FortiGate-VM is a reliable product.
What do I think about the scalability of the solution?
It is easy to scale this solution, but there are some challenges with Azure and high availability.
How are customer service and technical support?
My experience with technical support was good.
Which solution did I use previously and why did I switch?
We are also using Palo Alto.
How was the initial setup?
The initial setup was simple.
We don't require a lot of maintenance. Most of the maintenance is carried out by Microsoft.
It is a custom operating system that is available on FortiGate Firewall, and Palo Alto Firewall.
Microsoft doesn't do anything in terms of upgrades of the patches. They only do basic maintenance at the host level and the VM level.
We only have one person managing the device.
What about the implementation team?
We were able to complete the installation on our own.
What's my experience with pricing, setup cost, and licensing?
Pricing is somewhere in the middle. It's a mid-ranged product.
There are additional fees with this solution.
What other advice do I have?
I would recommend this solution to others. It is a stable firmware, with many releases. It has a lot of features. Apart from the firewall, it comes with antivirus, IPS, and Web Application Firewall.
It has a lot of integration with external connectors, such as Teams, that are protected from threats that come from external sources.
I would rate Fortinet FortiGate-VM an eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Microsoft Azure
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior Security Engineer at a energy/utilities company with 1,001-5,000 employees
Very intuitive with a clean interface and good stability
Pros and Cons
- "It's very easy to set up, even for more junior developers."
- "The stability is excellent."
- "Their offering for MFA isn't the cleanest."
What is our primary use case?
The use case for VMs is if you're going to deploy them like a SaaS edge, to protect your applications or provide deeper visibility into the traffic. Or you could use it in your data centers as well. However, that's not our preference.
We primarily use the solution for network segmentation at our data centers and remote connectivity to our distributed sites.
How has it helped my organization?
We were able to take advantage of their management tool, FortiManager, to get a single pane of glass. FortiManager and FortiAnalyzer do not have a single panel glass. Rather, they are two panes of glasses to manage and monitor the firewalls where previously we were using Cisco. I don't want to call them legacy firewalls, however, with Cisco firewalls, we didn't have that management or logging visibility.
What is most valuable?
The product has pretty good logging and reporting capabilities native to the firewall. Then they also use FortiAnalyzer to aggregate that traffic and provide more detailed and aggregated reporting. That's going to help when you're analyzing network traffic for network segmentation initiatives.
The stability is excellent.
It's very easy to set up, even for more junior developers.
The scalability has improved.
It's got a clean interface and it's very intuitive. Everything is easy to navigate.
What needs improvement?
Their offering for MFA isn't the cleanest. They have a product called FortiAuthenticator. It's not a FortiGate but that is one of their MFA offerings. However, other products that I've used, like Duo, are better from a user experience standpoint. They are easier to configure.
For how long have I used the solution?
I've been using the solution for ten years. It's been a while.
What do I think about the stability of the solution?
Six or seven years ago, they had issues with code versions where they would make changes within the code version and they would have some bugs. That said, over the last six or so years, their releases have been very stable. We've had very few issues with any type of bugs or issues.
What do I think about the scalability of the solution?
Scalability has gotten better with their SD-WAN offering. They're able to utilize inexpensive lines such as 4G, 5G, or DSL. It has allowed us to move away from expensive MPLS lines.
Historically, conventional or Next-Gen firewalls have been utilized at data centers and remote sites. Now, however, a lot of customers are moving towards Zero-Trust access and SASE. I'm currently looking to get a little bit more information on Zero-Trust architecture, as it reduces the overall management and need for physical firewalls in all your locations, which can get expensive.
Which solution did I use previously and why did I switch?
We also use the Cisco ASA firewalls. I do find that Fortinet is easier to handle than Cisco as you don't need to handle tasks via the command line, which makes it easier especially for junior-level developers.
How was the initial setup?
The initial setup is very straightforward. I started out in the Cisco world with Cisco firewalls and switches. Then we started deploying FortiGate and I found that FortiGate was easier to learn, especially for junior-level engineers. We were able to get junior-level engineers up to speed quicker than if it was a Cisco platform, especially if they haven't used the command line before.
Deployment usually takes a day, depending on the complexity of the firewall. It might be a day to two, depends on if we are using multiple IPSec tunnels if it's at a data center or a remote site.
In terms of deployment and maintenance, in my experience, by a rough order of magnitude, a company would need one technician per 30 firewalls. For our company, we had a team of three network engineers and we had a fleet of about 120 firewalls.
What about the implementation team?
I handed the implementation myself with my team. We didn't need any integrators or consultants.
What's my experience with pricing, setup cost, and licensing?
For our entire fleet of 120 firewalls, we're paying about $100,000 per year. The licensing fees give you support and the capability to download updated definitions of threat intelligence from Fortinet.
What other advice do I have?
I was previously a customer. now I am a reseller and Fortinet partner.
We primarily use hardware-based appliances, including the 100 D/E series, 100F, 190 D/E's, ADCs, 600 E's. They are similar to VMs.
We're using the most recent code level at this time. We're one version behind the latest version. We tend to use one version behind the most recent for safety reasons so that we can avoid troublesome bugs or glitches.
Anyone looking to deploy Next-Gen firewalls, in general, should really define their use cases to be able to decide on the proper technology to deploy within the environment. If you're looking to deploy Next-Gen firewalls at all your locations and create point-to-point VPN tunnels, they can get cumbersome and difficult to manage policies. It is also difficult to do network segmentation. With some of the Zero-Trust offerings, you're able to actually move your clients outside of your corporate perimeter, and then isolate those applications based on the user per application, instead of requiring them to dial back via traditional VPN to your data centers, which sometimes isn't the best user experience for your end-users.
I'd rate the solution at an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Principal & CTO at Constructure Technologies at a construction company with 11-50 employees
Geofencing capabilities help us to reduce threats, and the support is good
Pros and Cons
- "The most valuable feature is geofencing, where we can block all access from all non-domestic locations."
- "I would recommend stopping waiting to use Fortinet Fortigate; it's really a great solution and their support is very good."
- "In the next releases, it would be nice to see central cloud management."
What is our primary use case?
We use FortiGate as an edge security device. We are system integrators and we use this product ourselves, as well as implement it for our clients.
How has it helped my organization?
The geofencing and blocking capabilities for all non-domestic countries lower the attack surface by approximately 85%.
What is most valuable?
The most valuable feature is geofencing, where we can block all access from all non-domestic locations.
What needs improvement?
In the next releases, it would be nice to see central cloud management.
They have an on-premises solution that you can deploy for fleet management or for multiple site management, but it seems like a cloud solution would be a little bit easier.
For how long have I used the solution?
We have been using FortiGate for the past two years.
We are using the latest version.
What do I think about the stability of the solution?
This is a very stable solution.
What do I think about the scalability of the solution?
So far, this product has scaled very well. We have approximately 100 deployed, as edge devices. Currently, it is our only edge device and we plan to continue rolling it out in the future.
How are customer service and technical support?
Their technical support is great.
Which solution did I use previously and why did I switch?
We used Cisco ASAs exclusively before changing exclusively to FortiGate.
We decided to change to FortiGate because the entitlement was too difficult on Cisco.
How was the initial setup?
The initial setup is straightforward and it takes approximately two hours to deploy.
What's my experience with pricing, setup cost, and licensing?
Licensing is pretty standard. It's approximately 15% of the total cost per year as a subscription cost.
The subscription cost also includes support for entitlement, which was not the case with Cisco. That was the deciding factor. We changed our whole install base because of that.
There are no additional costs other than the standard licensing fees.
What other advice do I have?
I would recommend stopping waiting to use Fortinet Fortigate. It's really a great solution and their support is very good. SonicWall has awful support. I can't say more strongly how bad SonicWall has ever been.
With the engineers, everything is difficult to phrase. They don't understand what you're trying to do. They should understand. Their first-level support is terrible. They really don't understand. You can't get to the next level without going through level one.
Level one is terrible. It's frustrating enough that we just do it ourselves with Google articles because of this.
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Chief Technology Officer at cornerstone defense
Slightly unstable, needs a better user interface, and lacks good monitoring capabilities
Pros and Cons
- "It's a relatively simple product that is easy to use. It's not overly complex."
- "The solution seems to be very reliable."
- "The product does not have a good graphical interface."
- "I would rate the solution at a four out of ten. It does base functions and it's doing that at a pretty high price."
What is our primary use case?
We primarily use the solution for checking a 250-person defense contracting company with multiple locations.
How has it helped my organization?
It's improved our operations by not being overly problematic.
What is most valuable?
The solution seems to be very reliable.
It's a relatively simple product that is easy to use. It's not overly complex.
The initial setup is fairly straightforward.
What needs improvement?
The product does not have a good graphical interface. Their patches and their upgrades are not always compatible with configuration. That means that often you find after you upgrade that there was something else you have to do to the rest of the infrastructure, whether it's a printer or a user or whatever. It doesn't appear to me that their upgrades are well tested. They usually do what they're supposed to do, however, they also usually do some other things that FortiGate doesn't seem to be aware of.
It doesn't maintain legacy capabilities very well.
The stability of the solution isn't ideal.
They don't seem capable of supporting their own product.
The solution needs a better user interface and more intelligent services like spam blocking and auto whitelisting, gray listing, blacklisting, et cetera. It just basically needs better user monitoring.
For how long have I used the solution?
I've been using the solution for about four years at this point. It's been a while now.
What do I think about the stability of the solution?
While I wouldn't describe the solution as unstable, there are definitely hiccups. I expect firewalls to be really efficient and very stable and I would say they're only sort of stable. I don't expect to have to figure out how to create a scan-to-email solution every time I upgrade my firewall, for instance.
Of course, they'll blame it on the vendor of the printer and say now how they're not following the standard or something, however, it was working with their product previously and the printer wasn't the item that changed. Their product gets a patch and it no longer works and you're like, "Well, I like your theory, but I don't exactly accept it." I don't think they have the features that a Palo Alto has, let's say.
What do I think about the scalability of the solution?
The solution seems to be scalable. For our purposes, it scales well.
We have about 250 users on the solution currently.
How are customer service and technical support?
Technical support isn't that great. On a scale from one to ten, they're a five at best. A couple of times where we had a problem, they couldn't solve the problem. We researched the problem on our own, unfortunately, via Google, and we found the solution and the solution was actually written by one of their techs and they didn't even know it.
How was the initial setup?
The initial setup is not too difficult. It's not overly complex. I'd describe it as pretty straightforward. A company shouldn't have any issues with implementation.
For deployment, we did one site and then the other site and it took probably two weeks to deploy it, with maybe 30 days to get it fully configured. Then, once we had one site deployed, configured, and functional, we implemented a copy of that to the other site. We followed this pattern for each of our locations.
In terms of maintenance, it's hard to quantify what you need for the firewall. The firewalls are relatively low in terms of required maintenance. We have one IT administrator that may be a day a month has duties that are firewall-related. It varies, however, it's not significant work to maintain the firewall.
What about the implementation team?
We did not need the assistance of an integrator or consultant. We were able to handle it ourselves.
What was our ROI?
We haven't really seen an ROI. It does what it's supposed to do, however, I'm not sure that it makes my job easier. It's kind of a sunk cost. It's one of the frustrations I have. I would expect it to be smarter and capable of doing things that it really doesn't do.
What's my experience with pricing, setup cost, and licensing?
We pay a yearly licensing fee. It's probably a couple of thousand dollars per firewall.
On top of that, if you maintain a hardware warranty, so that you own the devices, you still maintain a warranty on them. There's sort-of a service contract, or you can go at risk. I don't know where we are in that. I'd have to go look, but I know at one point in time we talked about again, if we're going to be doing a tech exchange, maybe we don't want to maintain the warranties on them anymore.
The competitors actually have lower prices for more functionality. On the higher side, if you go with Cisco, it's more expensive, however, it's obviously more functional. A Palo Alto is probably a better solution than a FortiGate.
Which other solutions did I evaluate?
We're currently looking for alternatives to this solution.
We're looking at alternatives. However, the deficiencies that they have are not significant enough that I would like to immediately leave them, however, they're big enough that I'm looking for alternatives.
When I come to end the life and I do a tech refresh, if we're not going to go 100% virtual, which is certainly another consideration, I am going to look at an alternate product. I'm not sure we're going to go away from them with a timeline right now, however, I'm certainly looking at it.
We don't yet have a shortlist, however, we'll likely look at the top big names in the market.
What other advice do I have?
We're an end-user and a customer.
We have a plug-in with the subscription. We use the current version on their 100Es.
In general, I would advise other users that they need to look at whether they're going to go physical or virtual. I'd advise once they decide that to then look at the maybe lesser known next-generation firewalls that have functionality. The folks that are going to be operating the tool need to look at the user interface to make sure that that it is easy to use. Most users at an enterprise don't even know the firewall's there, let alone what it is, so they're not unique. I think all of the firewalls are pretty decent at not impacting users. The differentiator is which ones are easy to set up, which ones are easy to configure and use and how good they are at reporting.
The other thing I would say is, look at whether or not they integrate into your overall IT management, whether you're using ServiceNow or what you're using for IT management. How do the firewalls integrate with that or not? It's important.
I'd rate the solution at a four out of ten. It does base functions and it's doing that at a pretty high price.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
IT Network Manager at a non-profit with 51-200 employees
Rock solid, has most of the features, and provides greater security and flexibility
Pros and Cons
- "Primarily, the VPN solution is most valuable. It allows you to have more flexibility in terms of what is there on the end-user device, and what is not there. You can check and make sure that they're current. It has more flexibility than just a straight VPN solution. It works really well. It has the features that 99% of people need."
- "It works really well and has the features that 99% of people need."
- "They should keep us up to date about the latest version. That's the biggest thing. Currently, we have to go looking for the latest version. We should get notified about what's going on with the versions. I would like to see easier dual-factor authentication."
What is our primary use case?
It is primarily for VPN access and restricting access into the network. One of our clients has a shared system between multiple counties, and it is used to keep the right traffic flowing between counties and blocking the rest.
Each client has a specific version. We're trying to get them all current. Our number one client has the current version.
How has it helped my organization?
It provides greater security and flexibility. Instead of just opening it all up, it allows access to only those people who should have access. The network itself is pretty open, and with FortiGate, we can lock down exactly what they have access to.
What is most valuable?
Primarily, the VPN solution is most valuable. It allows you to have more flexibility in terms of what is there on the end-user device, and what is not there. You can check and make sure that they're current. It has more flexibility than just a straight VPN solution.
It works really well. It has the features that 99% of people need.
What needs improvement?
They should keep us up to date about the latest version. That's the biggest thing. Currently, we have to go looking for the latest version. We should get notified about what's going on with the versions.
I would like to see easier dual-factor authentication.
For how long have I used the solution?
Our clients have been using it for several years, and we've been helping them with that.
What do I think about the stability of the solution?
It is rock solid.
What do I think about the scalability of the solution?
It is reasonably scalable. It is not as flexible in scalability as Cisco Firepower with their FMC.
Usually, the clients who use it are cost-conscious. They don't want to spend money on a Cisco device, so they go for Fortigate. A large organization usually goes with Cisco. A smaller organization tends to go for Fortigate or some other solution because of the price.
Our clients use it all over the place. It is not just for their internet. It is used for their internal networks and the rest of it.
How are customer service and technical support?
It was average. I wasn't overly impressed. I was also not disappointed.
How was the initial setup?
There is a little complexity to it but not more than other solutions. I haven't noticed greater complexity.
The deployment duration depends on how detailed you are and what you don't want to get. You can deploy one of these firewalls in half an hour, but if you're going to add a bunch of complexities and things to it, it can take at least a couple of hours to get it all set up the way you want. It ranges from half an hour to four hours.
What about the implementation team?
We help our clients in implementing it. We also manage it. We just have one network support person to take care of things. It is not a job that requires more than one person.
What's my experience with pricing, setup cost, and licensing?
There is no additional cost. Once you get the licensing fee, you're good.
What other advice do I have?
Realize that it is not Cisco, and it doesn't work the same way. You got to pay attention to what you're doing. Those who are super familiar with Cisco got to pay attention to what you're doing because it works differently.
I would rate this solution a nine out of ten. It works well. Except for the dual-factor authentication feature, it has all the next-generation features that you need for a standard user.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Buyer's Guide
Download our free Fortinet FortiGate-VM Report and get advice and tips from experienced pros
sharing their opinions.
Updated: August 2026
Product Categories
FirewallsPopular Comparisons
Fortinet FortiGate
Cisco Secure Firewall
Netgate pfSense
Sophos Firewall
Palo Alto Networks NG Firewalls
WatchGuard Firebox
Check Point Harmony SASE (formerly Perimeter 81)
Check Point Quantum Force (NGFW)
Check Point Cloud Firewall (formerly CloudGuard Network Security)
Cisco Meraki MX
Azure Firewall
Palo Alto Networks VM-Series
Juniper SRX Series Firewall
SonicWall TZ
Buyer's Guide
Download our free Fortinet FortiGate-VM Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Features comparison between Palo Alto and Fortinet firewalls
- How is FortiGate-VM different from the physical FortiGate firewall?
- Looking for a piece of advice and tips on the deployment of VPN concentrators for SD-WAN tunnels?
- What happens if FortiGate VM next-generation firewall in VMware NSX license becomes expired?
- Which would you recommend - FortiGate VM or Azure Firewall?
- What do you recommend for a corporate firewall implementation?
- Comparison of Barracuda F800, SonicWall 5600 and Fortinet
- Sophos XG 210 vs Fortigate FG 100E
- Which is the best network firewall for a small retailer?
- When evaluating Firewalls, what aspect do you think is the most important to look for?














