What is our primary use case?
FortiWeb is an application firewall. We deployed it as a web application firewall for our 16-plus web applications. We integrate this with Fortigate and the FortiSandbox, and all the applications we are hosting in the data center.
How has it helped my organization?
With the feat of cyber attack, the most important thing we can do is protect the web application. We can protect it from attacks like DDoS. It's helping to maintain our cyber security posture.
What is most valuable?
The most valuable product feature is the web application firewall. It still includes the inline. Its mode of operation is great. It comes with four modes of operation, reverse proxy, two transplant nodes, and WCCP. One node is there for transplant, just to have one more. Any customer, based on their network of topology and deployment type, can choose it and have an easy deployment.
The solution has a good sandbox feature.
It is stable.
What needs improvement?
It can be better with web application firewalls.
It is already close to the best in class. This product is up to the mark right now.
For how long have I used the solution?
I've used the solution for around three years.
What do I think about the stability of the solution?
This is a stable, reliable solution. There are no bugs or glitches. It doesn't crash or freeze.
What do I think about the scalability of the solution?
Capacity-wise, since there is hardware involved, it cannot scale too much. There are some technical limitations.
We have around 2,000 users right now.
We do not have plans to increase usage in the future.
Which solution did I use previously and why did I switch?
We did not previously use a different solution.
How was the initial setup?
How easy or difficult the implementation is depends on the deployment type. It is very easy if you employ reverse proxy. However, it can be a little complex depending on what you need to do.
There was a team that helped deploy the solution, however, for maintenance, you only need one network security engineer.
What about the implementation team?
We used a third party to assist us with the setup.
What was our ROI?
We have witnessed an ROI. I'd rate the level of ROI we've seen a four out of five as it helps mitigate cyber attacks.
What's my experience with pricing, setup cost, and licensing?
I'd rate the pricing at a four out of five in terms of affordability.
Which other solutions did I evaluate?
I'm exploring two or three products right now. We did not evaluate anything before choosing this product.
What other advice do I have?
I highly recommend that any web application firewall be deployed in the IT infrastructure where companies host web applications. It should be there. Whatever you choose should integrate with a third-party load balancer.
I'd rate the solution a ten out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.