Overview
Video 1
Video 1
Video 2

Product video
FortiGate-VM on AWS delivers next-generation firewall and VPN/SD-WAN capabilities for organizations of all sizes. It enables broad network protection and automated security management for consistent enforcement and visibility across your AWS VPCs and hybrid cloud infrastructure. FortiGate natively integrates with AWS Gateway Load Balancer, AWS Transit Gateway and other AWS security services to simplify and deliver enterprise-class security for applications and workloads running on AWS.
FortiGate-VM reduces complexity by combining secure connectivity with advanced threat protection capabilities such as powerful intrusion prevention (IPS), malware detection and protection, and continuous threat intelligence from FortiGuard Labs security services. It offers a management console that provides comprehensive network automation and unified visibility across multi-cloud environments.
FortiGate-VM, in concert with other elements of the Fortinet Security Fabric, enables common deployment scenarios such as cloud security services hub, secure remote access, container security, web application security, and critical workload protection.
Visit the FortiGate-VM on AWS Community Resource Hub to find onboarding, deployment, and technical information and join in discussions: https://community.fortinet.com/t5/FortiGate-VM-on-AWS/gh-p/fortigate-vm-on-aws
Please contact awssales@fortinet.com with any questions.
Highlights
- FortiGate offers protection from a broad array of threats, with support for all of the security and networking services offered by the FortiOS operating system.
- Delivers complete content and network protection by combining stateful inspection with a comprehensive suite of powerful security features to meet PCI DSS compliance.
- IPS technology protects against current and emerging network-level threats. In addition to signature-based threat detection, IPS performs anomaly-based detection which alerts users to any traffic that matches attack behavior profiles.
Details
Unlock automation with AI agent solutions

Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Free trial
Dimension | Cost/hour |
---|---|
c5n.xlarge Recommended | $1.02 |
c7a.4xlarge | $3.29 |
t2.small | $0.36 |
c6a.4xlarge | $3.29 |
c7a.2xlarge | $1.60 |
c6a.2xlarge | $1.60 |
m5.8xlarge | $4.10 |
t3.xlarge | $1.02 |
m5.4xlarge | $3.29 |
c7i.4xlarge | $3.29 |
Vendor refund policy
You may terminate the instance at anytime to stop incurring charges.
Custom pricing options
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Additional details
Usage instructions
Please ensure the connectivity to FortiCare (https://directregistration.fortinet.com:443 ) by checking all related setup on security groups, ACLs, IGW, route tables, public IP address...etc.
After deploying the instance, click on Manage in AWS Console to see the running instance and public DNS address to continue the configuration of the FortiGate-VM. Connect to the secured Web UI via the public DNS address: https:// <public DNS address>. For any CLI configuration/settings, SSH is required to log into the CLI. Default login credentials are with a username of admin and the AWS Instance ID value as the password. The FortiGate-VM AWS Install and Configure guide is located at https://docs.fortinet.com/document/fortigate-public-cloud/7.6.0/aws-administration-guide/
Support
Vendor support
This product is intended for On-Demand subscription. Please contact Customer Support with the following information instead of trying to register in FortiGate management GUI:
- The serial number of your FortiGate instance
- The email ID of your Fortinet account. If you do not have an account yet, please sign using the link below
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Standard contract
Customer reviews
VPN connections get streamlined as connectivity requirements are met
What is our primary use case?
For FortiGate Next Generation Firewall (NGFW) , I use it primarily to connect with other companies through IPsec VPN. Any other security measures are on AWS itself, not on FortiGate . I'm someone who's familiar with FortiGate from previous jobs, so I use that, but it's how we're using it right now.
The IPsec feature of FortiGate Next Generation Firewall (NGFW) is valuable to our company because we need to connect quickly VPN connections with other companies in our networks, and there are many connections in some cases. We need to keep it as secure as possible, maybe one-way connections or particular ports. FortiGate is the best option, at least that I'm familiar with, that can answer all of that in one product that is mostly easy to use.
In our case, the deployment options of FortiGate Next Generation Firewall (NGFW) are not scalable, but in terms of connectivity to other companies, that's exactly what we needed, and that's exactly what it does perfectly, what is needed.
What is most valuable?
The most valuable feature for our company using FortiGate Next Generation Firewall (NGFW) is the IPsec feature, but actually FortiGate is known for good UTM products such as application filter and web filtering. We don't use it here, but in previous companies I used it on a daily basis.
One of the benefits I've realized from using FortiGate Next Generation Firewall (NGFW) is that it's secure and allows functions such as VPN. You can control Wi-Fi and other things from within, if you have FortiNet devices. It's an easy to use product, yet it allows you all that is needed, or at least all that you can do. Whenever there is a security breach, FortiGate is known to patch it very quickly from what I've seen.
Since FortiGate Next Generation Firewall (NGFW) was implemented, there was a thought in the company about using the VPN that AWS itself provides, but it's far from being as good as FortiGate.
The process can be improved in terms of explaining exactly how the installation should be done step-by-step on AWS, because there are network considerations such as security groups. From what I could find, I didn't do extensive research, but it didn't seem obvious enough in that case.
What needs improvement?
I do not utilize the intrusion prevention and web filtering features of FortiGate Next Generation Firewall (NGFW).
The ability of FortiGate Next Generation Firewall (NGFW) to inspect SSL encrypted traffic is not applicable in the current position, but in previous companies, it was really seamless whenever we used it. It just worked seamlessly.
I don't recall if we use a centralized management console for FortiGate Next Generation Firewall (NGFW) in maintaining oversight across distributed networks.
In my opinion, FortiGate Next Generation Firewall (NGFW) could be better by having specific models for home usage. I'd wish to have a FortiGate in my home, but the licensing isn't something that I want to purchase for home usage.
For how long have I used the solution?
I have been using FortiGate Next Generation Firewall (NGFW) almost since day one at this company, which I have been with for three years and something.
What do I think about the stability of the solution?
I experienced the stability and availability of FortiGate Next Generation Firewall (NGFW) more in the previous company. In terms of stability, mostly it is okay; however, in some cases, there are features, especially the UI, that tend to have issues. In some cases, you need to restart it, but mostly, it's working flawlessly, especially if you have an HA environment, high availability.
What do I think about the scalability of the solution?
In our case, the deployment options of FortiGate Next Generation Firewall (NGFW) are not scalable, but in terms of connectivity to other companies, that's exactly what we needed, and that's exactly what it does perfectly, what is needed.
I'm certain that what it allows us in terms of connections to other companies is a straightforward solution that you don't have to use something else. It's easy to configure a new connection, and it works in a few minutes if everything works fine.
How are customer service and support?
In this company, I may have worked with FortiGate Next Generation Firewall (NGFW) support one time, but in my previous company, I actually worked with them extensively. We had multiple FortiGate devices across multiple offices around the world, and we needed to switch them from one account to another sometimes. So I encountered FortiGate support quite frequently.
I would evaluate the level of support for FortiGate Next Generation Firewall (NGFW) somewhere between seven and eight. My experience might be outdated because lately, I haven't had much experience with that. In some cases, you need to come prepared because the people there work by the book and ask for particular things. If you don't have them, you cannot proceed, but if you know what they need, after some time, it's pretty easy to get support or whatever you need.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
I don't have enough information on other products that I can tell the pros and cons of FortiGate Next Generation Firewall (NGFW) versus its competitors.
How was the initial setup?
The setup was already done, but from what I read, we considered putting it in another environment that we have, yet we didn't because we didn't actually need the environment at all.
What was our ROI?
I don't know if my company has seen return on the investment from FortiGate Next Generation Firewall (NGFW), but I'm certain that what it allows us in terms of connections to other companies is a straightforward solution that you don't have to use something else. It's easy to configure a new connection, and it works in a few minutes if everything works fine.
What's my experience with pricing, setup cost, and licensing?
Pricing isn't something applicable for me regarding FortiGate Next Generation Firewall (NGFW) because it was already set up once I came to this company.
Which other solutions did I evaluate?
Since FortiGate Next Generation Firewall (NGFW) was implemented, there was a thought that crossed in the company about using the VPN that AWS itself provides, but it's far from being as good as FortiGate.
What other advice do I have?
I would rate FortiGate Next Generation Firewall (NGFW) as a solution a 10 out of 10. I do love FortiGate.
I give it a 10 because, in my experience, FortiGate Next Generation Firewall (NGFW) is a product that allows you to do many things very easily. If you don't appreciate something about the way it works, you have enough playground to change it to suit your needs.
For someone considering FortiGate Next Generation Firewall (NGFW) for their company, there was a demo online version that they have on their website that is easy to access. You can play with it and see almost all the features in action. That's an easy thing to actually test. Obviously, you cannot connect it to your network and see things live in your case, but it is still a good example of how things work.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Has protected against emerging security threats with valuable features and reliable support
What is our primary use case?
I have experience with Fortinet solutions.
I have had experience recently with FortiGate as well.
All the basic and important features needed for perimeter solutions to protect branches and headquarters are valuable with the FortiGate Next Generation Firewall (NGFW).
The FortiGate Next Generation Firewall (NGFW) is deployed in a company that is a carrier of telecommunication services, providing solutions to all kinds of companies around the world, especially in Mexico.
It addresses new and emerging security threats in the telecommunications industry, as we recognize that it is a highly effective solution that provides robust protection. That's the reason it was the main product we used to sell for perimeter security.
What is most valuable?
We use FortiGate Next Generation Firewall (NGFW) for the access points and their switches.
All the basic and important features needed for perimeter solutions to protect branches and headquarters are valuable with this solution.
The antivirus, malware, anti-malware, anti-spam, IP VPN connections, and firewall rules bring the most value for me and my clients.
The segmentation capabilities enhance our security posture because they work effectively combined with the switching solutions, allowing us to easily combine switching with the firewall, as we could segregate the VLANs. They were powerful and appropriate for the solution we needed while supporting all the adequate features we required.
What needs improvement?
I'm not completely sure how Fortinet can improve the FortiGate Next Generation Firewall (NGFW), however, there were situations of availability related to their switching solutions due to box errors. Fixing the bugs in their switching solutions is necessary because I have faced several situations where we lost connectivity because of their firmware.
For how long have I used the solution?
I have almost 12 years of experience with FortiGate Next Generation Firewall (NGFW).
What do I think about the stability of the solution?
Regarding next-generation firewalls, I would give the FortiGate Next Generation Firewall (NGFW) a rating of ten out of ten for stability.
What do I think about the scalability of the solution?
The scalability of the FortiGate Next Generation Firewall (NGFW) is quite good; it is easy to make it scalable.
I would place the scalability between nine and ten on a scale of one to ten.
How are customer service and support?
I would rate Fortinet's support a ten out of ten. They are excellent and very available whenever we needed their help.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We used to struggle with Cisco because it didn't have most of the features that Fortinet has, and when comparing with Palo Alto or Check Point, the prices are higher, which is important for solutions needed by mid-sized companies.
What about the implementation team?
Their deployment team is substantial, consisting of between 100 and 150 people.
What was our ROI?
Most clients realize the benefits from deployment immediately. They look for internet availability and the security needed for their endpoints.
What's my experience with pricing, setup cost, and licensing?
Fortinet has good prices compared to other vendors; there were cheaper options, and when we compared Cisco, Fortinet's prices were lower.
What other advice do I have?
I don't remember how I bought the FortiGate Next Generation Firewall (NGFW), so I can't say if it was purchased through AWS Marketplace.
The FortiGate Next Generation Firewall (NGFW) helps with the economic aspect because it effectively protects what we needed with the companies in designing the products and solutions.
I'm not familiar with how the FortiGate Next Generation Firewall (NGFW) utilizes artificial intelligence or if it has AI-driven features to improve threat detection and response, so I cannot detail its existence or help.
I would recommend FortiGate Next Generation Firewall (NGFW) to others. It is a very good product. In my position, I sold approximately 1,000 units.
On a scale of one to ten, I rate this solution a ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
User-friendly features boost network security and threat prevention
What is our primary use case?
We put FortiGate Next Generation Firewall (NGFW) after the ISP; we use the internet, and before we put our server through the internet, we put FortiGate Next Generation Firewall (NGFW) as a firewall in our internal network.
We follow ISO 27001, which includes web filtering, spam, and IPS functionality.
What is most valuable?
We sometimes face challenges if we have new server configurations and need to consider compatibility with FortiGate .
We hope that FortiGate uses AI to carefully identify something abnormal, and we believe that will be helpful.
The multi-threat protection feature helps us secure our organization.
What needs improvement?
We understand that FortiGate cannot be standalone without others, such as FortiManager, so for small businesses, if FortiGate can provide something similar to FortiManager, it will be better.
For how long have I used the solution?
I have been using FortiGate Next Generation Firewall (NGFW) for about nine years.
What do I think about the stability of the solution?
I would rate the stability of FortiGate Next Generation Firewall (NGFW) as a nine.
What do I think about the scalability of the solution?
I would rate the scalability as a nine also.
How are customer service and support?
I would rate the technical support as a seven.
How was the initial setup?
The installation of FortiGate Next Generation Firewall (NGFW) is actually moderate; it depends on the needs, so it's not so easy but it's not so difficult.
The installation requires a couple of days, and actually, it takes about one day because some parameters need to be set, especially if there are a lot of users.
What about the implementation team?
I have a person in charge of that.
What's my experience with pricing, setup cost, and licensing?
From a cost perspective, I think it's quite reasonable, not so cheap, but I think it's quite similar compared to others.
What other advice do I have?
Two people are involved in the maintenance.
We use many FortiGates. We are using the 60F and 100F, which are the newest versions.
Our staff handles maintenance ourselves; we are not using a third-party service.
About 30 people are using this product in our organization.
We are payroll outsourcing consultants, so basically they calculate payroll.
I would recommend FortiGate Next Generation Firewall (NGFW) to others.
I would rate FortiGate Next Generation Firewall (NGFW) in general as an eight.
Which deployment model are you using for this solution?
Deep inspection capabilities require improvement while good GUI and features enhance network performance
How has it helped my organization?
What is most valuable?
What needs improvement?
What other advice do I have?
Implementation improves efficiency and provides greater visibility over issues
What is our primary use case?
What is most valuable?
What needs improvement?
For how long have I used the solution?
What was my experience with deployment of the solution?
What do I think about the stability of the solution?
How are customer service and support?
How would you rate customer service and support?
Positive