Fortinet FortiGate-VM was used for our company's customers, but presently, most of our clients use Sophos UTM.
My company's clients use Fortinet FortiGate-VM to protect their entire internal network.
External reviews are not included in the AWS star rating for the product.
Fortinet FortiGate-VM was used for our company's customers, but presently, most of our clients use Sophos UTM.
My company's clients use Fortinet FortiGate-VM to protect their entire internal network.
Fortinet FortiGate-VM has very good features. The most important factor about the product is that it is very intuitive. Fortinet FortiGate-VM is very handy compared to Check Point and Palo Alto.
With Fortinet FortiGate-VM, you get all the tools in the basic package, so there is no need to get a special platform for each component, which makes it much easier to implement.
The stability of the product is an area of concern where improvements are required.
The response time of the technical support team is an area of concern where improvements are needed.
I have been using Fortinet FortiGate-VM for a few years. My company has a partnership with Fortinet.
Stability-wise, I rate the solution a seven out of ten.
There are certain issues that users may face when they update Fortinet FortiGate-VM due to some bugs.
Considering that the machines work with the same operating system and in the same method in an environment, the use of the scalability feature is very easy.
Scalability-wise, I rate the solution an eight out of ten.
I work with our company's small, medium, and enterprise-sized clients who use the solution.
At times, you can get a quick answer from the support team, but for some cases or issues, it takes a long time for the technical team to respond.
I rate the technical support a seven out of ten.
Neutral
I have experience with Check Point and Palo Alto. The first firewall that my company worked with was Check Point, and we have used it for many years.
The product is easy to implement.
The solution is deployed on the cloud and on an on-premises model.
The complexity of the organization determines the time required to deploy the solution. Basically, it takes three hours to deploy the product, and for a big company, it takes two days.
One good engineer is enough to take care of the deployment phase of the product.
The pricing of the product depends on a company's negotiation skills, and if a company can't get it at a good price, there are other tools that can be purchased from the market.
I rate the product price a seven on a scale of one to ten, where one is a low price, and ten is a high price.
Our company needs to make either a yearly or a three-year payment towards the licensing charges attached to the product. There are no additional costs attached to the solution apart from the tool's licensing charges.
Fortinet FortiGate-VM is a very good product.
The maintenance of the product is very easy. One person is required to take care of the maintenance of the product.
I recommend the product to those who plan to use it. Before buying the product, people should consider the ease of implementation Fortinet FortiGate-VM offers.
Check Point is the best when it comes to monitoring and investigating logs. In general, the most important thing users should consider is that the implementation part should be good, for which Fortinet FortiGate-VM is the best.
I rate the overall tool an eight out of ten.
The tool is expensive.
I have been working with the product for two years.
I rate the tool's stability a ten out of ten.
Fortinet FortiGate-VM is scalable. We have 15 users.
Fortinet FortiGate-VM's deployment is easy.
I rate Fortinet FortiGate-VM an eight out of ten.
All firewalls, including Fortinet FortiGate-VM, provide similar features under the sync capability. The differences between them are minimal, with FortiGate-VM offering simplicity in use. It covers aspects such as intrusion prevention, web filtering, application control, routing, virtual domains, policy-based routing, and SSL.
For our customer, this product holds paramount importance. It is critical for them as we collaborate with government agencies, financial institutions, and oil and gas companies. Inspecting and controlling traffic, especially pertaining to credit cards, is crucial for their operations.
GitDM, like FortiGate VM, provides similar features to FortiGate appliances or cloud solutions. However, FortiGate VM is more suitable for heavy traffic and inspection compared to GitDM. Unfortunately, FortiGate VM lacks a dedicated SPU for inspection, and all features rely on CPU and RAM.
I don't have any specific improvements to suggest, but perhaps the pricing could be enhanced. Regarding updates, more frequent updates would be appreciated. FortiGate-VM is currently focused on providing very good firmware updates, automation, and top-notch features. It stands as a great product for now.
Based on our needs and the vulnerabilities we've encountered due to various downloads, I suggest integrating with Kaspersky Gateway. This integration would involve scanning and inspecting both official emails and spam emails. Our customer has successfully worked with Kaspersky Gateway, and overall, the integration has been effective.
I have been working with Fortinet FortiGate-VM for 3 years.
In conjunction with the switch and based on the sizing, it indicates a suitable box or VM for the customer. If the level of mailbox is low, the stability will be good, and the box will not be in conserve mode. Regarding impressions of scalability, I would rate it eight out of ten.
The support team is excellent, providing assistance and resolving issues effectively.
The setup is straightforward for me, but our customers might find it a bit challenging. Overall, following the provided steps and consulting the official materials or documentation makes the FortiGate-VM setup relatively easy.Firstly, we establish a console connection to the firewall and access its default IP. In the second step, we create rules to enable the firewall to access the internet. Following these two steps, we register a rule with Fortinet Broadcom, download the necessary licenses, and upload them. After uploading the license, we set up an interface rule, check the license, and configure interfaces such as LAN, WAN, and VPN. Subsequently, we create profiles, including web filter, application, antivirus, and IPS profiles. The last steps involve configuring interfaces like LAN, WAN, and VPN, as well as attaching profiles to outbound policies. We also consider additional configurations, like server publishing, destination netting, or integrating with PBM for Alibaba Cloud. The final three configurations are optional and depend on the customer's requirements.
We can tailor the suitable license for the customer, whether they require UTB or enterprise features. The options are flexible based on their needs.
I would recommend Fortinet for large-scale companies and Sophos for medium or small enterprises. I would rate it 8 out of 10.
I am a network engineer. I deploy firewalls for customers. I also provide firewall installation and configuration services.
I mostly prefer Fortinet firewalls. The graphical user interface is user-friendly and easy to configure. I recommend it to my clients because it is very easy to deploy.
Performance, scalability, and everything else are top-notch compared to others like Sophos or Cisco. I've used them all, and Fortinet is my go-to.
The main use case is for organizations that can't afford or procure hardware appliances. They can install the VM and license it as a cost-effective alternative.
The combination of SD-WAN and VPN capabilities is the most valuable feature.
If I could add one feature, it would be free security profiles.
I have experience with FortiGate VM. I've used it for practice and deployed it on customer sites.
I have been using it for four years.
I haven't personally experienced any bugs, and none of my clients have reported any either.
I would rate the scalability a seven out of ten.
The customer service and support are very knowledgeable and helpful.
I've deployed Cisco firewalls and hold certifications like CCNA and CCNP. But for security-level firewalls, I always go with FortiGate.
The initial configuration is very easy, even for non-technical users.
VMs can be affordable, but for high-demand scenarios, I'd still recommend the hardware. For the cost, it's a ten out of ten.
I would recommend the hardware firewall unless you have specific constraints. If you're installing on a server or desktop, and something happens like a cache issue, you won't have the same backup options as a physical appliance.
With hardware, you can claim a warranty, get a new unit, and easily restore from your existing backup. That wouldn't be as straightforward with a VM.
Over a hundred customers have deployed the physical Fortinet firewall based on my recommendations.
Overall, I would rate the solution a seven out of ten.
Fortinet FortiGate is our primary security solution for network communication. It enforces segregation between the IT and OT networks. All communication, integrations, and other traffic between IT and OT must pass through the FortiGate, which inspects and controls it.
FortiGate also serves as our VPN concentrator. Both internal users and partners connect their VPNs to FortiGate. We manage the entire VPN process, including access control and security policies.
All web traffic within the organization flows through the FortiGate for inspection and security controls. We leverage FortiGate's UTM capabilities, including web filtering, intrusion prevention, and application control.
While we have several websites running behind FortiGate, they are primarily static content sites with limited business activity. Therefore, we utilize the basic WAF functionality within FortiGate instead of a dedicated WAF device. This approach has proven effective for our needs due to the low volume of transactions and sensitive data on these websites.
FortiGate also manages communication between our internal IT units. With five units in operation, efficient inter-unit communication is critical. FortiGate ensures secure and controlled data exchange between these units.
FortiGate provides us with both visibility and segmentation for our industrial devices. This allows us to achieve good segmentation and also gain a clear view of the assets that reside behind them. Now, if I need to find a specific asset within our industrial environment, I can simply access Fortinet and check the assets listed there. Additionally, FortiGate utilizes sensing technology that identifies the type of each device, further enhancing our overall visibility.
FortiGate helps a lot to reduce the risk of cyberattacks that could disrupt our production.
FortiGate enables centralized management of our organization's network and security operations, providing comprehensive visibility into our environment for proactive threat detection and mitigation.
The effectiveness of our response to a production disruption depends on the affected environment. Some environments have sufficient redundancy to continue operating without the system, while others require immediate intervention. To address this variability, we utilize a strategically deployed FortiGate across all environments. This firewall enforces pre-defined rules to manage traffic and data flow effectively, ensuring that disruptions are minimized and operations continue smoothly.
FortiGate provides us with actionable data, enabling us to make informed decisions. The visibility it grants into the devices operating within our environment empowers us to take timely action and safeguard them.
All our OT traffic traversing to and from our IT environment passes through our Fortinet FortiGate firewall, which helps to reduce our operational expenses.
The security fabric helps reduce our mean time to remediation.
Fortinet has helped us take a more serious approach to cybersecurity.
The Intrusion Prevention System and the web filtering are both working well. The Deep Packet Inspection is also functioning properly, allowing us to see all network traffic, including encrypted data. I find the DPI to be a valuable and user-friendly feature. Additionally, the logs are clear and easy to understand. Having worked with Cisco and Check Point in the past, I can confidently say that these logs are on par with those of other leading security solutions. They greatly aid in troubleshooting, investigations, and general network monitoring. Overall, I am impressed with this solution's web filtering capabilities and robust IPS functionality. It is both easy to manage and deploy, making it a valuable tool for our network security.
While FortiGate offers a wide range of security features, I sometimes feel that the platform could benefit from more extensive improvements. Given the multitude of functions it provides, I wonder if the developers have enough time to adequately refine each aspect. However, for our specific needs, FortiGate currently performs adequately.
The debugging and troubleshooting has room for improvement.
I would like to see greater integration with third-party solutions. For instance, one example would be integrating Endpoint Protection with FortiGate, such that if an issue arises with Endpoint Protection, an action could be automatically triggered on FortiGate.
I am concerned about Fortinet's ability to help us meet regulatory compliance because its optimal functionality requires deploying all solutions within the mesh as Fortinet products. This raises questions about the compatibility and integration of non-Fortinet technologies within the Fortinet Security Fabric.
I have been using Fortinet FortiGate for two years.
I would rate the stability of Fortinet FortiGate an eight out of ten.
I would rate the scalability of Fortinet FortiGate an eight out of ten.
The technical support responds quickly.
Positive
I have worked with Cisco, Check Point, and Palo Alto. I worked with Cisco for ten years and I find Fortinet FortiGate to be a better solution.
The price is fair for what we get with FortiGate.
I would rate Fortinet FortiGate a nine out of ten.
Although we currently don't use any Fortinet devices designed for extreme environments, we are planning to test a few Fortinet switches in such conditions. This initial experiment aims to assess their performance and suitability for our harsh environment. If the switches perform well, we may consider switching our current supplier. While we don't frequently change our OT networks, prioritizing long-term stability has been our main objective, and we've achieved that so far. However, since Fortinet is our network supplier, testing their switches and confirming their reliability is a prudent step for when we need to update our switches.
Potential users should understand their needs before purchasing the solution.
I use Fortinet FortiGate-VM in my company to manage firewall installation and endpoint connectivity.
The most valuable feature of the solution is that it is easy to operate.
If a user makes any changes, it will immediately have an effect on the solution. If a user makes any changes in a product like Palo Alto, there is a need to push those changes to the firewall and apply commit changes, which shows the configuration part, making it a good feature since it sometimes helps, considering how a user may make small errors.
Errors made by a user get applied when using Fortinet FortiGate-VM. In the production environment, if a user makes any changes in a live environment, there is a need for the user to be very alert. The aforementioned area can be considered for improvement in the solution. Palo Alto is good for the production environment.
Capacity-wise, I think the solution's log storage area is something that needs to be increased since, by default, it stores logs for only seven days. The compliance team in our company needs to check the logs, which may be older than ninety days. Though the tool provides a storage hard disk with enough space, in our company, we can't store logs.
I have been using Fortinet FortiGate-VM for more than three years. My company is a customer of the product.
As my company uses an active-passive deployment in our environment, we did not face any stability-related issues with the product. Stability-wise, I rate the solution a ten out of ten.
Around 4000 to 6000 employees in my organization use the solution.
The solution's technical support is good. I rate the technical support a ten out of ten.
Positive
I rate the product's initial setup phase a ten on a scale of one to ten, where one is a difficult setup phase, and ten is an easy setup phase.
The solution can be deployed in an hour or two.
I deployed the solution by myself in my organization.
It is a medium-priced product.
Compared to the other VMs in the market, Fortinet FortiGate-VM is very easy to use.
I rate the overall tool a nine out of ten.