Sign in Agent Mode
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Reviews from AWS customer

14 AWS reviews

External reviews

55 reviews
from and

External reviews are not included in the AWS star rating for the product.


    James-Jiang

Reduces our remediation time and our operational expenses

  • November 16, 2023
  • Review provided by PeerSpot

What is our primary use case?

We utilize Fortinet FortiGate appliances at six branch offices, one data center, and one DLP site. Our network is driven by SD-WAN, and we employ FortiGate as our firewall, FortiEDR for endpoint protection, and FortiSwitch for alerting on all layers of the network.

For me, the best practice is to deploy on-premises for data centers. However, for small branch offices with over ten to twenty staff members, I can deploy the devices remotely. We can provision our cloud and push the configuration to those devices from the cloud.

How has it helped my organization?

The visibility that FortiGate provides into our devices is crucial for network segmentation. I want to see the output in a specific way. The traditional approach has shifted slightly, as I'm accustomed to Cisco networking equipment. Typically, we have a call feature, but I'm currently using all the call features for internal routing. However, with FortiGate, most security subnets are segmented and protected behind the firewall. This allows me to lock down or secure sensitive subnets, such as HR or departmental information. I can log in from there, and all other subnets for client users require centralized access. This means that all traffic must go through the firewall, enhancing security.

FortiGate enabled us to achieve compliance with governance requirements. The FortiGate, along with fabric security and checkpoints, essentially act as regulatory checkers, reviewing our security practices against industry best practices and guidelines. If they identify any discrepancies, they alert us, allowing us to develop and implement mitigation plans to address the issues. For instance, if our SSH configurations don't meet security standards, such as algorithm or cipher requirements, FortiGate will notify us, enabling us to take corrective action and regain compliance.

We utilize API calls for FortiGate, including those related to our PRTG monitoring system. Additionally, we employ HVAC calls and leverage another MDR solution from Arctic Wolf to trigger specific events on the FortGate. This API functionality enables us to generate API keys and seamlessly integrate with API features across various platforms.

Integrating FortiGate into our environment is straightforward. Our transition from Palo Alto to FortiGate was seamless, utilizing our existing policies and migration tools. FortiGate also provides provisioning capabilities for defining branch office configurations. As long as branch office devices can access the internet to communicate with Fortinet Cloud, we can remotely implement provisioning for these devices, offering greater convenience for small branch offices.

The built-in APIs streamline integrations with other vendors, reducing deployment time. They effortlessly generate API keys upon logging into the Fortinet network, facilitating the deployment of our PRTT monitor tools. These tools seamlessly integrate with each other, fostering rapid deployment. Most platforms, including Cisco Meraki, Palo Alto, and Check Point, now adhere to industry standards and support API calls.

FortiGate has been instrumental in mitigating the risk of cyberattacks that could potentially disrupt our production operations. I am particularly impressed with Fortinet's cloud-based FortiGuard service, which continuously updates our systems with the latest zero-day attack protection, significantly reducing the threat landscape within our industry. Given the energy industry's heightened vulnerability to cyberattacks, we have implemented measures to restrict access to our network based on geolocation IP addresses. This includes restricting access from countries such as Russia and China, further safeguarding our environment from potential threats. Additionally, FortiGuard's regularly updated list of malicious websites provides an invaluable layer of protection for our industry.

In the event of a production-disrupting attack, we can utilize FortiManager to remotely isolate and mitigate the threat by shutting down specific subnets or networks. We can easily navigate through the unpacked data, and upon detecting a suspicious event, we can initiate automation or SOAR processes to notify the Cloud Service Provider team with whom we have been collaborating. Additionally, we can establish traffic alerts. For instance, since not all users access the AD server simultaneously each month, if we observe such suspicious behavior, we can remotely shut down that network, thereby minimizing our risk exposure.

FortiGate provides us with actionable insights to guide our decision-making regarding the appropriate actions to take. We generate 20 gigabytes of log data daily, which we utilize to establish a baseline for network traffic on our servers and compare it to our generated report. This approach allows us to set a threshold for the read volume of 20 gigabytes of FortiGate data attempting to reach a server from an external source. If this threshold is exceeded, an alert is triggered, prompting us to take corrective action. The centralized monitoring of our environment provides significant value.

Security is not a single, isolated element. It encompasses the entire network infrastructure, including firewalls, routers, switches, endpoints, and even mobile devices. The Fortinet Security Fabric seamlessly integrates these components to provide comprehensive protection. It generates detailed logs, including those from access points linked to FortiSwitch. The FortiSwitch, fully integrated with the FortiGate Fabric, relays security alerts to the FortiViewer in the SOC. This centralized view provides complete visibility into the network, including SSIDs, wireless networks, subnets, and devices protected by FortiClient. The Fortinet Security Fabric tracks individual devices connected to the network, including compromised laptops. FortiClient triggers alerts and sends them to FortiCloud, which also receives logs from the EMS server and the firewall. These logs are consolidated in the FortiAnalyzer and forwarded to the cloud-based log server for analysis. This comprehensive approach to security ensures that all potential threats are identified and addressed promptly.

FortiGate has contributed to a reduction in our operational expenses. Prior to adopting Fortinet, we utilized Palo Alto for firewalls and Cisco for call switches. However, as we began using Fortinet, we gradually transitioned to their products. Currently, we employ FortiGate for our firewall, FortiSuite, and FortiAP Access Points, phasing them in one at a time. This approach has effectively minimized downtime and lightened our workload by enabling centralized management through a single pane of glass.

FortiGate has significantly reduced our time to remediation. We can now check logs from servers, firewalls, switches, access points, clouds, and even devices from different brands, all from a single centralized location. This has greatly reduced the time required for threat hunting and security event investigation.

Fortinet has been instrumental in enhancing our cybersecurity approach to safeguard our industrial machinery. We rely on some heavy equipment that is critical to our industry's operations. To protect this equipment, we have isolated it on a single subnet and implemented strict access controls, allowing only authorized users and MAC addresses to access the network. This ensures that only internal staff can operate the equipment unless authorized maintenance personnel are present. The high level of security we have implemented is essential because our industry's operations are closely tied to the core applications of our industry. We are committed to safeguarding our equipment and preventing any potential risks.

What is most valuable?

I appreciate FortiGate's flexibility, which allows for centralized management through FortiManager. Additionally, its integration with FortiAnalyzer, which can be deployed in the cloud, enables centralized monitoring of all firewall logs.

What needs improvement?

Fortinet needs to overhaul its documentation. Our current reliance on outdated documentation has resulted in significant time wastage. While we can locate the necessary documentation, the constant daily revisions necessitate meticulous identification of the relevant documents to prevent the use of outdated information that could jeopardize our environment. At the very least, Fortinet should classify its documentation to clearly indicate the applicable version, as our attempts to do so manually are becoming increasingly tedious.

For how long have I used the solution?

I have been using Fortinet FortiGate for over three years.

What do I think about the stability of the solution?

Fortinet FortiGate is stable. I have not encountered any performance issues.

What do I think about the scalability of the solution?

Fortinet FortiGate is scalable.

How are customer service and support?

The speed of Fortinet's technical support is significantly faster compared to Palo Alto. I recall an instance where I experienced an issue with Palo Alto, and it took an hour to connect with a real technician from Palo Alto. However, when I call Fortinet, it takes a maximum of two minutes to get a knowledgeable individual to address my concerns. Considering the stark contrast in service levels, imagine having a network issue with Palo Alto and having to wait an hour for support. Conversely, with Fortinet, we can receive proper assistance within two minutes. The difference is immense. This is the one aspect I find lacking in Palo Alto.

The reason I don't give Fortinet's support a perfect score is that I've worked in this field for many years and have come to expect a certain level of expertise. Even when we call Palo Alto, Cisco, Check Point, or any other support service, our experience can vary depending on who we get on the phone. If we're lucky, we'll get a highly experienced expert who can quickly resolve our issue. However, we may also get someone who is new to the team or to their role, and they may take a long time to understand our problem. While Fortinet's support is generally excellent, I have had a couple of experiences where I felt like the person on the other end was inexperienced and asked me irrelevant questions. Despite these occasional issues, I am still very satisfied with Fortinet's support overall, but I wouldn't give it a perfect score.

How would you rate customer service and support?

Positive

Which solution did I use previously and why did I switch?

We previously used Palo Alto for five years and switched to Fortinet FortiGate. Palo Alto is expensive.

How was the initial setup?

The initial deployment is simple. We need to determine which interface is the WAN interface and which is the internal interface.

With Fortinet, we should prioritize a centralized approach to ensure synchronization and consistency across the network. This centralized management strategy will streamline the implementation of SD-WAN, as it allows for the deployment of standardized templates and traffic configurations. Centralized management also simplifies future modifications, as minor changes can be pushed down without requiring complete redesigns. Conversely, deploying SD-WAN without prior centralized management can lead to complexities and potential disruptions. For instance, if WAN interfaces are configured independently of SD-WAN, integrating SD-WAN later will necessitate removing and reconfiguring existing data, policies, firewall policies, and rules. This process can be time-consuming and error-prone.

What's my experience with pricing, setup cost, and licensing?

For medium and enterprise organizations, FortiGate is more affordable. We can choose from a variety of bundles to find the right license for our needs. The software is reliable and easy to install, and it will run smoothly on our systems. FortiGate is priced lower than Palo Alto.

What other advice do I have?

I would rate Fortinet FortiGate nine out of ten.

I compared SD-WAN solutions offered by companies like Cisco Meraki, and Palo Alto. I'm impressed with SD-WAN solutions in general, but I recommend considering purchasing Fortinet's SD-WAN solution, as it could lead to significant cost savings. However, proper planning and design are crucial before deployment to avoid incurring additional expenses due to rework. That's my suggestion.


    Information Technology and Services

FortiGate Cloud is a good and simple cloud management and analytics solution.

  • September 08, 2023
  • Review provided by G2

What do you like best about the product?
FortiGate Cloud offers a range of benefits, including centralized management, real-time monitoring, advanced analytics, and scalability. It simplifies security management, enhances network visibility, and helps organizations stay ahead of evolving cyber threats.
What do you dislike about the product?
Cloud-based solutions rely on internet connectivity. If your internet connection experiences issues or goes down, you may have limited or no access to the FortiGate Cloud platform, potentially impacting your ability to manage and monitor your FortiGate devices.
What problems is the product solving and how is that benefiting you?
The user-friendly interface of FortiGate Cloud makes it easy for IT administrators to configure policies, monitor network traffic, and generate reports without the need for extensive technical expertise. This can lead to improved operational efficiency.


    Mark J.

One of the best Gateway Security Solution

  • September 08, 2023
  • Review provided by G2

What do you like best about the product?
Centralize Management of Fortinet Devices. Having Forticloud gives you a very good reporting and analytics in one dashboard. In addition, Zero touch Provisioning will help you add, setup devices and initial configure the local and remote branches with ease.

It has also a free 7 days logging and reporting for fortigate device users.
What do you dislike about the product?
So far, its been serving all the required purposes. Adding wizards of help icon to provide a step by step guidance on the configuration will help users to know what to do next or recommended setup.
What problems is the product solving and how is that benefiting you?
It gives additional reporting and logging storage, especially for fortigate devices that doesnt have internal storage.
It help the user to monitor their devices online and have a single dashboard to see all the device information.


    Elmer M.

It is very useful and user friendly

  • September 07, 2023
  • Review provided by G2

What do you like best about the product?
I like the following things about FortiGate Cloud:

Centralized management
Zero touch deployment
Reporting and analytics
Scalability

Overall, I think FortiGate Cloud is a powerful and versatile tool that can help you to simplify your network management and improve your security posture.
What do you dislike about the product?
Based on my understanding, here are some of the things that people dislike about FortiGate Cloud:

The pricing can be expensive, especially for larger organizations.
The learning curve can be steep for new users.
The lack of customization options can be frustrating for some users.
Some users have reported that the FortiGate Cloud interface can be slow and unresponsive.
There have been some reports of bugs and glitches in the FortiGate Cloud software.
Overall, FortiGate Cloud is a powerful and versatile tool that can be a valuable asset for organizations of all sizes. However, it is important to be aware of the limitations and potential drawbacks of the platform before making a decision to deploy it.
What problems is the product solving and how is that benefiting you?
FortiGate Cloud solves the following problems:

Complexity - anaging a large number of FortiGate devices can be complex and time-consuming
Security - FortiGate Cloud is a secure platform that is protected by Fortinet's security infrastructure.
Scalability - FortiGate Cloud can scale to meet the needs of your organization, regardless of its size or complexity


    Allain Gabriel A.

Fortinet Projects

  • September 06, 2023
  • Review provided by G2

What do you like best about the product?
What I like about the Fortigate Cloud is flexibility, easy to managed and centralized. Fortigate provides central management of products and statuses which very useful.
What do you dislike about the product?
Actually, i don't dislike fortigate cloud. It's just sometimes slow but we know that you can improve it over time. The login method seems useful that the previous.
What problems is the product solving and how is that benefiting you?
Centralized management, and visibility of all the fortinet product where in the management is dependent on physical server rather it is now accessible wherever you are.


    kram e.

FortiGate Cloud as a Firewall for infra.

  • September 05, 2023
  • Review provided by G2

What do you like best about the product?
FortiGate Cloud provides a centralized management console for all of your FortiGate devices. This makes it easy to manage your security policies, configure your devices, and track your security posture. FortiGate Cloud provides real-time security intelligence and analytics to help you identify and mitigate threats. This includes features such as threat hunting, intrusion detection, and vulnerability scanning.
What do you dislike about the product?
FortiGate Cloud is a powerful and versatile security management solution, but it does have some downsides. Here are some of the potential downsides of using FortiGate Cloud.
FortiGate Cloud offers a limited number of customization options, so you may not be able to tailor it to your specific needs.
What problems is the product solving and how is that benefiting you?
A company with multiple FortiGate devices can use FortiGate Cloud to centralize the management of those devices. This can save the company time and money, and it can also improve the security of the network.


    Computer & Network Security

Centralized Management

  • September 04, 2023
  • Review provided by G2

What do you like best about the product?
Centralized management, FortiCloud allows organizations to centrally manage their Fortinet security devices, such as FortiGate firewalls, FortiAP wireless access points, and FortiSwitch network switches. This centralized management simplifies the configuration and monitoring of network security policies and devices.
What do you dislike about the product?
Internet Dependency: FortiCloud relies on an internet connection to function. This means that if an organization's internet connection experiences downtime or disruptions, it could affect the ability to manage and monitor Fortinet devices through FortiCloud.
What problems is the product solving and how is that benefiting you?
Subscription Cost, FortiCloud typically involves subscription-based pricing, and costs can add up over time, especially for organizations with a large number of Fortinet devices. Some organizations may find the ongoing subscription fees to be a disadvantage.


    Haroon M.

FortiFate Cloud Review

  • August 29, 2023
  • Review provided by G2

What do you like best about the product?
remote management of security devices, offers real-time monitoring and reporting capabilities, providing insights into network traffic, threats, and overall security posture.
What do you dislike about the product?
d set of features. Advanced users may find certain functionalities missing or less customizable in the cloud version. The costs associated with using FortiGate Cloud, including subscription fees and potential data transfer charges, might be a concern for some organizations
What problems is the product solving and how is that benefiting you?
Our Organization has multiple branches, remote offices, and geographically dispersed locations that face challenges in managing and maintaining consistent security policies across their entire network, so it helps in Centralized Management of Distributed Network Security:


    FAISAL S.

FortiGate Cloud Review

  • August 29, 2023
  • Review provided by G2

What do you like best about the product?
FortiGate Cloud offers a centralized platform for managing multiple FortiGate devices and services from a single interface. This can greatly simplify network management and security operations.
Being a cloud-based solution, FortiGate Cloud enables administrators to access and manage their network and security settings remotely, providing flexibility and convenience. FortiGate Cloud may integrate with other Fortinet solutions and services, creating a comprehensive ecosystem for network security and management.
What do you dislike about the product?
If there is a situation where internet access is temporarily unavailable, administrators might face challenges in accessing and managing network devices through FortiGate Cloud
What problems is the product solving and how is that benefiting you?
With better monitoring and automation, administrators can proactively identify and address network issues, reducing downtime and minimizing the impact of security incidents.


    Jared Carmouche

A stable and easy-to-deploy solution that provides excellent security features

  • August 28, 2023
  • Review provided by PeerSpot

What is our primary use case?

We deploy the tool for customers who want a firewall in front of their cloud environment. We can use it for anything they want to protect in their data center or private cloud.

How has it helped my organization?

The solution has given us a good revenue stream and a better solution for our customers for network security. The product can take our customer’s basic firewall and take it to the next level and give them much more visibility and control over the traffic.

What is most valuable?

All the security features that are built into the product are valuable. It includes web filtering, DNS filtering, and intrusion prevention. FortiGate is the best firewall in the market. It pretty much does most things.

What needs improvement?

Support could be improved a little.

For how long have I used the solution?

I have been using the solution for four and a half years.

What do I think about the stability of the solution?

I rate the solution’s stability a ten out of ten.

What do I think about the scalability of the solution?

I rate the tool’s scalability a ten out of ten.

How are customer service and support?

Sometimes, we get really good, knowledgeable engineers. At other times, it feels like we got somebody who started that day. We have to go through the wringer with them.

How would you rate customer service and support?

Neutral

How was the initial setup?

The initial setup was very easy.

What was our ROI?

I have seen an ROI on the product.

What's my experience with pricing, setup cost, and licensing?

The price is pretty decent compared to other products. The product’s licensing must be a little cheaper.

What other advice do I have?

If you're looking for an enterprise-level next-generation firewall, go with FortiGate. It’s hands down the best value for what you pay. Overall, I rate the solution a ten out of ten.