VPN connections get streamlined as connectivity requirements are met
What is our primary use case?
For FortiGate Next Generation Firewall (NGFW), I use it primarily to connect with other companies through IPsec VPN. Any other security measures are on AWS itself, not on FortiGate. I'm someone who's familiar with FortiGate from previous jobs, so I use that, but it's how we're using it right now.
The IPsec feature of FortiGate Next Generation Firewall (NGFW) is valuable to our company because we need to connect quickly VPN connections with other companies in our networks, and there are many connections in some cases. We need to keep it as secure as possible, maybe one-way connections or particular ports. FortiGate is the best option, at least that I'm familiar with, that can answer all of that in one product that is mostly easy to use.
In our case, the deployment options of FortiGate Next Generation Firewall (NGFW) are not scalable, but in terms of connectivity to other companies, that's exactly what we needed, and that's exactly what it does perfectly, what is needed.
What is most valuable?
The most valuable feature for our company using FortiGate Next Generation Firewall (NGFW) is the IPsec feature, but actually FortiGate is known for good UTM products such as application filter and web filtering. We don't use it here, but in previous companies I used it on a daily basis.
One of the benefits I've realized from using FortiGate Next Generation Firewall (NGFW) is that it's secure and allows functions such as VPN. You can control Wi-Fi and other things from within, if you have FortiNet devices. It's an easy to use product, yet it allows you all that is needed, or at least all that you can do. Whenever there is a security breach, FortiGate is known to patch it very quickly from what I've seen.
Since FortiGate Next Generation Firewall (NGFW) was implemented, there was a thought in the company about using the VPN that AWS itself provides, but it's far from being as good as FortiGate.
The process can be improved in terms of explaining exactly how the installation should be done step-by-step on AWS, because there are network considerations such as security groups. From what I could find, I didn't do extensive research, but it didn't seem obvious enough in that case.
What needs improvement?
I do not utilize the intrusion prevention and web filtering features of FortiGate Next Generation Firewall (NGFW).
The ability of FortiGate Next Generation Firewall (NGFW) to inspect SSL encrypted traffic is not applicable in the current position, but in previous companies, it was really seamless whenever we used it. It just worked seamlessly.
I don't recall if we use a centralized management console for FortiGate Next Generation Firewall (NGFW) in maintaining oversight across distributed networks.
In my opinion, FortiGate Next Generation Firewall (NGFW) could be better by having specific models for home usage. I'd wish to have a FortiGate in my home, but the licensing isn't something that I want to purchase for home usage.
For how long have I used the solution?
I have been using FortiGate Next Generation Firewall (NGFW) almost since day one at this company, which I have been with for three years and something.
What do I think about the stability of the solution?
I experienced the stability and availability of FortiGate Next Generation Firewall (NGFW) more in the previous company. In terms of stability, mostly it is okay; however, in some cases, there are features, especially the UI, that tend to have issues. In some cases, you need to restart it, but mostly, it's working flawlessly, especially if you have an HA environment, high availability.
What do I think about the scalability of the solution?
In our case, the deployment options of FortiGate Next Generation Firewall (NGFW) are not scalable, but in terms of connectivity to other companies, that's exactly what we needed, and that's exactly what it does perfectly, what is needed.
I'm certain that what it allows us in terms of connections to other companies is a straightforward solution that you don't have to use something else. It's easy to configure a new connection, and it works in a few minutes if everything works fine.
How are customer service and support?
In this company, I may have worked with FortiGate Next Generation Firewall (NGFW) support one time, but in my previous company, I actually worked with them extensively. We had multiple FortiGate devices across multiple offices around the world, and we needed to switch them from one account to another sometimes. So I encountered FortiGate support quite frequently.
I would evaluate the level of support for FortiGate Next Generation Firewall (NGFW) somewhere between seven and eight. My experience might be outdated because lately, I haven't had much experience with that. In some cases, you need to come prepared because the people there work by the book and ask for particular things. If you don't have them, you cannot proceed, but if you know what they need, after some time, it's pretty easy to get support or whatever you need.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
I don't have enough information on other products that I can tell the pros and cons of FortiGate Next Generation Firewall (NGFW) versus its competitors.
How was the initial setup?
The setup was already done, but from what I read, we considered putting it in another environment that we have, yet we didn't because we didn't actually need the environment at all.
What was our ROI?
I don't know if my company has seen return on the investment from FortiGate Next Generation Firewall (NGFW), but I'm certain that what it allows us in terms of connections to other companies is a straightforward solution that you don't have to use something else. It's easy to configure a new connection, and it works in a few minutes if everything works fine.
What's my experience with pricing, setup cost, and licensing?
Pricing isn't something applicable for me regarding FortiGate Next Generation Firewall (NGFW) because it was already set up once I came to this company.
Which other solutions did I evaluate?
Since FortiGate Next Generation Firewall (NGFW) was implemented, there was a thought that crossed in the company about using the VPN that AWS itself provides, but it's far from being as good as FortiGate.
What other advice do I have?
I would rate FortiGate Next Generation Firewall (NGFW) as a solution a 10 out of 10. I do love FortiGate.
I give it a 10 because, in my experience, FortiGate Next Generation Firewall (NGFW) is a product that allows you to do many things very easily. If you don't appreciate something about the way it works, you have enough playground to change it to suit your needs.
For someone considering FortiGate Next Generation Firewall (NGFW) for their company, there was a demo online version that they have on their website that is easy to access. You can play with it and see almost all the features in action. That's an easy thing to actually test. Obviously, you cannot connect it to your network and see things live in your case, but it is still a good example of how things work.
Which deployment model are you using for this solution?
Public Cloud
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Amazon Web Services (AWS)
Has protected against emerging security threats with valuable features and reliable support
What is our primary use case?
I have experience with Fortinet solutions.
I have had experience recently with FortiGate as well.
All the basic and important features needed for perimeter solutions to protect branches and headquarters are valuable with the FortiGate Next Generation Firewall (NGFW).
The FortiGate Next Generation Firewall (NGFW) is deployed in a company that is a carrier of telecommunication services, providing solutions to all kinds of companies around the world, especially in Mexico.
It addresses new and emerging security threats in the telecommunications industry, as we recognize that it is a highly effective solution that provides robust protection. That's the reason it was the main product we used to sell for perimeter security.
What is most valuable?
We use FortiGate Next Generation Firewall (NGFW) for the access points and their switches.
All the basic and important features needed for perimeter solutions to protect branches and headquarters are valuable with this solution.
The antivirus, malware, anti-malware, anti-spam, IP VPN connections, and firewall rules bring the most value for me and my clients.
The segmentation capabilities enhance our security posture because they work effectively combined with the switching solutions, allowing us to easily combine switching with the firewall, as we could segregate the VLANs. They were powerful and appropriate for the solution we needed while supporting all the adequate features we required.
What needs improvement?
I'm not completely sure how Fortinet can improve the FortiGate Next Generation Firewall (NGFW), however, there were situations of availability related to their switching solutions due to box errors. Fixing the bugs in their switching solutions is necessary because I have faced several situations where we lost connectivity because of their firmware.
For how long have I used the solution?
I have almost 12 years of experience with FortiGate Next Generation Firewall (NGFW).
What do I think about the stability of the solution?
Regarding next-generation firewalls, I would give the FortiGate Next Generation Firewall (NGFW) a rating of ten out of ten for stability.
What do I think about the scalability of the solution?
The scalability of the FortiGate Next Generation Firewall (NGFW) is quite good; it is easy to make it scalable.
I would place the scalability between nine and ten on a scale of one to ten.
How are customer service and support?
I would rate Fortinet's support a ten out of ten. They are excellent and very available whenever we needed their help.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
We used to struggle with Cisco because it didn't have most of the features that Fortinet has, and when comparing with Palo Alto or Check Point, the prices are higher, which is important for solutions needed by mid-sized companies.
What about the implementation team?
Their deployment team is substantial, consisting of between 100 and 150 people.
What was our ROI?
Most clients realize the benefits from deployment immediately. They look for internet availability and the security needed for their endpoints.
What's my experience with pricing, setup cost, and licensing?
Fortinet has good prices compared to other vendors; there were cheaper options, and when we compared Cisco, Fortinet's prices were lower.
What other advice do I have?
I don't remember how I bought the FortiGate Next Generation Firewall (NGFW), so I can't say if it was purchased through AWS Marketplace.
The FortiGate Next Generation Firewall (NGFW) helps with the economic aspect because it effectively protects what we needed with the companies in designing the products and solutions.
I'm not familiar with how the FortiGate Next Generation Firewall (NGFW) utilizes artificial intelligence or if it has AI-driven features to improve threat detection and response, so I cannot detail its existence or help.
I would recommend FortiGate Next Generation Firewall (NGFW) to others. It is a very good product. In my position, I sold approximately 1,000 units.
On a scale of one to ten, I rate this solution a ten.
Which deployment model are you using for this solution?
On-premises
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other
Comes with good interface that is easily undestandable by customers
What is most valuable?
The tool's most valuable feature is IPS. In my experience, I haven't encountered any issues with integration. It easily integrates with the FortiGate solution. However, verifying through documentation and assessing their support is necessary.
Its interface user-friendliness is good. When we present this interface to customers, they find it easy to understand and manage.
What needs improvement?
Support for courses available on the platform
What do I think about the stability of the solution?
I rate FortiGate's NGFW's stability a ten out of ten.
What do I think about the scalability of the solution?
The tool's scalability is good and it has helped our company. I rate it a ten out of ten. We have around 3 customers and 500~800 users.
How are customer service and support?
There has been a delay in support where I had to wait for a day to receive a response. I believe I might not have used the correct procedure, leading to inaccurate information. Consequently, I did not receive the prompt answer that I was expecting.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
The Cisco Firepower is less stable compared to FortiGate NGFW. Cisco Firepower has a complex interface.
How was the initial setup?
The solution's deployment is easy.
What's my experience with pricing, setup cost, and licensing?
The tool's pricing is neither cheap nor expensive. Overall, I find it to be competitive in the market.
What other advice do I have?
I recommend FortiGate NGFW because its interface is easy to understand, making firewall deployment and management straightforward. It has a good market reputation and offers information on cybersecurity, including news, threats, etc. I rate it a ten out of ten.
Which deployment model are you using for this solution?
On-premises
A feature-rich solution that offers application blocking, web protection, and IPS, with a need to improve its support and pricing
What is our primary use case?
The main use case of FortiGate Next Generation Firewall (NGFW) is that it is used to search for a firewall whenever we need to connect multiple sites to a VPN. At times, the solution needs a web filter or a particular filter. With the IPS and the cloud protection on the gateway, we are also looking for a firewall that can act as zero-depth protection.
What is most valuable?
The solution's most important feature is that it will work on the app whenever we block the application order, making it a plus point for the NGFW firewall. The solution also works with all the other web protection aspects, because of which we get everything in a single box.
What needs improvement?
There are multiple firewalls, and I mainly worked with Sophos and FortiGate. To weigh the pros and cons, different types and aspects should be considered in different firewalls.
The support for FortiGate in the Indian region can be improved along with the scalability. The pricing of the solution is expensive, so it could be cheaper.
For how long have I used the solution?
I have worked as a system integrator with FortiGate Next Generation Firewall (NGFW) for five years.
What do I think about the scalability of the solution?
We can say that the solution's scalability is moderate. It is not that easy, nor too hard. If the technician is sound, then he can understand the solution easily.
Our customers include small, medium, and enterprise businesses.
How are customer service and support?
In India, support takes some time. If the call gets connected outside India, then it is very good. SonicWall has the best support, and Sophos also offers good support. For FortiGate, the support in the Indian region can be improved.
As for the rating, I would say that FortiGate offers very good support. Once we get the support, it is very good. However, the support team is not connecting as easily as we require. If the issue is too critical, the process becomes more complicated for us. I rate the support an eight out of ten.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
I mainly worked with Sophos and FortiGate. I have used different solutions depending on the customer's requirements. We can suggest a particular solution to a customer based on their needs. Every firewall solution has its own pros and cons, which we just bifurcate as per the customer's requirement.
How was the initial setup?
The initial setup is easy if I am going to talk about Sophos' and FortiGate's installation. It is easy to install. There is not much complexity involved.
As for deployment, it depends on the customer's requirements. But the average time is 3 to 4 hours. At times, deployment takes 12 to 13 hours, but it depends on the model and the configuration.
It takes two engineers to deploy the product. One of them is the deployment engineer, and one is an architect.
The solution is deployed on-premises.
What's my experience with pricing, setup cost, and licensing?
The solution is more expensive than Sophos. It could be cheaper. The licensing is on a yearly basis. We have had it for about three years. We must only pay extra for the license, additional requirements, and the hardware box.
What other advice do I have?
I am fine with the solution's interface. The solution is easy to use. FortiGate Next Generation Firewall (NGFW) is a base product, and anyone can use it. I recommend it to those planning to use it.
There is not much maintenance for FortiGate Next Generation Firewall (NGFW). OEM provides the support. Whenever it becomes complicated or any issues come up, we can call OEM directly, and they are always available to help.
Overall, I would rate it ten out of ten.
Which deployment model are you using for this solution?
On-premises
A user-friendly and easy-to-install product that has a seamless performance
What is our primary use case?
Our clients use the solution to ensure their environment is secured on all the layers. The application layer all the way to the networking. That's one of the main reasons they use the product in their environment.
What is most valuable?
It's a seamless product, and it's not buggy. The updates we receive from FortiGate are one of the most important features. The product is user-friendly and not complex.
What needs improvement?
The solution must improve the support provided for customers around the globe, considering the time differences in different places. The product could add some functionalities and features provided by its competitors to stay ahead in the market.
For how long have I used the solution?
I have been using the solution for two years.
What do I think about the stability of the solution?
The product is stable. We haven't had issues so far. I rate the stability a nine out of ten.
What do I think about the scalability of the solution?
The solution is scalable in most cases. It all depends on the customer's requirements. We haven't yet come across a situation whereby scaling is not possible. Our clients are small, medium, and enterprise businesses. Currently, one of our customers is not able to reach the specific level of scalability that they require so far. I rate the scalability an eight out of ten.
How are customer service and support?
The support is great. However, support needs to improve constantly. Even though they are good, they should try to stay ahead of the competitors.
How would you rate customer service and support?
How was the initial setup?
The solution is easy to install. The ease of setup depends upon the customer’s requirements. I rate the ease of setup a ten out of ten.
What about the implementation team?
The time to deploy the product depends on the clients’ requirements because we have to work hand in hand with the service provider. If we have to terminate a link on the firewall and everything from the networking perspective is all in place, it might just take a couple of minutes to deploy.
We need just need one to three engineers to deploy the solution. It depends on the magnitude of the client. The solution requires maintenance. More than three people are needed to maintain the product.
What's my experience with pricing, setup cost, and licensing?
The product is a little bit expensive. The certifications cost $400. Other vendors provide it for an average of $200 to $300. The product has an annual licensing fee. Additional costs depend on the user's requirements.
What other advice do I have?
People looking to use the product must ensure they have enough engineers who know how to work with it. Overall, I rate the solution a ten out of ten.
Which deployment model are you using for this solution?
On-premises