We are an IT company. One of our clients utilizes FortiGate, FortiAnalyzer, and FortiManager. Thus, this is the sole customer in our portfolio using Fortinet FortiAnalyzer. Among our other clients, some exclusively employ FortiGate. Our responsibility encompasses network management for these clients.
External reviews
External reviews are not included in the AWS star rating for the product.
Fortianalyzer a must have for Fortigate log correlation
It allows me to view old traffic, presenty have 2 years of data stored on analyzer.
It run weekly customized reports on traffic patterns that the Security guys require
Excelent Log Analysis for fortinet solutions
the FAZ solutions can bring more info about IOC so we can take efficient desitions to manage an incident.
The monitoring features are quite impressive, including maps, source IP, country codes, and geolocation
What is our primary use case?
What is most valuable?
What I like the most is the monitoring system. For example, it can track who is accessing through VPNs. The monitoring features are quite impressive, including maps, source IP, country codes, and geolocation – all of which are really cool. Additionally, the logging functionality is also excellent.
What needs improvement?
The UI can be more user-friendly for new users.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for seven years.
What do I think about the stability of the solution?
Fortinet FortiAnalyzer is highly stable. In the seven years of usage, we have never needed to reinstall it or perform troubleshooting. We have not had to make any support calls to Fortinet either. We successfully performed upgrades from version five to six and from six to seven, all of which went smoothly.
What do I think about the scalability of the solution?
Fortinet FortiAnalyzer is scalable.
How are customer service and support?
The technical support is excellent. I have never encountered any problems with FortiAnalyzer, but the issues we faced with FortiGate, which I was unable to resolve on my own, were promptly resolved by their team.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is straightforward. We can choose to install either a single node or a cluster. We run it in a virtual environment on firmware, and the process of installing the RPA takes around 15 minutes. Afterward, some configuration is required, including the installation of certificates and similar tasks. Thus, the entire process usually takes approximately one to two hours.
Once the installation is complete, we need to connect all the FortiGate Firewalls to the FortiAnalyzer. This step also involves configuring them securely. When I deploy this solution for a customer, it typically takes me about four to eight hours to complete the installation and configuration.
What's my experience with pricing, setup cost, and licensing?
The price is not expensive when compared to other solutions like Palo Alto.
In addition to the licensing, we pay for a support contract.
What other advice do I have?
I would rate Fortinet FortiAnalyzer eight out of ten.
Fortinet FortiAnalyzer is only valuable for organizations that utilize ten or more FortiGates.
I recommend Fortinet FortiAnalyzer to others.
Notifications and alerts are helpful, and it is a natural choice for Fortinet security devices
What is our primary use case?
We take all the logs from FortiGate.
We have it deployed on-premises, and we are definitely using its latest version because we are creating a new virtual machine.
What is most valuable?
Special notifications about compromised phones are valuable because we have some guest networks, and sometimes, people are connecting phones that are connected to compromised websites. We want to be informed about it. We sometimes have some cases where we want to analyze the connection from inside to outside ports. So, it helps with a lot of things. It depends on our needs.
What needs improvement?
The interface or GUI does not work properly on Microsoft Edge. The behavior or the view is different on Microsoft Edge versus on Chrome or Firefox. When some buttons do not work, I am forced to switch to Firefox.
There could be better analysis from the client's perspective. If you have FortiClient EMS, you should be able to analyze users more than the connections.
For how long have I used the solution?
We started using Fortinet FortiAnalyzer this year. It was bought by our main company in the Netherlands.
What do I think about the stability of the solution?
It is now stable, but our previous instance was unstable. We had problems with connectivity. It was strange because it is a virtual machine, and it was on the same hypervisor or host, but only Fortinet FortiAnalyzer had connectivity problems. The connection was dropped, and it was not always possible to log in. We moved it to a different environment. We have now moved it to a Hyper-V cluster on a different site in Poland, and it is now stable.
What do I think about the scalability of the solution?
It is scalable. We could change the size. It was easy.
We have mainly two people working with Fortinet FortiAnalyzer. My colleague and I from the Netherlands work on it. All IT departments also can access it. In total, we have five or six users, but mainly, two of us work on it.
How are customer service and support?
I use their technical support when I have problems. They solve my problems, but sometimes, they take time because it is difficult to understand each other. I prefer a phone call over the email or ticket system because we can share more information in a short time. I would rate them a nine out of ten. They sometimes do not have a fast solution, but they always resolve an issue in the end.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I did not work on any similar product previously.
How was the initial setup?
It was easy to deploy. It took one hour.
What about the implementation team?
We deployed it ourselves. We know the product. We know how to register devices and how to join devices. It was easy. We used our knowledge.
What's my experience with pricing, setup cost, and licensing?
I do not know the price of Fortinet FortiAnalyzer. I did not pay for it, but I know the price of other Fortinet products. They are not cheap. I am from Poland. We have Zloty, not Euro, so for us, everything is expensive.
I had also tried to buy it in the past, but it was too expensive.
What other advice do I have?
If you have FortiGate and FortiClient EMS, FortiAnalyzer is a natural choice. You can have notifications and alerts. Some things are automatically done by FortiAnalyzer. From a security perspective, it is a very good product.
Overall, we are satisfied with it. I would rate Fortinet FortiAnalyzer an eight out of ten.
Which deployment model are you using for this solution?
We can gather logs and generate reports, but the license cost is high
What is our primary use case?
Fortinet FortiAnalyzer is utilized to gather logs from all Fortinet products and generate reports.
What is most valuable?
The most valuable feature is the capability to gather logs and generate reports. Without this solution, the firewalls exhibit limited proficiency in displaying logs.
What needs improvement?
The integration with other vendors for log collection could be enhanced.
The licensing cost has room for improvement.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for over three years.
What do I think about the stability of the solution?
I rate FortiAnalyzer's stability a nine out of ten. We have had instances of data loss or source loss.
What do I think about the scalability of the solution?
For our needs, FortiAnalyzer is scalable because we are not dealing with thousands of firewalls.
How are customer service and support?
The technical support is good.
How was the initial setup?
The initial setup is straightforward. The deployment took a couple of days.
For the deployment, we needed to create the server for deploying the FortiAnalyzer image and create the policy rules. We also had to complete the basic configuration of FortiAnalyzer. Following that, we configured all the resources and logs within FortiAnalyzer to collect and correlate the logs, which are then used to generate reports.
What about the implementation team?
We used a consultant for the implementation.
What's my experience with pricing, setup cost, and licensing?
We pay for an annual license, but we have the ability to determine the payment schedule with our distributor.
The cost of the license is high.
What other advice do I have?
I would give Fortinet FortiAnalyzer a rating of six out of ten. I am not satisfied with the solution as it falls short of a proper SIEM. Therefore, we would prefer to allocate more funds towards a SIEM in order to effectively collect logs.
Which deployment model are you using for this solution?
We can collect all gateway information and logs in one location, but it is difficult to modify rules
What is our primary use case?
I utilize Fortinet FortiAnalyzer to gather various logs from FortiGate, enabling me to conduct specific investigations in particular cases.
What is most valuable?
The ability to gather all gateway information and logs in a single location is the most valuable feature.
What needs improvement?
I don't find Fortinet FortiAnalyzer to be as robust as Check Point Security Management. However, this perception might be attributed to my limited familiarity with Fortinet FortiAnalyzer. For instance, with Check Point, I can easily make modifications to rules such as identifying issues, making corrections, or adding new features. This includes creating exceptions or adding elements to the current rule set.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for four months.
What do I think about the stability of the solution?
In our current environment, Fortinet FortiAnalyzer is stable.
What do I think about the scalability of the solution?
I am currently utilizing the cloud version of Fortinet FortiAnalyzer, and the scalability it offers is exceptional. Unlike the on-premises version, I have not encountered any issues.
How was the initial setup?
The initial setup is straightforward. The deployment takes a few minutes and the configuration is easy.
What's my experience with pricing, setup cost, and licensing?
I would rate FortiAnalyzer's price a seven out of ten, with ten being the most expensive.
What other advice do I have?
I would rate Fortinet FortiAnalyzer a seven out of ten.
We are paying for vendor maintenance support, and so far, the maintenance has been minimal.
I recommend completing training before utilizing Fortinet FortiAnalyzer. I was suddenly tasked with using the solution when my organization decided to change technologies, and it was initially challenging to understand how it operates.
Which deployment model are you using for this solution?
Provides detailed reporting, customizable dashboards, and an easy deployment
What is our primary use case?
Fortinet FortiAnalyzer is primarily utilized to generate quarterly reports showcasing blocked attacks and vulnerabilities. It employs features like WAV porting triggers and DNS triggers to effectively demonstrate to the client the security of their environment.
How has it helped my organization?
Fortinet FortiAnalyzer assists in showcasing the value of Fortinet and facilitates the upselling of additional Fortinet products to our customers.
What is most valuable?
The most valuable feature is the capability to create a customized dashboard. We can subsequently input our EMS, FortiClient, and FortiGate data into it and generate reports.
What needs improvement?
The integration between specific tenants and FortiAnalyzer can be simplified when utilizing a multi-tenant EMS for our FortiClient.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for three months.
What do I think about the stability of the solution?
Fortinet FortiAnalyzer is stable.
What do I think about the scalability of the solution?
Fortinet FortiAnalyzer is scalable.
How are customer service and support?
I utilized the technical support services once, and I received a prompt response.
How was the initial setup?
The initial setup is straightforward. The deployment was an easy and smooth process. The deployment took one day and I did it myself.
What other advice do I have?
I would rate Fortinet FortiAnalyzer a nine out of ten.
Fortinet FortiAnalyzer does not require maintenance after the initial report setup. We simply have to remove and add FortiGate as needed for each report.
Before utilizing Fortinet FortiAnalyzer, individuals should determine the type of reporting they require. Additionally, they ought to be acquainted with FortiGate before endeavoring to use FortiAnalyzer.
Which deployment model are you using for this solution?
One Dashboard for Fortinet products activities
Easy to use, easy to integrate, and configures multiple devices at the same time
What is our primary use case?
I use the solution for the configuration process.
What is most valuable?
Logs are the most useful feature of the solution. The solution is easy to use and easy to integrate. It helps to configure multiple devices at once.
What needs improvement?
The solution provides details like category, IP address, and location. It would be good if the product could provide data about the websites users visit.
It will be better if the product can build its UI like Cisco Meraki’s.
For how long have I used the solution?
I have been using the solution for around seven years.
What do I think about the stability of the solution?
I rate the stability an eight out of ten.
What do I think about the scalability of the solution?
Compared to most other solutions, it is easier to scale Fortinet FortiAnalyzer. We also use FortiAnalyzer VM, so the scalability is pretty flexible. Around 1000 employees in our organization use the solution.
How are customer service and support?
It is a bit of a challenge to return devices. Once we return the device to Fortinet, they will send us a replacement. This process takes a bit of time. The cost of sending the device is very high. With that money, we can buy a smaller device.
How was the initial setup?
The initial setup was very simple.
What about the implementation team?
We need three employees to maintain the solution.
What's my experience with pricing, setup cost, and licensing?
The product’s price is much better than its competitors.
What other advice do I have?
We need to have a license for individual devices to use the solution. We end up in a loop when we try to access the websites and different routes. We also have to provide the options ourselves for all our queries. The process would be better if reports and records were more readily available.
Cisco Meraki is an online portal that provides organized and in-depth reports. Overall, I rate the solution an eight out of ten.