Our clients use Fortinet FortiAnalyzer to analyze and locate the traffic in their network. Since it's a big customer, they have both Fortinet FortiAnalyzer and Fortinet FortiManager.
External reviews
External reviews are not included in the AWS star rating for the product.
Easy to get reports and read specific logs
What is our primary use case?
What is most valuable?
With Fortinet FortiAnalyzer, it is easy to get reports and read specific logs. It provides fast log analysis for getting information. The solution helps locate if a destination is blocked or a machine communicates with the right port or server. Basic debugging can be done quickly using Fortinet FortiAnalyzer.
What needs improvement?
Fortinet has a new bug every month, which needs to be improved.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for four years.
What do I think about the stability of the solution?
Fortinet FortiAnalyzer is a really stable solution and does not have any bugs.
What do I think about the scalability of the solution?
Fortinet FortiAnalyzer is a scalable solution.
Which solution did I use previously and why did I switch?
I have previously used the Kibana tool.
How was the initial setup?
The solution's initial setup is easy because it's a virtual machine. You have to upgrade it once every two to three years, which is a slow process. However, there aren't many features that need to be updated because the product is good.
What was our ROI?
The solution has been in our organization before I joined. Based on that, I have to say it's a good investment.
What's my experience with pricing, setup cost, and licensing?
Fortinet FortiAnalyzer is quite an expensive tool.
On a scale from one to ten, where one is cheap and ten is expensive, I rate the solution's pricing an eight out of ten.
What other advice do I have?
Users should never upgrade to the newest firmware. In the last decade, we have learned to always wait and see. Fortinet has had some bad releases. You must have good quality assurance that the product is bug-free. It is easy to maintain the solution.
Overall, I rate the solution an eight out of ten.
Offers detailed log reports, but functionality with third-party tools needs improvement
What is our primary use case?
It's working well enough. The solution allows fetching multiple logs across different firewalls. At our company, we use FortiAnalyzer to fetch event and traffic logs.
How has it helped my organization?
In terms of productivity enhancement in our organization, I would rate the solution an eight out of ten.
What is most valuable?
One of the solution's most vital features is that it can provide detailed log reports. Using the solution at our company, we can obtain details on the source IP, traffic, and logs for the last three months.
What needs improvement?
The solution does not function well when integrated with third-party tools. Logs are not converted to the source and destination IP, and the address or port details are only available in textual format when Fortinet FortiAnalyzer integrates with other vendor tools like Cisco.
For how long have I used the solution?
I have been using the solution for three years.
What do I think about the scalability of the solution?
I would rate the scalability an eight out of ten. In our organization, about 40 to 50 devices are integrated into Fortinet FortiAnalyzer. Our organization uses the solution once a week for reporting purposes, and the configuration has been implemented accordingly.
How are customer service and support?
I would rate the tech support an eight out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Previously, at our company, we used software like Syslog. We switched to Fortinet FortiAnalyzer for the log reporting feature.
How was the initial setup?
The solution has a user-friendly interface, and our company did not face any issues with deployment or configuration. I would rate the initial setup a seven out of ten. The initial deployment of Fortinet FortiAnalyzer took a couple of weeks at our organization.
At our company, we primarily deployed the device in a pilot phase, where only ten to fifteen devices were integrated. The solution's behavior was analyzed through log fetching. After analysis, our company deployed the product in the data center, and it started working in a live environment.
What's my experience with pricing, setup cost, and licensing?
I would rate the solution's pricing a seven out of ten.
Which other solutions did I evaluate?
What other advice do I have?
The solution is used for configuration changes, security features, IPS, application filtering and sometimes for manual report generation.
I would rate the product's compliance an eight out of ten. In my opinion, Fortinet FortiAnalyzer is a better solution than its competitors.
At our organization, we have used the solution to automate certain configurations, including email triggering. I would overall rate the solution a seven out of ten.
Useful for log management and endpoint protection
What is our primary use case?
I use the solution in my company for log management and to comply with requirements associated with endpoint protection and FortiGate, as well as with all the other solutions from Fortinet.
What is most valuable?
The most valuable features of the solution are the reports and the playbooks.
What needs improvement?
I feel that Fortinet FortiAnalyzer is a little bit heavy, making it an area where improvements are required.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for three years. I am an end user of the solution.
What do I think about the stability of the solution?
Stability-wise, I rate the solution an eight out of ten.
What do I think about the scalability of the solution?
Scalability-wise, I rate the solution an eight out of ten.
Two people in my company use the product.
I use the solution in my company every day.
How are customer service and support?
I rate the technical support a nine out of ten.
Which solution did I use previously and why did I switch?
I have experience with some other solutions in the past. My company has not switched from the solution we use currently because we don't have an alternative product. My company does want to use an SIEM solution, and we purchased Fortinet FortiAnalyzer since it offered a bit of SIEM functionalities.
How was the initial setup?
My company took care of the tool's initial setup phase for our internal projects.
The solution is deployed on an on-premises model.
The solution can be deployed in two days.
What about the implementation team?
An implementer took care of the product's implementation process.
What was our ROI?
I have seen a return on investment from the use of the product. I rate the tool's ROI a nine out of ten.
What's my experience with pricing, setup cost, and licensing?
I rate the product's price a six on a scale of one to ten, where one is cheap, and ten is expensive.
What other advice do I have?
The log management capability has benefited our organization, and it is important because we need to write and send proactive information that playbooks can cater to, and the product also prevents my company's systems from being attacked.
I recommend the product to others since it is easy to work with and it works very well.
I don't know much about the artificial integration capabilities of the product, but the solution works to detect and analyze threats.
I rate the overall tool an eight out of ten.
Which deployment model are you using for this solution?
Offers protection to network from attacks
What is our primary use case?
I have been using the solution in my company since after we set up and configured the tool, we managed the migration. Sometimes, I have to take care of my customers. My customers are using the product well.
What is most valuable?
The product can be used as a full-time solution and as a reasonable antivirus product. With the firewall, it protects the systems from ransomware attacks.
What needs improvement?
The product's high price is an area of concern where improvements are required.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for five to ten years. I use the solution's latest version.
What do I think about the stability of the solution?
It is a stable solution. Stability-wise, I rate the solution an eight out of ten.
What do I think about the scalability of the solution?
If I consider my company's customers, some are government organizations.
How are customer service and support?
I get support for the product from the solution's website. I also get local support from a solution company that deals with our organization's support team. The product's support team is very good and knowledgeable. I rate the technical support a nine out of ten.
How would you rate customer service and support?
Positive
How was the initial setup?
For installation, I approached a technology company in Vietnam that provides the required team support.
The solution is deployed on the cloud, but it isn't easy to operate in Vietnam since money is collected every year.
The solution's deployment is difficult since you need knowledge about networks, rules, policies or else you may get confused when you collect information from your customers.
What's my experience with pricing, setup cost, and licensing?
The tool offers protection to my network. The costs related to the licensing part of the solution for each year keep increasing every year. In other countries, the product may seem cheap, but in Vietnam, the costs are high. There is not enough money for businesses to pay for the tool.
What other advice do I have?
For cybersecurity, my company normally uses the asset list and applies it to some applications like an antivirus or IDS system.
One of the product's tasks is to provide a firewall to check the effects of a customer's network from outside.
The automation of reports that is possible with the product is good, especially because Fortinet has a lot of products for the customers in the market, including those like the government, banking, and other small businesses. Many people in Vietnam use Bitbucket since they don't have much money. With the setup of the firewall, the traffic gets controlled. When you start the firewall very high, I believe the 30 percent time taken to assess risks is very high. The product becomes slow, and it may have an impact on the server.
The solution has impacted our company's operational costs by reducing them by 30 percent.
The performance offered by the product is high only when the network traffic is normal.
It is one of the best firewall products.
I rate the overall tool an eight out of ten.
A solution for firewall, URL filtering, and SD-WAN
What is our primary use case?
We use the solution for enterprise firewalls, URL filtering, and SD-WAN.
What needs improvement?
The solution could embed monitoring.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for a year. We are using V6.2 of the solution.
What do I think about the scalability of the solution?
The solution’s scalability is good. 500 users are using this solution. The solution is suitable for small and medium businesses.
I rate the solution’s scalability a seven out of ten.
How are customer service and support?
When the case is unresolved, the following person takes time to get involved in the tickets. The information may be complex.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup is easy. I rate the initial setup an eight out of ten, where one is difficult and ten is easy.
What's my experience with pricing, setup cost, and licensing?
The solution's pricing is good.
What other advice do I have?
I recommend it because it's a perfect solution.
Overall, I rate the solution a nine out of ten.
Provides great visibility into user logs and traffic
What is our primary use case?
We use Fortinet FortiAnalyzer for logs and reports. We have a SOC subscription to monitor the end users' login activity and traffic.
Fortinet FortiAnalyzer is deployed by us in both on-premises and cloud environments.
How has it helped my organization?
Fortinet FortiAnalyzer provides more visibility into the logs.
What is most valuable?
The traffic log information we receive from Fortinet FortiAnalyzer is valuable.
What needs improvement?
Fortinet FortiAnalyzer needs to have more out-of-the-box connectors for integration with other solutions.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for three months.
What do I think about the stability of the solution?
Fortinet FortiAnalyzer is stable as long as we keep it up to date.
What do I think about the scalability of the solution?
Fortinet FortiAnalyzer is scalable.
How are customer service and support?
The technical support is great. We receive support within 24 hours of opening a ticket.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial deployment of Fortinet FortiAnalyzer is straightforward. There are two network interfaces involved: the Internet interface and the LAN interface. The LAN interface must be configured on the same subnet as the other Fortinet products to enable visibility of the network connector from the Fortinet console. Upon successful configuration, an authorization message will be received, allowing us to proceed with adding the devices to the FortiAnalyzer device manager and initiating log data collection. The deployment process is well-documented, requiring minimal personnel, and can be completed within five hours.
What's my experience with pricing, setup cost, and licensing?
The number of licenses required directly corresponds with the number of devices connected.
What other advice do I have?
I would rate Fortinet FortiAnalyzer a nine out of ten.
FortiAnalyzer enhances network security visibility with its comprehensive logging and analysis capabilities, making it a valuable tool for organizations seeking to improve their security posture. I highly recommend it.
Which deployment model are you using for this solution?
Comprehensive reporting and efficient log management
What is our primary use case?
The primary use case for our clients revolves around robust reporting capabilities, addressing key aspects such as understanding diverse utilizations and the performance of network links. They specifically sought insights into bandwidth usage and detailed reporting at the application level. Additionally, an essential requirement was efficient log management. This is crucial because FortiGate has limitations on retaining logs for an extended duration, and our clients needed a solution, such as FortiAnalyzer, to effectively manage and analyze logs over an extended period.
What is most valuable?
The most valuable is its robust and comprehensive reporting functionality, providing a thorough overview of various metrics. Additionally, its ability to centrally capture logs from multiple devices proves indispensable for our SOC. This centralized log management facilitates automation processes, and we also greatly appreciate the effectiveness of its analytics features.
What needs improvement?
I believe that its technical support is the only aspect that requires significant improvement. With the current trend toward AI advancements, there's an opportunity for improved AI analytics. This could empower us to better leverage technology to detect attacks in a more effective manner.
For how long have I used the solution?
I have been working with it for more than five years.
What do I think about the stability of the solution?
It offers excellent stability capabilities. I would rate it nine out of ten.
What do I think about the scalability of the solution?
It offers a capacity of up to two thousand gigabytes of logs daily, showcasing considerable scalability. I believe it is a scalable solution that can easily accommodate increasing needs without compromising performance. Our clients fall into the enterprise category. I would rate it eight out of ten.
How are customer service and support?
The support services are often outsourced to specific regions, resulting in varying levels of technical expertise. While regions like America, the USA, Europe, and certain countries in Australia benefit from reasonable and proficient engineers, other locations may experience subpar tech support. Consequently, issue resolution can be time-consuming, leading customers to sometimes address problems independently. Particularly in terms of time efficiency, there is a need for improvement to expedite the support process. I would rate it six out of ten.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup was straightforward. I would rate it eight out of ten.
What about the implementation team?
The deployment process is straightforward and efficient, requiring minimal time and effort. It takes approximately thirty minutes and it's quite user-friendly.
What's my experience with pricing, setup cost, and licensing?
The pricing is reasonable. The cost structure is primarily based on factors such as the number of logs, log sizes, and the daily log storage capacity, with a minimum requirement of two gigabytes per day. The maximum storage capacity can extend up to eight thousand gigabytes of logs per day.
What other advice do I have?
I would strongly recommend utilizing it. It's an excellent product with abundant features, offered at a very reasonable price point. Overall, I would rate it eight out of ten.
Which deployment model are you using for this solution?
Centralized log management and real-time analysis enables efficient traffic log analysis and comprehensive network monitoring, but has an initial learning curve
What is our primary use case?
I find it to be a valuable tool for utilizing traffic logs. The product's continuous improvements and Fortinet's commitment to enhancing its capabilities contribute to its effectiveness.
What is most valuable?
The reporting features, which offer customization, real-time insights, and compliance support, are particularly noteworthy aspects.
What needs improvement?
It would be beneficial to enhance the streamlining of the generation of automated reports related to compliance, such as PCI DSS or HIPAA, based on the logs collected. Automated reports focusing on compliance issues would provide a clearer understanding of potential gaps and the need for remediation. This feature would significantly simplify the process of identifying and addressing areas that require attention.
For how long have I used the solution?
I have been working with it for ten years.
What do I think about the stability of the solution?
I would rate its stability capabilities eight out of ten.
What do I think about the scalability of the solution?
We have approximately three thousand users within our company. I would rate its scalability seven out of ten, as it should be improved.
How are customer service and support?
Technical support is responsive. I would rate it eight out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
The majority of our network infrastructure is based on Fortinet, with a single device each on Palo Alto and Cisco.
How was the initial setup?
The initial setup was fairly easy. When approaching it for the first time, there might be some minor complexities. However, as you gain experience, the process becomes quite straightforward to manage.
What about the implementation team?
The setup typically takes a maximum of three to four hours, depending on the scenario. If it's hardware, there usually aren't any issues. For software installations, you need to consider server specifications, and the process involves loading the license, which may take about three to four hours for activation. For maintenance, we have a team of five members responsible for overseeing the entire network, which includes managing the Fortinet licenses.
What's my experience with pricing, setup cost, and licensing?
The pricing model is subscription-based. It involves payment for both the license and ongoing support. I would rate it seven out of ten.
What other advice do I have?
It serves as an excellent tool, especially for addressing compliance requirements. Analyzing traffic logs and monitoring network impressions, both inbound and outbound traffic, are essential needs that this tool effectively fulfills. Implementing it has proven to be highly beneficial. Overall, I would rate it seven out of ten.
The monitoring features are quite impressive, including maps, source IP, country codes, and geolocation
What is our primary use case?
We are an IT company. One of our clients utilizes FortiGate, FortiAnalyzer, and FortiManager. Thus, this is the sole customer in our portfolio using Fortinet FortiAnalyzer. Among our other clients, some exclusively employ FortiGate. Our responsibility encompasses network management for these clients.
What is most valuable?
What I like the most is the monitoring system. For example, it can track who is accessing through VPNs. The monitoring features are quite impressive, including maps, source IP, country codes, and geolocation – all of which are really cool. Additionally, the logging functionality is also excellent.
What needs improvement?
The UI can be more user-friendly for new users.
For how long have I used the solution?
I have been using Fortinet FortiAnalyzer for seven years.
What do I think about the stability of the solution?
Fortinet FortiAnalyzer is highly stable. In the seven years of usage, we have never needed to reinstall it or perform troubleshooting. We have not had to make any support calls to Fortinet either. We successfully performed upgrades from version five to six and from six to seven, all of which went smoothly.
What do I think about the scalability of the solution?
Fortinet FortiAnalyzer is scalable.
How are customer service and support?
The technical support is excellent. I have never encountered any problems with FortiAnalyzer, but the issues we faced with FortiGate, which I was unable to resolve on my own, were promptly resolved by their team.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is straightforward. We can choose to install either a single node or a cluster. We run it in a virtual environment on firmware, and the process of installing the RPA takes around 15 minutes. Afterward, some configuration is required, including the installation of certificates and similar tasks. Thus, the entire process usually takes approximately one to two hours.
Once the installation is complete, we need to connect all the FortiGate Firewalls to the FortiAnalyzer. This step also involves configuring them securely. When I deploy this solution for a customer, it typically takes me about four to eight hours to complete the installation and configuration.
What's my experience with pricing, setup cost, and licensing?
The price is not expensive when compared to other solutions like Palo Alto.
In addition to the licensing, we pay for a support contract.
What other advice do I have?
I would rate Fortinet FortiAnalyzer eight out of ten.
Fortinet FortiAnalyzer is only valuable for organizations that utilize ten or more FortiGates.
I recommend Fortinet FortiAnalyzer to others.
Notifications and alerts are helpful, and it is a natural choice for Fortinet security devices
What is our primary use case?
We take all the logs from FortiGate.
We have it deployed on-premises, and we are definitely using its latest version because we are creating a new virtual machine.
What is most valuable?
Special notifications about compromised phones are valuable because we have some guest networks, and sometimes, people are connecting phones that are connected to compromised websites. We want to be informed about it. We sometimes have some cases where we want to analyze the connection from inside to outside ports. So, it helps with a lot of things. It depends on our needs.
What needs improvement?
The interface or GUI does not work properly on Microsoft Edge. The behavior or the view is different on Microsoft Edge versus on Chrome or Firefox. When some buttons do not work, I am forced to switch to Firefox.
There could be better analysis from the client's perspective. If you have FortiClient EMS, you should be able to analyze users more than the connections.
For how long have I used the solution?
We started using Fortinet FortiAnalyzer this year. It was bought by our main company in the Netherlands.
What do I think about the stability of the solution?
It is now stable, but our previous instance was unstable. We had problems with connectivity. It was strange because it is a virtual machine, and it was on the same hypervisor or host, but only Fortinet FortiAnalyzer had connectivity problems. The connection was dropped, and it was not always possible to log in. We moved it to a different environment. We have now moved it to a Hyper-V cluster on a different site in Poland, and it is now stable.
What do I think about the scalability of the solution?
It is scalable. We could change the size. It was easy.
We have mainly two people working with Fortinet FortiAnalyzer. My colleague and I from the Netherlands work on it. All IT departments also can access it. In total, we have five or six users, but mainly, two of us work on it.
How are customer service and support?
I use their technical support when I have problems. They solve my problems, but sometimes, they take time because it is difficult to understand each other. I prefer a phone call over the email or ticket system because we can share more information in a short time. I would rate them a nine out of ten. They sometimes do not have a fast solution, but they always resolve an issue in the end.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I did not work on any similar product previously.
How was the initial setup?
It was easy to deploy. It took one hour.
What about the implementation team?
We deployed it ourselves. We know the product. We know how to register devices and how to join devices. It was easy. We used our knowledge.
What's my experience with pricing, setup cost, and licensing?
I do not know the price of Fortinet FortiAnalyzer. I did not pay for it, but I know the price of other Fortinet products. They are not cheap. I am from Poland. We have Zloty, not Euro, so for us, everything is expensive.
I had also tried to buy it in the past, but it was too expensive.
What other advice do I have?
If you have FortiGate and FortiClient EMS, FortiAnalyzer is a natural choice. You can have notifications and alerts. Some things are automatically done by FortiAnalyzer. From a security perspective, it is a very good product.
Overall, we are satisfied with it. I would rate Fortinet FortiAnalyzer an eight out of ten.