Skip to main content
TrustRadius
FortiGate

FortiGate

Overview

What is FortiGate?

FortiNet FortiGate is a firewall option with high integrability. It offers a variety of deployment options and next-gen firewall capabilities, including integration with IaaS cloud platforms and public cloud environments.

Read more
Recent Reviews

Best NGFW firewall

10 out of 10
January 11, 2024
If I think of a firewall, first word comes to my mind is Fortinet FortiGate. Best in the industry, as well as in reliability and …
Continue reading

TrustRadius Insights

FortiGate is a versatile product that has been widely used by various organizations to address their network security needs. Users have …
Continue reading
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Popular Features

View all 11 features
  • VPN (38)
    9.8
    98%
  • Firewall Management Console (38)
    9.6
    96%
  • Policy-based Controls (38)
    9.6
    96%
  • Reporting and Logging (38)
    8.2
    82%

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing
N/A
Unavailable

What is FortiGate?

FortiNet FortiGate is a firewall option with high integrability. It offers a variety of deployment options and next-gen firewall capabilities, including integration with IaaS cloud platforms and public cloud environments.

Entry-level set up fee?

  • No setup fee
For the latest information on pricing, visithttps://www.fortinet.com/corporate/abou…

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services

Would you like us to let the vendor know that you want pricing?

347 people also want pricing

Alternatives Pricing

What is pfSense?

pfSense is a firewall and load management product available through the open source pfSense Community Edition, as well as a the licensed edition, pfSense Plus (formerly known as pfSense Enterprise). The solution provides combined firewall, VPN, and router functionality, and can be deployed through…

Return to navigation

Product Demos

Fortinet Fortigate Firewall SSL VPN Demo

YouTube
Return to navigation

Features

Firewall

A firewall is a filter that stands between a computer or computer network and the Internet. Each firewall can be programmed to keep specific traffic in or out

9.3
Avg 8.5
Return to navigation

Product Details

What is FortiGate?

Fortinet’s FortiGate is a firewall product with high integrability. It can be deployed on-premises or as a Virtual Machine in a variety of modules. The granularity of the product enables buyers to tailor their purchase to their business needs. FortiGate integrates into multivendor environments, including IaaS cloud platforms and public cloud environments.

FortiGate’s functionality includes the core firewall features, such as intrusion prevention, anti-malware, and web filtering. It also includes SSL inspection, threat protection, and scalable segmentation, all within low-latency standards.

FortiGate Video

FortiGate Demo

FortiGate Technical Details

Operating SystemsUnspecified
Mobile ApplicationNo

Frequently Asked Questions

FortiNet FortiGate is a firewall option with high integrability. It offers a variety of deployment options and next-gen firewall capabilities, including integration with IaaS cloud platforms and public cloud environments.

Reviewers rate VPN highest, with a score of 9.8.

The most common users of FortiGate are from Enterprises (1,001+ employees).
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(359)

Community Insights

TrustRadius Insights are summaries of user sentiment data from TrustRadius reviews and, when necessary, 3rd-party data sources. Have feedback on this content? Let us know!

FortiGate is a versatile product that has been widely used by various organizations to address their network security needs. Users have reported that FortiGate serves as a reliable firewall solution, providing advanced security features and protecting the infrastructure from known and unknown attack types. It is not just a firewall but a full Unified Threat Management solution, offering security checks for risks like SPAM, infected attachments, and spyware.

FortiGate has proven to be suitable for different use cases, such as small office connections, enterprise proxy, threats management solution, and routing and layer 3 management. It offers excellent routing and VPN performance, making it an ideal choice as the core of a company network's layer 3 and routing infrastructure. Additionally, FortiGate is highly regarded for its ease of setup and management, delivering intuitive visibility into multiple network activities that aid in troubleshooting network and security issues.

Virtualized FortiGates are also available, making it a suitable option for companies with strong virtualization infrastructures. The product line includes devices that can withstand environmental extremes, making it viable for industrial environments. Organizations have utilized FortiGate for securing external services, inter VLAN routing, protecting users' internet access, segmenting internal networks, and creating a security fabric using Fortinet switches and APs.

FortiGate provides robust VPN capabilities for remote workers, including site-to-site VPNs for larger sites. Users have praised its user-friendly interface for policy creation and selection of security profiles. The solution is also utilized as the primary internet-facing firewall, protecting networks from outside threats while allowing secure remote access through SSL VPN.

Customers have recommended FortiGate as an alternative to more expensive solutions due to its cost-efficiency without compromising on performance or functionality. With its powerful technologies and extensive support ecosystem provided by Fortinet, FortiGate has enhanced security and resolved issues across organizations of all sizes.

In summary, FortiGate has proven to be a reliable and versatile network security solution, addressing a wide range of use cases such as firewall protection, VPN establishment, threat management, routing infrastructure, and secure remote access. It provides advanced security features, intuitive management interfaces, and cost-efficient solutions for organizations of all sizes.

Attribute Ratings

Reviews

(1-14 of 14)
Companies can't remove reviews or game the system. Here's why
Jesse Bridgelal | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Fortinet FortiGate is a Next Generation Firewall (NGFW) that provides state-of-the-art security for your Network. Fortinet FortiGate provides the full Unified Threat Protection (UTP)Suite for our Company and includes powerful network protection services such as IPS, Anti-Malware, Antivirus, Flood Detection, BotNet Detection, Web Filters, and other security services. Fortigate provides a powerful first line of defense for our network, with proactive alerting and intrusion prevention. Fortigate and the FortiClient combine to provide versatile and secure VPN services for our Remote workers. the Site to Site VPN is also a powerful full-time VPN for larger sites that need WAN Connectivity. Fortigate provides a very intuitive interface which allows our Team to configure and utilize the most powerful features of this Firewall with ease.
  • Powerful and reliable SDWAN Services
  • Unified Threat Protection with powerful features such as IPS, Anti-Virus, Anti-Malware, Anti-Spam
  • Powerful IPS Services backed by industry validation
  • Provides Reliable Publishing Services for providing secure remote access to internal services
  • Provides excellent Remote Access Services via IPSEC and SSL VPN Tunnel technologies.
  • Features a simple and intuitive user interface which is well designed and easy to follow.
  • There could be some improvement to the Logging Services to include more details
  • 10 Gigabit Interfaces should be available for the lower models as well.
  • Simpler installation of the FortiAP services when being used.
Fortigate Firewalls models are designed to be used in networks of any size. They come in sizes varying from Entry Level to large enterprise. Fortinet FortiGate is best suited tot he Corporate Network environment where high security is required. The Devices also offer powerful WAN services and SDWAN features which make them an excellent alternative for your basic WAN Router. With features such as OSPF and BGP and SDWAN, they provide advanced network services and enhanced security at a lower cost. Because these boxes are purpose built and include Security Processor (SPU) technology, they outperform other devices in their class.
Score 8 out of 10
Vetted Review
Verified User
Being an IT consultant and Software Development Centre (Lab) for our Parent Company, we are very specific and skeptical when we choose a product that will be implemented across many other daughter companies. For FortiGate Firewall, the basic functionality and requirement is met easily as Fortigate is among market leaders in NGFW. There are some extra points that inclined us to use [Fortinet] Fortigate as our main Firewall. Fortigate has a very well refined and functional SD-WAN solution when it comes to load balancing for normal Internet Traffic, be it web browsing, Application traffic, IPSec or SSL VPN traffic. Some of the top NGFW still lacks the basic load balancing feature (to be practical) in small and mid scale organizations where budget is a constraint in selecting the technologies. Another feature is to have the traffic shaping (QoS) or bandwidth allocation to users, Application, subnets with all possible variables in configuration. Explicit Proxy is also a great feature, to be configured on the Firewall itself. SSL VPN configuration on firewall is also very easy with the help of Wizard.
  • SD-WAN - Load balancing of Internet traffic is a USP of Fortigate and makes it stand tall in the competition. Be it 3 or more Internet Links, multiple Subnets/segments of users to distribute and bandwidth load balancing for links and users. SLA based monitoring of Internet Links / MPLS links, makes it even better to choose the links on the basis of performance (Latency, packet loss, Jitter etc).
  • SSL VPN configuration - As we all have WFH force (to some extend or all employee) during Covid-19, it is impossible to plan BCP without having a SSL VPN. In Fortigate, the SSL VPN configuration is very easy with the help of wizard. The deep CLI-level debugging is also very helpful in troubleshooting. Type of tunnel can be easily configured - Full Tunnel or Split Tunnel for SSL.
  • Explicit Proxy - This is also a great feature to shape and re-route the traffic, configuring the Proxy on the Firewall itself. We are using this feature in Pilot for now, and planned to rollout in few weeks looking at the success rate of the POC.
  • Though, I think Fortigate is one of the best options for small and mid-sized organisations, there are some areas for improvement. First, the CLI interface is very hard to adapt as the commands and directory hierarchy is very different for common syntax and standards.
  • Scalability - this is something that I personally have faced twice in the same organization. Fortigate is not easy on scalability part, you have to change the hardware box in order to scale the firewall as organization grows.
  • Fortigate sometimes stucks on GUI, which is basically happens due to Disk error. And the only way to mitigate the issue is to reboot the firewall. Which is very hard if you have a 24x7 production running behind the firewall.
  • HA switch over in certain conditions is also have some room to improvement. Basic internet link flapping can cause HA switchover, if not configured wisely and with custom settings. HA switch over also takes more than normal time, approx 4 minutes sometimes.
For FortiGate Firewall, the basic functionality and requirement is met easily as Fortigate is among market leaders in NGFW. There are some extra points that inclined us to use Fortigate as our main Firewall. [Fortinet]Fortigate has a very well refined and functional SD-WAN solution when it comes to load balancing for normal Internet Traffic. SD-WAN - Load balancing of Internet traffic is a USP of Fortigate and makes it stand tall in the competition. Be it 3 or more Internet Links, multiple Subnets/segments of users to distribute and bandwidth load balancing for links and users. SLA based monitoring of Internet Links / MPLS links, makes it even better to choose the links on the basis of performance (Latency, packet loss, Jitter etc). SSL VPN configuration - The deep CLI-level debugging is also very helpful in troubleshooting. Type of tunnel can be easily configured - Full Tunnel or Split Tunnel for SSL. Though, I think Fortigate is one of the best options for small and mid-sized organizations, there are some areas for improvement. First, the CLI interface is very hard to adapt as the commands and directory hierarchy is very different for common syntax and standards.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
[Fortinet FortiGate] is [a] loaded and ready platform for any sized organization. Highly efficient security processors optimize network performance help you to secure you organization from any cyber attacks. This is also a top selling product because of advanced security features, fast processing and low cost. I am working on [FortiGate] 1800F series and I deployed this on my two other sites. I [am] happy with their features.


  • Fortinet Advanced Threat Protection and Intelligence
  • Fortinet FortiSwitch
  • SD-WAN security
  • Fortinet Advanced Sanboxing
  • Logging and report
  • Management console
  • FortiAnalyze
  • Most secure for new zero-day and advanced threats
  • CLI commads are very complicated
  • SLA issue with Technical support
[Fortinet FortiGate is] well suited for those industries where you want deep level scan, data are very critical and you can't afford any type of cyber attacks. Cost is less and you will get lots of advanced features.
Tony Dous | TrustRadius Reviewer
Score 6 out of 10
Vetted Review
Verified User
Incentivized
This device is being used across the entire organization. We are using it as our primary internet-facing firewall. It is protecting our network from outside threats and ensuring that the users inside the organization are protected as well. Some sister company authorized users have access to the FortiClient VPN software so they can access resources from remote locations.
  • SN-Wan is so powerful.
  • Application control is so powerful also and updated everyday.
  • Web control
  • IPS
  • VPN remote control is so easy.
  • SLA should have more HTTPS on target.
  • The traffic logs should be faster on the box. I read it's better on Forti Analyzer.
SD-Wan VPN site to site is very well suited and saves much time and cost by transferring site to site tunnels on MPLS, IPSEC and Dial-up Tunnels all by this function. I can't see less appropriate scenarios.
Michael Singh | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Coming from a Cisco background, I first brushed this off as some knockoff. But in all honesty, it is far superior to the products I have used in the past.

My department (Enterprise Managed Services) currently uses Fortinet FortiGate in tens of thousands of locations. We use the whole suite with FortiAP and FortiSwitches. The whole family intertwines fluidly with great features and support. Even better is its policy and configuration management with FortiManager or logging and reporting with FortiAnalyzer. The web interface is so intuitive and the CLI is a breeze to use. The current offerings of FortiGates range from small branch office sized firewalls to large multirack datacenter beasts. The VPN capacity, SSL inspection, and other traffic metrics are insane for the purposes we use them for. The high availability and SD Wan features that customers want are so easy to use and configure. I highly recommend FortiGate as an alternative to more expensive solutions that are still 5 years behind.

Another side note, the support and training portals are very very informative. Even the certification exam materials are now free. FortiGate is definitely pushing boundaries with its UTM devices. Many job listings in Denver are now asking for FortiGate experience! Highly recommended.
  • VPN
  • IPS/IDS
  • UTM
  • SD-WAN
  • IPv4 Policies
  • Web content filtering
  • Firmware stability
  • Traffic Shaping policies
  • Better wizards as it can be cumbersome to some new engineers.
FortiGates are very well suited when used in conjunction with FortiManager for scalability and management reasons. Larger model FortiGates are not necessary for smaller environments. The basic models do just fine.
Score 7 out of 10
Vetted Review
Verified User
Incentivized
Fortinet Fortigate currently sits on the edge of our network, and it is used to monitor all incoming and outgoing traffic on the network. It allows us to shut down access to the network and restrict access only to applications and protocols that should be allowed based on the services we currently use. It is a core component of our IT security strategy for the organization.
  • Allow secure access to the network for external vendors.
  • Protects the network from nefarious online activities
  • It gives us granular control over what we allow in and out of the network and the flow of traffic between network points (LANS & WANS).
  • It allows us to connect multiple offices over WAN connections.
  • Training - The software and device is complex I believe free training should be offered for administrators to become experts on how the device function as opposed to learning by a bit of trial and error or discovering useful features only when the necessity arises. Companies usually like to avoid the added costs of training. Therefore, free training courses to certification would benefit all shareholders and lead to even further widespread adoption over the competition.
  • Any simplification of the user interface to implement essential security features would be welcomed. It can be relatively daunting for a new administrator, especially if having to use the command prompt.
  • More screenshots in the online documentation or more videos to guide admins on how to implement useful security features I find the documentation online sometimes a bit hard to follow. Still, if screenshots were added, it would simplify the process.
To protect networks ranging from small to enterprise, especially if you are connecting multiple office locations to share IT services where feasible.
Mauro Osvaldo Sepulveda Gutierrez | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We have been working with this solution over 5 years and we are very satisfied. We use it for one of our offices and the configuration is very easy and intuitive. You can apply policies by address or by user, the integration with Active Directory is not complicated, the cost of the solution is cheaper in comparison with other vendors and including the same solutions.
  • Ease to configure policies
  • VPN performance
  • Active directory integration.
  • Not so scalable, if you need more performance you need to buy another device
  • The traffic shaper could be better
  • The Wan load balance could be better
Fortigate works pretty well if you choose the correct device based on the number of your users. If you need to apply policies by application this solution can help you. Their other features like web filter, VPN connections, traffic reports, etc work well too. In general terms, the solution is very complete and the cost of this device is cheaper than other vendors.
January 15, 2020

Easy-to-use firewall

Score 9 out of 10
Vetted Review
Verified User
Incentivized
FortiGate devices are used in our organization as firewalls and VPN servers. Main internet connections used Palo Alo firewalls, FortiGates are used on the secondary ones, as the cost of the FortiGates is significantly lower. SSL client-server VPN is used with Fortinet's Forticlient software as a client piece on PC and Mac computers. Fortinet subscription services are used for web filtering.
  • Compared to Palo Alto, FortiGates are significantly less expensive. I would advise organizations to use them in cases where funds are limited.
  • FortiGates are easy to configure via GUI - it is very simple and logical. Compared to Palo Alto or Cisco ASAs, Fortinet products are easier to work with for less experienced admins.
  • Web filtering subscription services are not as good as Palo Alto's. Palos had a smaller number of false negatives in my experience.
  • Log filtering is better on Palo Altos. It is easier to find log entries for particular events on the Palo Altos.
I haven't worked with a higher-end offering from Fortinet, so my experience can only apply to smaller devices (80E and 60E). These units are less expensive than similar offerings from Palo Alto, making them a good choice for small businesses and branch offices. Also, FortiGate is the easiest firewall to configure, in my experience (among Cisco ASA, Palo Alto, pfSense, etc.). Ease of configuration is also a big advantage for organizations with limited resources. Palo Alto firewalls have better filtering and logging capabilities, though, so organizations with complicated requirements should consider investing in Palo Alto NGFW instead of FortiGate.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use Fortinet Fortigates as perimeter and WAN firewalls nationally and use them for intrusion prevention, web filtering, application filtering, VPN, and proxy.
  • Ease to deploy and manage.
  • Very cost effective when compared to competitors.
  • Good, local, reactive support.
  • Upgrades are always "risky" (usually wait for 2 upgrades before upgrading).
  • Some of the settings don't make sense at first look.
Having used all the big-name players in the market, Fortigate is up there in terms of functionality and adaptability but with the benefit of a lower cost and ease of management that no one else offers.
March 11, 2019

Fortinet FIrewalls

Adithyo Dewangga Wijaya | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
Incentivized
Fortinet's version of throughput is good and It has a strong active cluster, as you can have between three and 32 units to a cluster. The most important factor is that you choose a firewall or UTM solution that fits your organization's security requirements. Begin by determining what business problem you are trying to solve, what technical controls you need to implement (Firewall, IPS, NAC, VPN, endpoint, mobility, web filtering, malware detection, etc.). Then, determine what hardware features you need such as (HA clustering, link aggregation or 10Gb, port density), and what kind of throughput, and how many concurrent connections.
  • Easy to set up
  • 9/10 Customer Service
  • 9/10 Technical Supports
  • Multiple layers of security
  • Security
  • LAN
  • WAN
Variables in TCL scripts via FortiManager
Adrian Cumberbatch | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Our Fortigate is used as the primary network router and IPSec VPN access point. We have a hub [and] spoke setup between the main office and other remote offices. Users also connect to our fortigate to access the network remotely using SSL VPN with the FortiClient software installed on their PCs or using the SSL web portal.
  • SSL VPN works well and is very configurable for controlling access to internal network resources based on user groups.
  • Fortigate also manages our wireless AP and many SSIDs can be created with either WPA or Enterprise WPA with radius for greater security
  • IPSec VPNs easy to configure between fortigate devices but also not that difficult for other IPSec compatible devices
  • Initial learning curve was difficult coming from a Symantec/Raptor background but not a huge deal
Fortigate is well suited where you have multiple internet connections and you want to provide failover for these connections. This can be done by round-robin or in an active-passive mode when an ISP goes down, traffic is automatically routed across the other device without interruption. Users never notice and it saves a lot of headaches. Of course, monitoring should be done from external sources so that you are aware when a link goes down.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Our company decided to switch from Checkpoint to Fortinet as a corporate standard. I've used Fortinet products for the last 10 years, and have been incredibly happy with the ease of use, and support resources are not as hard to find as they are for Checkpoint. Additionally, the integrated SD-WAN in more recent versions made us start running out of reasons why we SHOULDN'T use Fortinet FortiGate firewalls.
  • Integrated SD-WAN functionality
  • Best in class threat protection
  • Single pane of glass (Instead of three in checkpoint)
  • Breakout switch still required to share ethernet connectivity with redundant pair.
  • CLI could use some improvement but is overall good.
Fortigate is amazing when attempting to create an SD-WAN between large or small environments. This alleviates the cost of a high priced SD-WAN platform like Cloudgenix (amazing product, but pricey!), and extends that functionality to SMB clients at a very low cost in models like the 61e. We can get most of our locations online, with redundancy for under $2000.00.
Kewyn Medina | TrustRadius Reviewer
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We use it as our internal and external firewall. It is also used with all security options, including DDOS protection, in our branches.
  • Web filtering, which protects the users browsing to non-secure websites
  • Network security between different networks
  • Traffic shaping control for users and applications
  • Traffic shaping options based more on layer 7, so you could have a more detailed control over the exact sites users are browsing
  • The transition between different major updates
  • More option in fast reports and dashboards
  • A more exact measure of bandwidth to show in dashboard and FortiView
Very good in the firewall protection between different networks, and also for external protection. It also gives a really good experience in the browsing protection for users, which keep them safe from unsecured websites.

On the other hand, you could have some issues when you are tracking a user in the forward traffic log because is not easy to troubleshoot or find some browsing information because of the main graphical interface.
Victor Arana | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We're currently working with amaze with a FortiGate 110C, that is our front end Firewall for ISP routing and as a first layer to declare web access policies, anti-spam filtering, IPS, application inventory and to implement fail over policies to warranty the Internet connection to all departments. The UTM Solution from Fortinet brings a bundle package of features that is allowing the company to establish a MAN and an extreme secure VPN layer to deliver to our branch offices the WAN access with incredible ease. I do strongly recommend this quite remarkable Security Solution.
  • An accurate Web Filtering module that will allow to your IT Staff, leverage the administration of the web access from the end point users. Also will allow to customize the policies through a broad presentation of options, where you can customize or schedule the access to specific web sites.
  • AD & LDAP integration will allow you to sync your DC with the Firewall and set the traffic rules and packages with ease.
  • VPN through SSL Web Portals will simplify the scale of adaptation for final user, allowing a customization of the front end portal, with corporate image.
  • Improve time for releasing bug fixing.
  • Integrate graphical troubleshoot tools for policies based on devices or user identities, will help IT Sec Admins to answer faster to security breaches.
  • Using CLI reference guides and a better sort options.
FortiGate for large scale solutions with a tight budget can work quite remarkably. Making the right design having all the specs for the network workload, and security areas where the Fortinet UTM solution will be involved can give you the exact model and bundle options needed to make an accurate purchase.

For those IT pros that can save money and use their own resources you can have pfSense Firewall to cover SMB, SOHO offices also for mid size companies 50-99, should work perfect and you will save time money, and training.
Return to navigation