Overview
Video 1
Video 1
Video 2

Product video
FortiGate-VM on AWS delivers next-generation firewall and VPN/SD-WAN capabilities for organizations of all sizes. It enables broad network protection and automated security management for consistent enforcement and visibility across your AWS VPCs and hybrid cloud infrastructure. FortiGate natively integrates with AWS Gateway Load Balancer, AWS Transit Gateway and other AWS security services to simplify and deliver enterprise-class security for applications and workloads running on AWS.
FortiGate-VM reduces complexity by combining secure connectivity with advanced threat protection capabilities such as powerful intrusion prevention (IPS), malware detection and protection, and continuous threat intelligence from FortiGuard Labs security services. It offers a management console that provides comprehensive network automation and unified visibility across multi-cloud environments.
FortiGate-VM, in concert with other elements of the Fortinet Security Fabric, enables common deployment scenarios such as cloud security services hub, secure remote access, container security, web application security, and critical workload protection.
Visit the FortiGate-VM on AWS Community Resource Hub to find onboarding, deployment, and technical information and join in discussions: https://community.fortinet.com/t5/FortiGate-VM-on-AWS/gh-p/fortigate-vm-on-aws
Please contact awssales@fortinet.com with any questions.
Highlights
- FortiGate offers protection from a broad array of threats, with support for all of the security and networking services offered by the FortiOS operating system.
- Delivers complete content and network protection by combining stateful inspection with a comprehensive suite of powerful security features to meet PCI DSS compliance.
- IPS technology protects against current and emerging network-level threats. In addition to signature-based threat detection, IPS performs anomaly-based detection which alerts users to any traffic that matches attack behavior profiles.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Free trial
Dimension | Cost/hour |
|---|---|
c5n.xlarge Recommended | $1.02 |
c7i.xlarge | $1.02 |
c7i.2xlarge | $1.60 |
c5n.18xlarge | $5.16 |
c6i.2xlarge | $1.60 |
c6i.24xlarge | $6.19 |
c7i.4xlarge | $3.29 |
c4.8xlarge | $4.10 |
c4.large | $0.88 |
c6in.16xlarge | $5.16 |
Vendor refund policy
You may terminate the instance at anytime to stop incurring charges.
Custom pricing options
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Additional details
Usage instructions
Please ensure the connectivity to FortiCare (https://directregistration.fortinet.com:443 ) by checking all related setup on security groups, ACLs, IGW, route tables, public IP address...etc.
After deploying the instance, click on Manage in AWS Console to see the running instance and public DNS address to continue the configuration of the FortiGate-VM. Connect to the secured Web UI via the public DNS address: https:// <public DNS address>. For any CLI configuration/settings, SSH is required to log into the CLI. Default login credentials are with a username of admin and the AWS Instance ID value as the password. The FortiGate-VM AWS Install and Configure guide is located at https://docs.fortinet.com/document/fortigate-public-cloud/7.6.0/aws-administration-guide/
Support
Vendor support
This product is intended for On-Demand subscription. Please contact Customer Support with the following information instead of trying to register in FortiGate management GUI:
- The serial number of your FortiGate instance
- The email ID of your Fortinet account. If you do not have an account yet, please sign using the link below
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Standard contract
Customer reviews
Unified security has improved border protection, boosted SD-WAN performance, and simplified VPNs
What is our primary use case?
My clients use Fortinet FortiGate in the boundary and border gateway as a border firewall, positioned between the internet and the company. We also use it for VPN and IPsec VPN to connect remote office sites. Additionally, I have a use case for MES in high technology where it blocks malware in machines such as those used for producing semiconductors.
I have used Fortinet FortiGate 's data center solution, specifically the FortiGuard service, which is included in every Fortinet FortiGate deployment. In the data center, we use Fortinet FortiGate to block server farms from the internal LAN due to its performance, which is higher than other products. We consistently use it in server farm environments.
What is most valuable?
The best feature of Fortinet FortiGate is its SD-WAN capability, which is included and differs from other products that require an additional license.
With SD-WAN capabilities, I notice a significant impact on network performance. The E series offers good performance, double that of the D series. If a new series is released, it always performs well. For example, if my customer uses the 200D model, the new 100E model can serve as an upgrade.
My experience in integrating SD-WAN capabilities with Fortinet FortiGate indicates that the integration is not difficult. We simply incorporate user ID and user account, and we have not encountered other challenges.
The main benefits that my customers see from Fortinet FortiGate include low cost and the integration of switches, APs, and Fortinet FortiGate, which reduces management overhead.
What needs improvement?
I have not used the Unified SASE capabilities in Fortinet FortiGate.
I do not have the AI or ML enhanced FortiGuard with machine learning or AI.
My impression of the dynamic segmentation feature in Fortinet FortiGate is that while some customers use it, I believe it is not granular enough. It can separate VLANs, but it cannot separate individual users. We use it with FortiSwitch or AP to expand Fortinet FortiGate ports to every switch port.
Regarding stability, I have experienced performance issues with Fortinet FortiGate. Sometimes it does not work correctly in certain situations, such as DNS or URL categories, where it might block incorrectly.
When it comes to scalability, I find Fortinet FortiGate somewhat scalable, but not highly scalable because we usually replace it. We always buy a larger model to replace the old one. For better scalability, Check Point performs best as it offers products that allow for adding more firewalls to expand performance or bandwidth.
In assessing the performance of the hardware-assisted DDoS protection in Fortinet FortiGate, I think it does not work effectively in critical events, as DDoS protection is challenging due to the number of attackers.
In the future, I would like to see improvements with Fortinet FortiGate, especially as all firewalls emphasize AI or machine learning. I do not see significant use of AI in Fortinet FortiGate, whereas I can see how AI improves functionality in Palo Alto.
For how long have I used the solution?
I have been working with Fortinet FortiGate for approximately twenty years.
What do I think about the stability of the solution?
Regarding stability, I have experienced performance issues with Fortinet FortiGate. Sometimes it does not work correctly in certain situations, such as DNS or URL categories, where it might block incorrectly.
What do I think about the scalability of the solution?
When it comes to scalability, I find Fortinet FortiGate somewhat scalable, but not highly scalable because we usually replace it. We always buy a larger model to replace the old one. For better scalability, Check Point performs best as it offers products that allow for adding more firewalls to expand performance or bandwidth.
How are customer service and support?
I would evaluate Fortinet's customer service and technical support teams with a rating of nine.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
I mainly work with firewalls from Palo Alto Networks.
Apart from Palo Alto, I have worked with Check Point, but I used it very minimally.
How was the initial setup?
The initial setup of Fortinet FortiGate is not difficult for me.
What about the implementation team?
I have a business relationship with Fortinet as a reseller and system integrator.
What was our ROI?
I am aware of investment regarding ROI, but I need clarification on what type of investment you mean. The cost is the main concern of my customers, and Fortinet FortiGate offers the future we need.
What other advice do I have?
I use Fortinet FortiGate primarily as a physical appliance; the VM deployment is minimal. My impression of the dynamic segmentation feature in Fortinet FortiGate is that while some customers use it, I believe it is not granular enough. It can separate VLANs, but it cannot separate individual users. We use it with FortiSwitch or AP to expand Fortinet FortiGate ports to every switch port.
Regarding stability, I have experienced performance issues with Fortinet FortiGate. Sometimes it does not work correctly in certain situations, such as DNS or URL categories, where it might block incorrectly.
In assessing the performance of the hardware-assisted DDoS protection in Fortinet FortiGate, I think it does not work effectively in critical events, as DDoS protection is challenging due to the number of attackers.
My clients use Fortinet FortiGate in the boundary and border gateway as a border firewall, positioned between the internet and the company. We also use it for VPN and IPsec VPN to connect remote office sites. Additionally, I have a use case for MES in high technology where it blocks malware in machines such as those used for producing semiconductors.
In the future, I would like to see improvements with Fortinet FortiGate, especially as all firewalls emphasize AI or machine learning. I do not see significant use of AI in Fortinet FortiGate, whereas I can see how AI improves functionality in Palo Alto.
I mainly work with firewalls from Palo Alto Networks.
Apart from Palo Alto, I have worked with Check Point, but I used it very minimally. I would rate this review with an overall score of nine.
Centralized security has simplified remote site protection and reduced staffing needs
What is our primary use case?
My main use case for Fortinet FortiGate is for VPN and its appliances and for securing all of our remote locations.
A specific example of how I use Fortinet FortiGate to secure my remote locations is that we set rules on each of our locations about what traffic can and cannot go in, so we can allow certain connections for our partners such as Frontiers.
What is most valuable?
The best features Fortinet FortiGate offers are the built-in security functions, which I think are very nice.
We find the built-in security functions most valuable in Fortinet FortiGate, particularly web filtering, as it is all hands-on. Web filtering is our standout feature, and I don't want to add anything else about the features.
Fortinet FortiGate has positively impacted my organization by centralizing the way to access all of our network firewalls.
What needs improvement?
I wish Fortinet FortiGate's UI updates would be done in a more simplified way to improve it.
I choose nine for my rating because I think there's always room for improvement, and I think some of the things in the UI need to be adjusted so they're a little bit more simplified and not overcomplicated.
For how long have I used the solution?
I have been using Fortinet FortiGate for at least three and a half, maybe four years now.
What do I think about the stability of the solution?
In my experience, Fortinet FortiGate is very stable, and it has been quite consistent during times of downtime.
What do I think about the scalability of the solution?
Fortinet FortiGate's scalability has been keeping up well with my organization's growth or changes, as each location gets larger and we feel the need to put a Fortinet FortiGate in each one.
How are customer service and support?
We have had to reach out multiple times to Fortinet engineers for customer support, and it has been great every time; they always seem to get to the bottom of it within one to two calls.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
We did use a different solution before Fortinet FortiGate, but it has been so long that I cannot remember who it was; it may have been Palo Alto.
What was our ROI?
I believe we have seen a return on investment in terms of fewer employees needed, but otherwise, it is outside of my scope.
What's my experience with pricing, setup cost, and licensing?
I was not directly involved in the pricing, setup cost, and licensing for Fortinet FortiGate.
Which other solutions did I evaluate?
We did consider other options before choosing Fortinet FortiGate, but it was a straightforward decision, and I am not quite sure what the other options were.
What other advice do I have?
I do not have anything that is unique to us about how we use Fortinet FortiGate in our setup.
We do not utilize Fortinet FortiGate's data center solution, and we do not feel the need to consider AI and ML enhanced FortiGuard services within Fortinet FortiGate.
I would advise others looking into using Fortinet FortiGate to make sure that they get their configurations right from the start, as that means they have less of a need to get support involved. I would rate this product a nine out of ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Secure connectivity has improved branch-to-cloud protection and supports future-ready defenses
What is our primary use case?
I have experience working with Cisco, Catalyst SD-WAN, Fortinet FortiGate , and Juniper technologies. We have a multi-range of vendors including Cisco, Juniper, VMware, and Palo Alto. We use Palo Alto firewall and Fortinet FortiGate firewall for wireless security and network security, including proxy and next-generation capabilities.
Most vendors are providing almost the same functionalities in terms of firewalls. Palo Alto, Fortinet, and Juniper are all offering similar capabilities, but they have a wide range of services or products such as SD-WAN and SASE . Currently, we are a big enterprise and one of our products is Fortinet FortiGate.
What is most valuable?
Fortinet FortiGate has reasonable pricing and is easy to operate. It is efficient and represents the future for security, including cloud security and branch-to-cloud security.
We have threat intelligence detection, response, and action capabilities. Fortinet FortiGate products are stable, and they offer a wide range of security capabilities.
What needs improvement?
We did not use Fortinet SASE , and I do not remember if our data center team utilizes it. Currently, I think Fortinet should enable more cloud, virtual, or unified solutions. One point against them is that their solution lacks a unified approach. Sometimes the licensing is not clear, and when you purchase a product, you find that you need certain licenses or additional products. There is not one comprehensive solution.
For how long have I used the solution?
Three years.
What do I think about the stability of the solution?
Fortinet FortiGate is stable. We have been using it for three years and did not face any stability issues.
What do I think about the scalability of the solution?
We have been using Fortinet FortiGate for three years and did not face any scalability issues.
How are customer service and support?
I do not have good visibility about Fortinet FortiGate's tech support because it is similar to other vendors. There is tech support available, and if there is an operational issue, the operations team opens a ticket with tech support.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
We work with local companies and local partners. Both the vendor and official channels work with local partners for implementation.
How was the initial setup?
I do not remember there being challenges or complexity in the deployment of Fortinet FortiGate.
What about the implementation team?
We work with local companies and local partners. Both the vendor and official channels coordinate with local partners.
What's my experience with pricing, setup cost, and licensing?
Fortinet FortiGate's price is reasonable compared with other vendors.
Which other solutions did I evaluate?
Fortinet FortiGate is in a good position. In Gartner, they are leaders, but they may come after Palo Alto and are better than Cisco in the firewall field.
What other advice do I have?
We are deploying micro-segmentation technology and methodology in our cloud and private cloud deployment. I can assess that Fortinet FortiGate is good overall. My review rating for this product is eight out of ten.
An affordable firewall for security and good network performance
What is our primary use case?
We are using Fortinet FortiGate for the SD-WAN solution between our branches. We also started using Fortinet's access points, wireless solution, and full fabric with switching. We are using many products from Fortinet.
We don't use Fortinet FortiGate for data center solutions; we just use Fortinet FortiGate for perimeter firewalls and wireless and switching.
How has it helped my organization?
The main benefits that Fortinet FortiGate provides is the security of the network.
What is most valuable?
Fortinet FortiGate has many functions, and it is one of the best next-generation firewalls with an affordable cost than other vendors.
Fortinet FortiGate is useful for network performance, and it helps to optimize the links between branches and the applications that are used from the data center to other branches.
The integration between SD-WAN and FortiGate is easy. It accommodates our needs.
What needs improvement?
They can add automation for monitoring and policy optimization on the firewall. I think using AI to do some optimization on the policies would be beneficial, such as providing alerts about policies that haven't been used for a long time or identifying overlapping policies.
For how long have I used the solution?
I have been working with Fortinet FortiGate for at least six to seven years.
What do I think about the stability of the solution?
I would rate the stability of Fortinet FortiGate as eight out of ten.
What do I think about the scalability of the solution?
I would rate the scalability of Fortinet FortiGate as eight out of ten.
How are customer service and support?
I would rate technical support from Fortinet as seven out of ten. While there are no issues, there is improvement needed for fast response and clear response from Fortinet's technical support.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup for Fortinet FortiGate is very simple.
Which other solutions did I evaluate?
Palo Alto is the main competitor in the market. Fortinet FortiGate provides a simple solution. It is less expensive than Palo Alto and meets our requirements.
We do the exercise from designing and planning with Fortinet FortiGate, and then we purchase through a partner.
What other advice do I have?
My overall rating for Fortinet FortiGate is eight out of ten.
Ensures network security with reliable policy management and smooth deployment
What is our primary use case?
Fortinet FortiGate is a perimeter firewall which we are using for protecting our network and for defining policies so that only restricted access is given from outside to serve this purpose.
What is most valuable?
Fortinet FortiGate serves as our perimeter firewall which we utilize for protecting our network and defining policies to ensure only restricted access is given from outside.
What needs improvement?
A disadvantage exists when we are collecting the logs, as it sometimes becomes very difficult to interpret the logs that are generated from the firewall. The main challenge is finding out which IP is generating what kind of traffic.
For how long have I used the solution?
We have been using Fortinet FortiGate for more than 10 years. We started with FGT 60, then moved on to 100, then 300, and currently we are using 501E.
What do I think about the stability of the solution?
It went smoothly and we have found it very useful because we have a redundant internet lease line. It takes care of all our requirements.
What do I think about the scalability of the solution?
We have been informed by Fortinet FortiGate that it has already reached the end of service. It will be supported until next year, so we might procure a new solution. It cannot be scaled, so we will have to replace the box itself.
How are customer service and support?
We have been using Fortinet FortiGate for quite a long time. As mentioned, we have used the last four series, and we found the product to be very stable. We regularly update it when updates are available, and the support has been good so far.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We are not using any previous solutions.
How was the initial setup?
The system integrator performed the installation and it went smoothly. My team mentioned it is very easy to do the setup. Since it is software-based rather than hardware-based, and our people are very familiar with the software, the implementation proceeded smoothly.
What about the implementation team?
The system integrator performed the installation.
What was our ROI?
We have received a very good ROI. It has provided significant time savings of almost 20-25%.
What's my experience with pricing, setup cost, and licensing?
The solution is affordable.
Which other solutions did I evaluate?
My team has indicated that Fortinet FortiGate is more simple and secure compared to alternatives.
What other advice do I have?
I rate Fortinet FortiGate a nine out of ten.