My company uses Fortinet FortiSandbox to integrate with the email system named FortiMail. Fortinet FortiSandbox also helps with the integration of network infrastructure, allowing our company to extract some objects from the network and analyze them.
External reviews
External reviews are not included in the AWS star rating for the product.
An easy-to-install tool that helps its users detect and prevent unknown threats
What is our primary use case?
How has it helped my organization?
The main benefit of Fortinet FortiSandbox is that it allows organizations to detect and prevent unknown threats from entering an infrastructure.
What is most valuable?
The most valuable feature of Fortinet FortiSandbox is its ability to be integrated with email infrastructure, like FortiMail, with a blocking mode option, which means that FortiSandbox not only allows the detection of some malicious objects in emails but also helps block them to prevent end users from receiving from malicious emails.
What needs improvement?
The main area of concern in Fortinet FortiSandbox is its detection capabilities. I have seen some cases where the solution doesn't provide any clue of threats or malicious objects to its users. When FortiSandbox was not able to detect some malicious objects, Fortinet's competitors were able to do that. The aforementioned area can be considered for improvement.
For how long have I used the solution?
I have been using Fortinet FortiSandbox for three to four years. I am an end user of the solution.
What do I think about the stability of the solution?
It is a pretty stable solution. Stability-wise, I rate the solution an eight to nine out of ten.
What do I think about the scalability of the solution?
It is a scalable solution. From my experience, I can say that the solution's embedded functionality was enough to cover all use cases in the past involving different environments.
Scalability-wise, I rate the solution an eight out of ten.
How are customer service and support?
I have contacted Fortinet's technical support and found them to be pretty responsive and fast. I rate the technical support a nine out of ten.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
Kaspersky, FireEye, and Trend Micro were the solutions I used in the past. Kaspersky, FireEye, and Trend Micro were the solutions I used in the past. I cannot compare the solutions I have used in the past with Fortinet FortiSandbox and comment on which one was the best solution I used since the use of each solution depends on the use cases and Infrastructures. The main advantage of Fortinet FortiSandbox is that it is a part of Fortinet Security Fabric, meaning Fortinet has its own security framework. It is really easy to deploy FortiSandbox and integrate with other Fortinet solutions. Suppose your company has a Fortinet stack or technologies across your network or infrastructure for endpoint protection or network protection. I think Fortinet FortiSandbox would be the easiest choice. I cannot say that Fortinet FortiSandbox is better than Kaspersky, FireEye, or Trend Micro.
How was the initial setup?
The initial setup phase of Fortinet FortiSandbox was pretty straightforward because, in my case, I worked with the physical appliances. According to the documentation, the setup phase for virtual appliances would be exactly the same as for physical appliances. You just deploy the box and then configure it, after which you create some integrations with FortiMail and other systems, which may take less than an hour.
The solution is deployed on an on-premises model.
The solution can be deployed in an hour or even less in the easiest scenarios. In the not-so-easy scenarios, the deployment phase for the solution may take a day or two. Some of my company's customers want to integrate Fortinet FortiSandbox with FortiMail and other tools, so it involves multiple integration points. The purpose of integrating Fortinet FortiSandbox with other tools may be to simultaneously monitor network or email traffic and use some customized images for virtual machines, which does take time. There is a need to perform fine-tuning in the solution to set up detection capabilities and some mechanisms.
What about the implementation team?
I take care of the solution's installation phase in my company. For the solution's installation phase in my company, I sought the help of my colleagues from the IT department to manage the integration of Fortinet FortiSandbox with our company's email system since certain settings are to be done not only in FortiCentral but also in FortiMail and network layers. In most scenarios, you are not able to do it by yourself because you don't have proper access to a particular system.
What was our ROI?
It is a problem task to prove the ROI of any security solution. I saw several cases where FortiSandbox was able to detect some zero-day ransomware attacks at a time when there were no solutions, like FortiSandbox, making it easy for the ransomware attack to be successful. Dealing with a successful ransomware attack would cost a lot of money.
What's my experience with pricing, setup cost, and licensing?
Though I don't know the exact numbers related to pricing, the solution is priced adequately or fairly.
I rate the product's pricing a five or six on a scale of one to ten, where one is low, and ten is high.
Though the solution comes with embedded licenses, there is always a problem for all the vendors when it comes to the virtual machines from Windows. Since Fortinet provides for the additional licenses, there is no need to buy any additional licenses.
What other advice do I have?
If a company has some Fortinet equipment in its environment already, then Fortinet FortiSandbox would be the best choice for them. If a company wants to go for the deployment of some other solution for all their infrastructures, then it would be good to analyze the integration and detection capabilities.
I rate the overall solution a nine out of ten.
A stable solution requiring an easy setup phase
What is our primary use case?
I have experience installing solutions with the sandbox, along with its functionality that is multifunctional. When some files are detected with viruses, they are placed in quarantine.
What is most valuable?
The solution puts the suspected file in quarantine, then analyzes if there is a risk by scanning it. If not, they remove it from the quarantine.
What needs improvement?
Improvement is needed considering that it could be a scenario where it is limited, especially it may be during those periods of time when they are not updated. In general, maybe they are not updated to cover other risks.
For how long have I used the solution?
I have experience with Fortinet FortiSandbox. My previous company had a partnership with Fortinet. In my current company, we don't have any partnerships with Fortinet. I work as an IT consultant.
What do I think about the stability of the solution?
The solution has the highest stability because a lot of clients have adopted Fortinet solutions with different variations. They didn't give me a report of its issues or problems. A lot of clients got Fortinet solutions without reporting any network or appliance availability problems, while it was different for other vendors. When implementing and designing Fortinet, around 80 percent of the solutions in Mexico were for Fortinet solutions.
I rate the solution's stability a nine out of ten.
What do I think about the scalability of the solution?
There is a specific list of Fortinet products you can select from, and they offer a variety of user functionalities and performance levels that can cover our approach. It is easy to increase or change to another appliance that can support the growth of any of the factors. Therefore, it is easy to change it or increase it.
How are customer service and support?
I rate the solution's service and support an eight out of ten.
How would you rate customer service and support?
Positive
How was the initial setup?
The solution is not complex as they are already included in Fortinet. There is a special solution for sandboxing, but it increases the level of security. In that version, you can get more from that solution and more efficiency in using sandboxing.
The initial setup is easy because I have been working with Juniper, and they have the same interface. The graphic interface is friendly and it is intuitive. For me, it is easy to configure.
What other advice do I have?
Overall, I rate the solution an eight out of ten.
A multi-functional solution that detects files packed with viruses and quarantines them
What is our primary use case?
Fortinet FortiSandbox is a multi-functional solution. When some files have been packed with viruses, the solution detects and quarantines them.
What is most valuable?
Fortinet FortiSandbox puts suspicious files in quarantine, analyzes for virus risks, and lets them out of quarantine if it detects no risk.
What needs improvement?
The solution could be limited in some scenarios. If updated, Fortinet FortiSandbox could cover other risks.
What do I think about the stability of the solution?
Fortinet FortiSandbox is a very stable solution. In my experience, it has the most stability that I have seen because a lot of clients got the solution and didn't report any problems with the network or the availability of the appliance. Fortinet FortiSandbox is different from other vendors. Percentage-wise, 80% got Fortinet FortiSandbox solutions in Mexico.
What do I think about the scalability of the solution?
There is a specific list of Fortinet products you can select from, and they have a range of user functionalities and performance. So it's easy to increase it or to change to another appliance that can support the growth of any of the factors I mentioned. So it's easy to change it or increase it.
How are customer service and support?
Fortinet FortiSandbox could provide better customer support.
How would you rate customer service and support?
Positive
How was the initial setup?
Fortinet FortiSandbox's initial setup is easy because its graphic interface is very friendly and in 3D. I have been working with Juniper, and they have the same interface. The solution is easy to configure.
What other advice do I have?
There is a special solution in Fortinet for sandboxing that increases the level of security. In that solution, you could get more efficiency in using sandboxing.
Overall, I rate Fortinet FortiSandbox an eight out of ten.
High Level Security with FortiSandbox
Good product that detects non-signature-based malware
What is our primary use case?
It's used to detect non-signature-based malware.
What is most valuable?
The product is great. It can be deployed on the cloud or on-premises. There's a virtual machine and a hardware appliance available, so it's quite versatile.
What needs improvement?
In future releases, it would be better if it had support for Mac and Linux.
For how long have I used the solution?
We have been using this solution since its release.
What do I think about the stability of the solution?
It doesn't crash as often as other vendors' products. So, yeah, I think it's a good product.
How was the initial setup?
It was pretty basic, nothing too complex.
What's my experience with pricing, setup cost, and licensing?
It's not very expensive. I would rate it around a five or six, somewhere in the middle.
What other advice do I have?
I would advise you to connect FortiSandbox with all available Fortinet appliances, such as the Endpoint Protection Suite, FortiGate firewall, FortiMail, and FortiWeb, as well as any other Fortinet appliance they have. It's important to ensure that the deployment is connected to the Sandbox.
Overall, I would rate the solution an eight out of ten.
Genuinely good at functionality with all the features and upgrading migrating easy understandable
Review of Forti Sandbox Pros and Cons
FortiSandbox- Effective Breach Protection
Fortisanbox offered both on-premise appliances & different cloud services.
Sandbox as-a-services: Subscription services for Fortigate NGFW, Fotimail & Forticlient to support either Detection & both Detection & Prevention.
SOC Platforms: multiple form factors to add SOC teams in detection, Prevention & threat hunting. Multiple Cloud solutions like fortinet hosted cloud Subscription services (Platform-as-a services) fortisandbox with dedicated VM resource for dedicated performance & centralization of reports & Public & Private Cloud: Forti Sandbox service hosted on Azure or AWS Or on-premise VM deployment.
Dedicated hardware: On-premise FortiSandbox with guaranteed detection& and response time.
Fortinet Sandbox helps us with third-generation 3.0, sandboxing technologies power with machine learning & deep learning capabilities.