NNetify

Secure SD-WAN / SASE technology vendor

Fortinet

Official sources position Fortinet Secure SD-WAN as converged networking/security and FortiSASE as cloud-delivered SSE/SASE.


Netify profile

Fortinet in depth

Platform and architecture

Fortinet builds SD-WAN into FortiGate, so every firewall is also an SD-WAN edge. Path selection, application steering and overlay VPN run on FortiOS with orchestration through FortiManager and analytics through FortiAnalyzer. Custom ASICs give strong price-to-performance, particularly for encrypted traffic at branch scale. Cloud on-ramps cover AWS, Azure, Google Cloud and Oracle Cloud, and edge form factors run from desktop units to chassis.

Security and SASE capability

Security is the heritage: NGFW, IPS, web filtering, sandboxing and SSL inspection are native on the same appliance, backed by FortiGuard threat intelligence. FortiSASE extends the stack to cloud-delivered SWG, ZTNA, CASB and DLP from Fortinet PoPs, with universal ZTNA spanning on-premises and cloud enforcement. For buyers wanting one OS across branch firewalling and SASE, the convergence is among the tightest available.

Service, support and channel

Fortinet is channel-led with deep UK distribution and MSP support, and is the platform behind many managed offers, including BT Managed SASE on Fortinet. FortiCare provides 24x7 support tiers with professional services for migration. DIY, co-managed and fully managed routes are all realistic, and multi-tenant tooling makes it a favourite among MSPs.

Commercials and the Netify verdict

Commercials bundle hardware with FortiCare support and FortiGuard security subscriptions; FortiSASE adds per-user licensing. Pricing is quote based but consistently aggressive against like-for-like NGFW plus SD-WAN stacks. The Netify verdict: shortlist Fortinet when security and WAN budgets are one budget, when branch performance per pound matters, or when an existing FortiGate estate makes convergence the path of least resistance.

Evaluate Fortinet properly

An AI can summarise Fortinet. It cannot gather structured, evidence-backed responses from Fortinet and its closest competitors. Describe your requirement once at netify.co.uk and Fortinet arrives pinned for an evidence-graded evaluation: the market takes position around your words, one signature publishes an anonymous notice free, and matched vendors respond side by side with pricing private to you.

AI assistants can score Fortinet against a requirements list directly with the score_vendor_fit tool on the Netify connector, and build the same position with workspace_ingest.

Questions

Fortinet: common buyer questions

Is Fortinet SD-WAN really free with the firewall?

SD-WAN features ship in FortiOS on every FortiGate, so there is no separate SD-WAN licence. You still pay for FortiCare support and FortiGuard security bundles, and FortiSASE per-user licences if you add the cloud security layer.

How strong is FortiSASE against cloud-native rivals?

FortiSASE delivers ZTNA, SWG, CASB and DLP from Fortinet PoPs with one policy language across appliance and cloud. Cloud-native rivals carry larger PoP fabrics; Fortinet counters with FortiGate integration and total cost. Test from your user geographies before deciding.

Can I get Fortinet as a managed service in the UK?

Yes. BT, Vodafone and many UK MSPs offer managed Fortinet SD-WAN and SASE, including co-managed models where your team keeps policy visibility while the provider runs lifecycle and incident response.

Key differentiators

  • Native convergence of networking and security on a single operating system (FortiOS) across FortiGate edge, FortiManager and FortiSASE.
  • Strong story for buyers who want secure SD-WAN and SASE delivered from one vendor platform rather than assembled from partner integrations.
  • Wide appliance range covering everything from small branch to large data centre, with public hardware pricing visible through resellers.

Best fit for

  • Security-first buyers who want SD-WAN and SASE under a single policy and log domain.
  • Mid-market and enterprise organisations that already run FortiGate firewalls and want to extend into SD-WAN and cloud-delivered security.
  • Buyers comparing single-vendor SASE platforms (alongside Cato, Palo Alto, Cisco) for converged operations.

Watch-outs

  • Like Cisco, managed delivery is via partners rather than Fortinet directly; underlay and field operations are not owned by the vendor.
  • Buyers wanting a private global backbone will need to validate FortiSASE PoP coverage against their geographic footprint.
  • Best-of-breed buyers may prefer integrating FortiGate SD-WAN with a separate SSE platform (Zscaler, Netskope) rather than adopting full FortiSASE.

40 features, 6 categories

Capability matrix

Each capability is graded against public source evidence. Hover any status grade for a definition. Where evidence is limited, the grade reflects that uncertainty rather than assuming the capability is present.

Service delivery and operating model

#CapabilityStatusDefinition
F01Fully managed serviceYesProvider designs, deploys, monitors, changes, supports and reports on the service.
F02DIY / self-managed modelYesCustomer operates SD-WAN controller, policies, updates and incident response.
F03Co-managed serviceUnknownProvider runs platform/support while customer retains selected policy or change rights.
F04Multi-tenant MSP / white-label supportPartialTenant isolation, delegated administration, branded portals, templates and service-provider scale.
F05Professional services and migration supportYesDiscovery, design, pilot, staging, migration runbooks, rollback and training.
F06Last-mile circuit managementPartner / integratedSourcing, monitoring and support for broadband, DIA, LTE/5G, MPLS and cross-connects.
F07Lifecycle managementYesHardware replacement, firmware upgrades, patching, renewals and EoL planning.
F08Flexible commercial modelYesPer-site, per-bandwidth, per-user, per-device, consumption, NaaS or bundled pricing.

Network architecture and transport

#CapabilityStatusDefinition
F09Encrypted overlay fabricYesSecure tunnels across broadband, DIA, MPLS, LTE/5G, satellite or private WAN.
F10Dynamic path selectionYesReal-time routing based on latency, jitter, packet loss, brownouts, MOS and policy.
F11Active-active link utilisationYesUse multiple links concurrently rather than passive backup only.
F12Application-aware routingYesIdentification and routing for SaaS, UCaaS, ERP and custom applications.
F13QoS and traffic shapingYesPer-application and per-class prioritisation, reservation and policing.
F14Packet loss remediationYesFEC, packet duplication, jitter buffering, TCP optimisation and WAN optimisation.
F15Local internet breakoutYesSecure direct internet access from branch sites.
F16MPLS coexistence and migrationYesHybrid MPLS/internet/cellular during transition.
F17Cellular and 5G supportYesIntegrated/external modem, SIM management, signal monitoring and failover.
F18Cloud on-rampYesAutomated/simplified connectivity to AWS, Azure, Google Cloud, Oracle, Equinix, Megaport and SaaS.

Gateway, PoP and backbone design

#CapabilityStatusDefinition
F19Public cloud gatewaysYesVendor-operated gateways/PoPs for SaaS optimisation, remote access or security enforcement.
F20Private PoPs / dedicated PoPsUnknownCustomer-hosted, dedicated or sovereign PoP options.
F21Private global backbonePartialVendor-owned or controlled backbone between PoPs.
F22Regional breakout and data residencyYesPin traffic to countries, regions or approved inspection locations.
F23Multi-cloud transit fabricYesBranch-to-cloud, cloud-to-cloud and user-to-cloud connectivity under common policy.
F24Flexible edge form factorsYesPhysical, virtual, cloud marketplace, container or uCPE.
F25High availability designYesDual appliances, dual circuits, dual power, HA clustering and gateway redundancy.
F26SLA-backed service fabricYesSLA for uptime, response, change handling and possibly latency/jitter/loss.

Security and SASE capability

#CapabilityStatusDefinition
F27Integrated next-generation firewallYesStateful firewall, app control, IPS/IDS, malware inspection and URL filtering.
F28Full SASE platformYesSD-WAN plus SWG, CASB, ZTNA, FWaaS, DLP, RBI, DNS security and threat prevention.
F29SSE ecosystem integrationYesInteroperation with Zscaler, Netskope, Palo Alto Prisma Access, Cisco Secure Access, Cloudflare etc.
F30Zero Trust Network AccessYesIdentity and posture-based access to private applications.
F31Secure web gatewayYesURL filtering, SSL inspection, malware scanning and acceptable-use controls.
F32CASB capabilityYesSaaS discovery, sanctioned/unsanctioned app control and SaaS policy enforcement.
F33Data loss preventionYesData classification, inspection, blocking, alerting and exception workflow.
F34Remote user accessYesClient or clientless access for remote workers, contractors and mobile users.
F35SOC/SIEM/SOAR integrationYesSyslog, APIs, event export, threat intelligence and workflow integration.

Operations, assurance and automation

#CapabilityStatusDefinition
F36Centralised orchestrationYesTemplates, intent-based policy, zero-touch provisioning and configuration compliance.
F37Customer portal and RBACYesReal-time status, role-based access, reporting, tickets and change requests.
F38Observability and digital experience monitoringYesApp experience, user experience, device health, SaaS telemetry and path analytics.
F39APIs and automationYesREST APIs, Terraform, webhooks, event streaming and ITSM integration.
F40Managed service assurancePartner / integrated24/7 NOC/SOC, proactive monitoring, incident ownership, RCA, service reviews and change governance.

Commercial

Cost model and pricing visibility

Public pricing visibility

Quote-based. No complete public enterprise price was found in reviewed sources.

Cost model

Quote-based appliances/subscriptions/support; public reseller pricing exists for hardware but enterprise managed/SASE bundles require quote.


Evidence

Sources and exclusions

39 facts about Fortinet were re-verified on 2026-07-29 against named sources, each carrying a sentence quoted from the source and confirmed present on that page. 36 sources were used. 6 more were read and rejected, and are listed below with the reason.

Sourced facts for Fortinet, each with its grade, the source it rests on and the sentence quoted from that source.
FactFindingEvidenceQuoted from the source
Fully managed serviceYes[14] [15]"Ensure FortiGates, FortiAPs, FortiSwitches and FortiExtenders are quickly and correctly deployed, configured to best practices"
Co-managed serviceNot found[14] [10]Not found in public sources reviewed. I read the Managed FortiGate Service datasheet and solution page, the FortiSASE Unified SASE for MSSP multitenancy guide and the G-Cloud service definition. None of them states a shared responsibility or co-management split in which the customer retains named policy and change rights. The MSSP guide describes Read-Only and Read-Write permission profiles, but that governs MSSP staff scope rather than a customer or provider co-management contract, so it is not sufficient.
Multi-tenant MSP / white-label supportPartial[3] [12] [10]"The portal offers centralized multi-tenant management and configuration capabilities, enabling MSSPs to efficiently deploy and manage SASE services across their client base."
Professional services and migration supportYes[9] [11]"A series of workshops, along with Q&A sessions, will be scheduled to provide the education necessary to implement the solution."
Lifecycle managementYes[14] [13]"Let MFGS experts handle your firmware upgrades to maximize effectiveness and minimize risk"
Cellular and 5G supportYes[7] [1]"FortiExtender cellular gateways and routers provide secure 5G/LTE connectivity for any deployment."
Public cloud gatewaysYes[2] [3] [5]"Our global SASE network spans 170+ PoPs, providing low-latency, high-performance connectivity."
Private PoPs / dedicated PoPsNot found[16] [2]Not found in public sources reviewed. A FortiSASE Sovereign administration guide and architecture guide exist in Fortinet's document library and their titles imply dedicated or sovereign deployment, but the PDFs returned HTTP 403 in this session so I could not read them and will not grade from a search result title. A "Dedicated public IP addresses" documentation page was also surfaced but not read. The FortiSASE product page reviewed describes only the shared multi-tenant PoP network. This should be re-checked once the Sovereign guides are retrievable.
Private global backbonePartial[2] [5]"Part of this network is owned by Fortinet, ensuring greater control, reliability, and security."
SLA-backed service fabricYes[3] [6]"Fortinet delivers 99.999% SLA with latency guarantee for security inspection, which is possible because of global reach with hundreds of security PoPs."
Integrated next-generation firewallYes[1] [3]"Secure SD-WAN, SSE, zero trust, wireless controller, LTE/5G gateway, and FortiGuard AI-Powered Security Services have the same OS, policy engine, and management plane."
Data loss preventionYes[2] [3]"The FortiSASE DLP feature supports advanced data matching techniques, including pattern recognition and contextual analysis, to effectively prevent accidental data breaches."
delivery modelboth[1] [14] [6] [12]"FortiSASE cloud platform is managed by Fortinet on a twenty-four (24) hours a day by seven (7) days a week basis and is monitored for hardware availability, service capacity, and network resource utilization."
underlay ownershipNot found[2] [5] [12]Not found in public sources reviewed. I checked the SD-WAN product page, the FortiSASE product page, the FortiExtender page, the service provider managed SD-WAN page and the G-Cloud service definition; none states whether Fortinet owns physical circuits or core routing. The available signals point in opposite directions and neither is decisive: the FortiSASE page claims "Part of this network is owned by Fortinet, ensuring greater control, reliability, and security." while the Google Cloud press release shows part of the footprint riding a hyperscaler's network edge. Both statements concern the PoP and cloud network rather than access circuits. My working expectation is that Fortinet sells software and appliances over customer-procured or partner-procured transport, which would make this customer_supplied_only, but I found no quote establishing that and will not grade from prior knowledge.
sse layer ownershipnative[1] [3] [2]"Secure SD-WAN, SSE, zero trust, wireless controller, LTE/5G gateway, and FortiGuard AI-Powered Security Services have the same OS, policy engine, and management plane."
regulatory documentationdocumented[8]"ISO/IEC 27001"
pop count170+[2] [3]"Our global SASE network spans 170+ PoPs, providing low-latency, high-performance connectivity."
sla availability pct99.999[3] [6] [2]"Fortinet delivers 99.999% SLA with latency guarantee for security inspection, which is possible because of global reach with hundreds of security PoPs."
sectors.healthcareYes[22] [28]"The healthcare industry is undergoing digital transformation with the adoption of Internet-of-Medical-Things (IoMT) devices and digital technology, expanding the attack surface."
sectors.financial servicesYes[23] [28]"The financial services sector is a high-value target for cyberattacks and highly regulated by jurisdictions around the world."
sectors.retail ecommerceYes[24] [21]"With the Fortinet Secure SD-WAN solution in place, those stores stayed online. In fact, they were not even aware of the outage."
sectors.manufacturingYes[25] [28]"Our extended IT infrastructure is absolutely critical to everything we do, so it's invaluable to have the seamless protection that Fortinet provides across our physical and cloud-based domains."
sectors.energy utilitiesYes[39] [28]"Fortinet solutions are user friendly and easy to configure and deploy."
sectors.government public sectorYes[29] [21]"Fortinet solutions meet government compliance requirements such as FISMA, NIST, and CJIS"
sectors.educationYes[42] [21]"We did not experience any difference at all from the pre-sale to post-sale support, which speaks volumes about Fortinet's commitment to its customers."
sectors.transport logisticsYes[30] [38]"With all those benefits and advantages over the previous managed WAN, perhaps the most astonishing result is the significant reduction in overall cost."
sectors.professional servicesNot found[40] [35]"Business Services"
sectors.hospitality leisureYes[37] [28]"We have reservations coming in through the internet, through third party travel agencies, as well as local traffic."
regions.uk irelandYes[33]"London (United Kingdom)"
regions.europeYes[33]"Paris (France)"
regions.north americaYes[33]"Ashburn, Virginia (United States)"
regions.asia pacificYes[33]"Sydney (Australia)"
regions.middle east africaYes[33]"Dubai (United Arab Emirates)"
regions.latin americaYes[33]"Sao Paulo (Brazil)"
regions.china mainlandNot found[33] [20]"Hong Kong"
organisation fit.large global enterpriseYes[21] [28]"Fortinet secures the largest enterprise, service provider, and government organizations around the world."
organisation fit.mid marketYes[32] [20]"Small and midsize businesses (SMBs) and managed security service providers (MSSPs) supporting SMB customers need a simple management tool to deploy, manage, and operate network security."
organisation fit.small businessYes[32]"Fortinet delivers affordable, enterprise-grade security and networking in one easy-to-manage solution, tailored to the needs of SMBs."
published pricingdocumented[20] [32] [36]"Easily transition to FortiSASE security service edge (SSE) with simplified licensing, also delivering lower costs; about one-third of competitor offerings."

Sources used

  1. [1] Tier 1. Secure SD-WAN | Fortinet Undated. Read 2026-07-29. Supplier's own primary product page. Used for the converged OS and management plane claim underpinning NGFW and SSE ownership grades. Undated, so treated as current at time of fetch.
  2. [2] Tier 1. FortiSASE | Fortinet Undated. Read 2026-07-29. Supplier's own product page. Quotes re-verified with a second targeted fetch confirming the exact strings 170+ PoPs, 99.999% uptime and the DLP sentence are literally present. Note that the PoP, ownership and SLA statements sit in an FAQ block, and the SLA wording is hedged with 'typically'.
  3. [3] Tier 1. FortiSASE Datasheet (PDF) Undated. Read 2026-07-29. Supplier datasheet. Strongest single source for the SLA percentage, DLP, FWaaS NGFW capability and the MSSP Portal. Quotes re-verified with a second targeted fetch. Undated version, so the PoP count phrasing may lag the website.
  4. [4] Tier 1. PoPs | FortiSASE | Fortinet Document Library Undated. Read 2026-07-29. Supplier documentation. Fetched but returned only navigation and breadcrumb markup, no body content, so no grade rests on it. Listed for completeness of what was attempted.
  5. [5] Tier 1. Fortinet Expands Its Global SASE Points-of-Presence with Google Cloud Published 2023. Read 2026-07-29. Supplier press release, dated to 2023 by its URL path. Used only as a corroborating caveat on PoP and backbone ownership. Contains no PoP count. Now several years old so the footprint has likely changed.
  6. [6] Tier 1. Service Description - FortiSASE (G-Cloud 14 service definition, PDF) Published 2024-04-29. Read 2026-07-29. Vendor-authored document lodged on the UK Crown Commercial Service Digital Marketplace, so it is supplier material carrying a filing date and a public procurement audit trail. The most contractually precise source found for availability tiers and for Fortinet's 24x7 operation of the platform.
  7. [7] Tier 1. FortiExtender 5G/LTE Wireless WAN | Fortinet Undated. Read 2026-07-29. Supplier product page for Fortinet's own cellular gateway line. Directly evidences dual SIM, failover and primary cellular transport. Undated.
  8. [8] Tier 1. Product Certifications | Fortinet Undated. Read 2026-07-29. Supplier certification index. Names frameworks explicitly, which is what the regulatory_documentation definition requires. Weakness: it is a list page, so the named frameworks are not tied on that page to a specific product scope or to a downloadable attestation.
  9. [9] Tier 1. Fortinet Professional Services Undated. Read 2026-07-29. Supplier services page. Names discrete design, migration, upgrade and training offerings. The fetch returned a mix of quoted and paraphrased text, so I anchored the professional services grade on a cleanly quoted sentence from source 11 instead.
  10. [10] Tier 1. Multitenancy | Unified SASE for MSSP Architecture Guide | Fortinet Document Library Undated. Read 2026-07-29. Supplier technical documentation, version 7.4.0. Valuable because it is more candid than the marketing pages and directly qualifies the multi-tenancy claim. Version-pinned, so may not describe the current release.
  11. [11] Tier 1. FortiSASE Advanced Deployment Service - Service Overview (PDF) Undated. Read 2026-07-29. Supplier service brief. Used for the professional services grade and for the time-boxed Service Relationship Manager detail that limits the assurance grade. Undated.
  12. [12] Tier 1. Managed SD-WAN for Service Providers | Fortinet Undated. Read 2026-07-29. Supplier solutions page. Establishes that managed Fortinet SD-WAN is largely delivered by named carrier and MSSP partners rather than by Fortinet, which informs the delivery_model judgement. Marketing register, and its multi-tenancy claim conflicts with source 10.
  13. [13] Tier 1. FortiCare Services | Fortinet Support Undated. Read 2026-07-29. Supplier support page. Used for RMA and lifecycle services wording. The fetch flagged that it found no verbatim text on firmware upgrades, renewals or NOC/SOC monitoring, so lifecycle evidence leans on source 14.
  14. [14] Tier 1. Managed FortiGate Service Data Sheet (PDF) Undated. Read 2026-07-29. Supplier datasheet and the central source for the managed service, lifecycle and assurance grades. The fetch explicitly noted the document does not address co-management or formal service reviews, which is why both are graded down. Undated.
  15. [15] Tier 1. Managed FortiGate Service (MFGS) | Fortinet Undated. Read 2026-07-29. Supplier solutions page corroborating source 14 on NOC scope and incident response. The fetch returned several short fragments rather than full sentences, so I used only the clearly quoted strings.
  16. [20] Tier 1. Fortinet Secure SD-WAN product page Undated. Read 2026-07-29. Supplier's own product page. Primary source for product positioning and cost claims. Marketing language, no independent verification.
  17. [21] Tier 1. Fortinet Global Customers and Case Studies Undated. Read 2026-07-29. Supplier's own customer index. Lists named customers and an industry filter taxonomy. Self-selected sample.
  18. [22] Tier 1. Healthcare Cybersecurity Solutions | Fortinet Undated. Read 2026-07-29. Supplier's dedicated healthcare industry page carrying named healthcare customers. Vendor-authored.
  19. [23] Tier 1. Financial Services Cybersecurity | Fortinet Undated. Read 2026-07-29. Supplier's dedicated financial services industry page with customer testimonials. Vendor-authored.
  20. [24] Tier 1. Retail Cybersecurity Solutions | Fortinet Undated. Read 2026-07-29. Supplier's dedicated retail industry page with named retail customers quoted on Secure SD-WAN specifically. Vendor-authored.
  21. [25] Tier 1. Manufacturing Cybersecurity | Fortinet Undated. Read 2026-07-29. Supplier's dedicated manufacturing industry page with named manufacturer case studies. Vendor-authored.
  22. [26] Tier 1. Education Cybersecurity Solutions | Fortinet Undated. Read 2026-07-29. Supplier's education overview page. General sector language and compliance references only, no named institutions on this page.
  23. [28] Tier 1. Secure SD-WAN Customer Success Stories (ebook PDF) Undated. Read 2026-07-29. Supplier's own SD-WAN case study ebook. Strongest SD-WAN-specific sector and scale evidence, though most customers are anonymised by descriptor rather than named.
  24. [29] Tier 1. State and Local Government Cybersecurity Solutions | Fortinet Undated. Read 2026-07-29. Supplier's dedicated public sector page naming government customers and compliance frameworks. Vendor-authored.
  25. [30] Tier 1. Fliway case study | Fortinet (UK site) Undated. Read 2026-07-29. Supplier's named case study for a New Zealand logistics provider deploying Fortinet Secure SD-WAN. Vendor-authored, customer named and quoted.
  26. [31] Tier 1. Fortinet Unified SASE product page Undated. Read 2026-07-29. Supplier's own SASE page. Source of aggregate PoP count claim. Aggregate figure, not a per-region breakdown.
  27. [32] Tier 1. Small and Midsize Business Security Solutions | Fortinet Undated. Read 2026-07-29. Supplier's dedicated SMB solutions page. Direct evidence of explicit small and mid-market targeting.
  28. [33] Tier 1. Global data centers | FortiSASE Reference Guide | Fortinet Document Library Undated. Read 2026-07-29. Supplier's technical documentation listing every FortiSASE PoP by city and country. Highest-quality regional delivery evidence available: operational detail rather than marketing. Verified exact string forms on re-fetch.
  29. [35] Tier 1. Cybersecurity for Business and Industry | Fortinet industries index Undated. Read 2026-07-29. Supplier's index of all dedicated industry pages. Used to establish which sectors have dedicated pages and which do not.
  30. [36] Tier 2. AWS Marketplace: Fortinet FortiGate VM Next-Generation Firewall Undated. Read 2026-07-29. Independently operated marketplace with listed transactable pricing. Accountable record of published rates, but covers the virtual firewall SKU rather than a full SD-WAN or SASE subscription, so it is indicative only.
  31. [37] Tier 1. Hospitality Cybersecurity Solutions | Fortinet Undated. Read 2026-07-29. Supplier's dedicated hospitality page with a named hotel group customer quoted. Vendor-authored.
  32. [38] Tier 1. Transportation Cybersecurity | Fortinet Undated. Read 2026-07-29. Supplier's dedicated transportation page. Sector solution content but no named customers on the page itself.
  33. [39] Tier 1. Power and Utilities Cybersecurity | Fortinet Undated. Read 2026-07-29. Supplier's dedicated utilities page with multiple named utility customers and a NERC CIP resource. Vendor-authored.
  34. [40] Tier 1. Fortinet customers filtered by Business Services Undated. Read 2026-07-29. Supplier's customer index with sector filter applied. Filter label captured but no named professional services customer resolved from the returned content.
  35. [41] Tier 3. Fortinet Recognized as a Leader in the 2025 Gartner Magic Quadrant for SASE Platforms (GlobeNewswire) Published 2025-07-15. Read 2026-07-29. Vendor-issued press release distributed on a dated third-party wire. Corroboration only: the wire hosts but does not verify the claims. Note its PoP figure (over 160) disagrees with the 170+ on source 12.
  36. [42] Tier 1. Higher Education Cybersecurity | Fortinet Undated. Read 2026-07-29. Supplier's dedicated higher education page with five named and quoted universities and colleges across the US, Netherlands and Mexico. Vendor-authored.

Sources found and not used

These were read and rejected as evidence. They are listed so the record can be audited rather than taken on trust, and because what a comparison refuses to rely on says as much as what it cites.

  1. [16] FortiSASE-Sovereign 25.2.a Architecture Guide (PDF). https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/4dffe738-0c26-11f0-b13a-ca4255feedd9/FortiSASE-Sovereign-25.2.a-Architecture_Guide.pdf Not used as evidence. This is supplier material and would be tier 1 if readable, but the PDF returned HTTP 403 in this session and I never saw its contents. Grading f20 from the filename alone would breach the read-it-or-you-do-not-know-it rule. Recorded so a re-run can retrieve it, since it is the single most likely source to move f20 off unknown.
  2. [17] Fortinet Firewall Service - Service Level Agreement (SLA) | AireSpring. https://airespring.com/fortinet-firewall-service-service-level-agreement-sla/ Not used as evidence. Reseller and MSP page describing AireSpring's own SLA wrapped around Fortinet kit, not Fortinet's SLA. Undated and would misattribute a partner commitment to the vendor.
  3. [18] Fortinet FORTIGATE-601F Managed FortiGate Service listing | Corporate Armor. https://www.corporatearmor.com/product/fortinet-fortigate-601f-managed-fortigate-service-available-24x7-with-noc-expe-ftn-fc100601f6600212/ Not used as evidence. Reseller SKU listing whose product title paraphrases 24x7 NOC coverage. Undated e-commerce copy with no accountable author; the same claim is available first-hand from sources 14 and 15.
  4. [19] Managed FortiGate Service (support services path). https://www.fortinet.com/support/support-services/managed-fortigate-service Not used as evidence. Returned HTTP 404, so there was no content to read. The live equivalent is source 15.
  5. [27] Fortinet federal government industry page (attempted). https://www.fortinet.com/solutions/industries/federal-government Not used as evidence: URL returned HTTP 404. Correct path is /solutions/industries/government/federal. Superseded by source 10.
  6. [34] Fortinet energy-utilities industry page (attempted). https://www.fortinet.com/solutions/industries/energy-utilities Not used as evidence: URL returned HTTP 404. Correct path is /solutions/industries/power-utilities. Superseded by source 20.

Claims that disagree

Where two sources conflict, both are recorded rather than one being chosen quietly. Confirm these directly with the vendor.

  • pop count. [2] Our global SASE network spans 170+ PoPs, providing low-latency, high-performance connectivity. [3] Fortinet delivers 99.999% SLA with latency guarantee for security inspection, which is possible because of global reach with hundreds of security PoPs.
  • sla availability pct. [3] Fortinet delivers 99.999% SLA with latency guarantee for security inspection, which is possible because of global reach with hundreds of security PoPs. [6] Individual Security POPs 99.99%
  • f04 multi tenant msp white label support. [12] Fortinet solutions are multi-tenant from the ground up, enabling MSPs and MSSPs to isolate and manage multiple customer networks from a single administrative console. [10] The FortiSASE instance is not multitenant by nature, since every customer gets an isolated FortiSASE environment.
  • f19 public cloud gateways. [2] Part of this network is owned by Fortinet, ensuring greater control, reliability, and security. [5] The partnership allows Fortinet to leverage Google Cloud's global network edge locations closest to their regions of presence

Verification notes

Re-verified 2026-07-29 against named primary sources. Every graded fact carries a source, a tier and a verbatim quote confirmed present on the cited page by an independent check. Industry, region, organisation-size and pricing evidence was sourced on the same basis. Facts that could not be sourced are published as unknown with the reason. The value_tier field is a Netify assessment of relative cost position, not a supplier claim: most of this market publishes no price. Sources found and rejected are listed at tier 4.

Where next

Continue your Fortinet evaluation

AI advisor · Continue from this page · Fortinet · evaluated 29 Jul 2026

Describe what you need

Your first sentence is drafted from this page. Edit it, or replace it with your own words: sites, regions, what must not go down.

Drafted from this page. Everything you type stays yours to edit before anything is published.

Fortinet arrives pinned; the evaluated market takes position around your words. Nothing runs until you go, and nothing publishes without your signature.

Opens your procurement on Netify

Working with an assistant? Connect netify.co.uk/sase/api/mcp/ and use workspace_ingest with this page as context.

Ranked shortlists featuring Fortinet