Cisco Application Centric Infrastructure (Cisco ACI) vs. Fortinet FortiGate

Overview
ProductRatingMost Used ByProduct SummaryStarting Price
Cisco ACI
Score 7.6 out of 10
N/A
Cisco Application Centric Infrastructure (ACI) is network virtualization technology.N/A
FortiGate
Score 8.2 out of 10
N/A
FortiNet FortiGate is a firewall option with high integrability. It offers a variety of deployment options and next-gen firewall capabilities, including integration with IaaS cloud platforms and public cloud environments.N/A
Pricing
Cisco Application Centric Infrastructure (Cisco ACI)Fortinet FortiGate
Editions & Modules
No answers on this topic
No answers on this topic
Offerings
Pricing Offerings
Cisco ACIFortiGate
Free Trial
NoYes
Free/Freemium Version
NoNo
Premium Consulting/Integration Services
NoNo
Entry-level Setup FeeNo setup feeNo setup fee
Additional DetailsFortiGate pricing starts at $250 for home office use, up to $300,000 for large enterprise appliances. Must contact sales team for pricing.
More Pricing Information
Community Pulse
Cisco Application Centric Infrastructure (Cisco ACI)Fortinet FortiGate
Considered Both Products
Cisco ACI
Chose Cisco ACI
Individual device management vs centralized management through Cisco Application Centric Infrastructure.
Chose Cisco ACI
I've used the Cisco Wireless LAN Controller 9800. I was quite surprised. It was very good to manage access points in a campus network setup that was good. There's a Cisco SD Access solution that I use. I forgot the name of it, to manage also the campus. It was also good. Yeah, …
Chose Cisco ACI
FortiADC, Huawei Cloud Application Performance Management and Lumina SDN Controller
Chose Cisco ACI
Cisco Application Centric Infrastructure sits well with other stack of Cisco products
Chose Cisco ACI
We have selected Cisco Application Centric Infrastructure compared to Catalyst Switches mainly because of the vPC and Port channel capability. With port channel, it loadbalance the bandwidth. While with Cisco Application Centric Infrastructure vPC, they don't have spanning …
Chose Cisco ACI
Cisco Application Centric Infrastructure is a more mature and proven product in different types of customer data centers. Currently this is the best solution for on-prem or hybrid cloud environments as other products nowhere close to Cisco as feature wise. Though most vendors …
Chose Cisco ACI
Actually we start our learning in networking career with Cisco. So it is very useful or easier to learn this product. And honestly speaking, I didn't work in any other data center solution other than Cisco. So I cannot compare what it gives us more than other popular stuff. …
Chose Cisco ACI
I have not selected Cisco Application Centric Infrastructure. I only just started working with it. But speaking from a classical networking background, the possibilities are endless.
Chose Cisco ACI
LAN, Storage network and compute were already Cisco so we moved from Nexus to Cisco Application Centric Infrastructure as natural alignment and simplified the dc operations.
Chose Cisco ACI
My management chose after a deep evaluation involving the Cisco account manager and no one else. I was actually quite impressed by Aruba solutions but not in the position to correctly compare.
Chose Cisco ACI
Moving from Nexus 7k, 5k and 2k platform to a next gen SDN, Cisco Application Centric Infrastructure suited our needs very well.
Chose Cisco ACI
Cisco ACI is more a complementary solution to separate the underlay and overlay network than VMware NSX.
Chose Cisco ACI
We use Cisco Nexus Series Switches on Cisco ACI. It helps to make new and easy connections. It will better if we can use Generative Artificial Intelligence with them.. We manage many domains in one place. We manage more than one company’s network, so Cisco ACI is really helpful.
Chose Cisco ACI
Switching from NX OS to ACI OS made configuration easier after initial migration and getting to know ACI principles. There are no L2 loops and configuration mistakes as often as it used to be. There is only one management console, and policies are easily reused. The “Submit” …
Chose Cisco ACI
The availability and support for Cisco Application Centric Infrastructure is significantly better than that of other options that we have tested/implemented. Some features, however, are significantly more expensive, which at times has driven the need to use other clunkier …
FortiGate
Chose FortiGate
FortiGate has inbuilt SDWAN features along with Next Gen Firewall. Checkpoint Firewall dont have inbult SDWAN
Chose FortiGate
Some of them are great products, but overall Fortinet gives more for less. Also it is really easy to manage for almost everyone. As you should have at least a double layer, with different manufacturers, this is a great choice
Chose FortiGate
We choose Fortinet FortiGate because it provides AI-powered security services and offers more advanced threat protection and response capabilities than Sonicwall TZ
Chose FortiGate
We migrate from Cisco ASA solution to Fortinet FortiGate solution.
The technical feactures and easy operation were the most driver of our evaluation.
Finally the high level of Cost over Benefit was very relevant in the project evaluation.
Chose FortiGate
The Fortinet products have been chosen because of our previous experience with them. The FortiClient is always used with our roaming users together theRedHAt authentications services and the IPS and Web Filtering addons are used, together the WAF, to strengthen our network …
Chose FortiGate
One of the biggest advantages over competitors that Fortinet FortiGate leverages well is its remote virtual private networks options. Licensing is included with Fortinet FortiGate units at no extra cost. We find that the telemetry is easier to compile and most importantly …
Chose FortiGate
Great subscription services and easy branch office VPN configuration. Also a big plus for 2FA via Forti Token integration.
Chose FortiGate
Money is the sinews of war but clearly Fortinet FortiGate and other product like fortimanager for extend and adminstrate remotes sites with dedicated or template of configuration is perfect, same thing with the wortianalyzer as you can find quickly any log from trafic log to …
Chose FortiGate
The FortiGate is a next generation firewall and has more features and more flexibility compared to the Sophos UTM devices and the older SonicWall devices. Technical support from Fortinet is far superior to SonicWall and Sophos.
Chose FortiGate
Better than Juniper, and Checkpoint. Not as good as the Palo Alto although it cost less so I would still make the choice to go with Fortinet
Chose FortiGate
Integrated security features multiple security in one platform, cost effective, centralized management, saclability like its models are availble from small to large enterprise for provide proper throughput according to size we can select model.documentation of all features are …
Chose FortiGate
Fortinet FortiGate is an all-round Network Security solution with advanced Next Generation Firewall features. The purpose built hardware provides unparalleled performance when compared to other similar solutions. The licensing model is very flexible and accommodates networks …
Chose FortiGate
Fortinet FortiGate is above other products in the market.
Chose FortiGate
An excellent ratio of functionality and cost of the solution, the UTM subscription and a wide partner network determined our choice of the Fortinet FortiGate. The solution met all the defined requirements, including personal data protection. Local vendors like UserGate were …
Chose FortiGate
As mentioned in the previous sections, Fortigate is best suited for our use cases of SDWAN, load balancing, SSL VPN, IPSec Tunnels, Bandwidth allocation (per IP, per user based ). Comparing with Palo Alto NGFW and Cisco ASA, the SD WAN and link load balancing based on the …
Chose FortiGate
I stick with this program because of many reasons like it is extremely robust and scalable, as well as simple to set up. Protecting an organization's data is one
Chose FortiGate
[Fortinet] FortiGate is not only cost effective but it gives the comprehensive security against the APT attacks and gives the complete traffic visibility and granular control. You can easily create the VDOMs (Virtual firewall) within a Fortigate firewall and customize the …
Chose FortiGate
Cisco ASA is [a] good product but you can't say this is providing the security from every points. Lots of features are missing in Cisco ASA but Fortinet [FortiGate] is fully loaded and all the advanced features are available for secure your company.
Chose FortiGate
We are previously using cisco ASA in our environment & always concerned regarding security because ransomware attacks are increasing day by day. After implementing Fortinet FortiGate we are getting a bucket of security features at almost the same cost with the best technical …
Chose FortiGate
We have both devices Fortinet FortiGate and ASA with firepower services, but [the] main difference is price. The price is [less for] Fortinet FortiGate and we are getting the all features. Email filtering and DLP is extra features and very advanced which we will get only in …
Chose FortiGate
Sonic wall as a firewall also gives us its main function as the Fortinet FortiGate. Sonic Wall is best suited when you want to use it to connect your cloud environment to your private on-premise network. But on reputation most vendors prefer or recommend Fortinet Fortigate if …
Chose FortiGate
Fortinet code configuration is a little bit cleaner, it has sub-modules for different components. One of the nice things about Juniper and pitfalls is that you drop out to the FreeBSD command line if there are any issues. Fortinet and Cisco do not have that capability. …
Features
Cisco Application Centric Infrastructure (Cisco ACI)Fortinet FortiGate
Firewall
Comparison of Firewall features of Product A and Product B
Cisco Application Centric Infrastructure (Cisco ACI)
-
Ratings
Fortinet FortiGate
8.9
Ratings
3% above category average
Identification Technologies00 Ratings8.60 Ratings
Visualization Tools00 Ratings8.50 Ratings
Content Inspection00 Ratings9.40 Ratings
Policy-based Controls00 Ratings9.00 Ratings
Active Directory and LDAP00 Ratings9.00 Ratings
Firewall Management Console00 Ratings8.60 Ratings
Reporting and Logging00 Ratings7.40 Ratings
VPN00 Ratings8.60 Ratings
High Availability00 Ratings9.50 Ratings
Stateful Inspection00 Ratings9.50 Ratings
Proxy Server00 Ratings10.00 Ratings
Best Alternatives
Cisco Application Centric Infrastructure (Cisco ACI)Fortinet FortiGate
Small Businesses

No answers on this topic

pfSense
pfSense
Score 9.9 out of 10
Medium-sized Companies
Cisco Catalyst Center
Cisco Catalyst Center
Score 8.6 out of 10
Quantum Firewalls and Security Gateways
Quantum Firewalls and Security Gateways
Score 9.6 out of 10
Enterprises
Cisco Catalyst Center
Cisco Catalyst Center
Score 8.6 out of 10
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Score 10.0 out of 10
All AlternativesView all alternativesView all alternatives
User Ratings
Cisco Application Centric Infrastructure (Cisco ACI)Fortinet FortiGate
Likelihood to Recommend
8.1
(0 ratings)
9.0
(0 ratings)
Likelihood to Renew
9.2
(0 ratings)
9.9
(0 ratings)
Usability
7.1
(0 ratings)
9.0
(0 ratings)
Availability
9.1
(0 ratings)
10.0
(0 ratings)
Performance
9.1
(0 ratings)
10.0
(0 ratings)
Support Rating
8.1
(0 ratings)
8.6
(0 ratings)
In-Person Training
8.2
(0 ratings)
10.0
(0 ratings)
Implementation Rating
8.0
(0 ratings)
8.0
(0 ratings)
Configurability
-
(0 ratings)
9.0
(0 ratings)
Ease of integration
-
(0 ratings)
7.0
(0 ratings)
Product Scalability
8.6
(0 ratings)
9.8
(0 ratings)
Vendor post-sale
-
(0 ratings)
10.0
(0 ratings)
Vendor pre-sale
-
(0 ratings)
9.0
(0 ratings)
User Testimonials
Cisco Application Centric Infrastructure (Cisco ACI)Fortinet FortiGate
Likelihood to Recommend
I feel that Cisco ACI is quite good at different architecture designs. You can have it as just a straight layer two network. You can have it like we have with a vast layer three network and I think just for the layer three network it has easen up the use. I think the use cases for layer three networking is better for ACI. If you just want to do the layer two, you can still use Cisco Nexus and so on and that should be almost simpler in some way.
Read full review
We reviewed many different vendors product offerings, we found the Fortinet FortiGate to best fit our needs. We upgraded from a previous firewall, the migration was a fairly easy process. We were also able to consolidate multiple firewalls into one unit using vdoms. It's been helpful to have one pain of glass, one support contract and easy to work with support. These firewalls are feature rich which is great, but the support contracts are expensive.
Read full review
Pros
  • So with the old one, we've had a secure zone, core zone, so we have special hardware specific for those zones, so security zones in our data center. This allows us to basically have the spine leaf and we could put any ports in any zone. So it allows a lot more, I'd say efficient use of equipment, being able to plug in things to whatever, and then program it to how you want it to work on.
Read full review
  • It is the most reliable NGFW that we have ever been touch with it.
  • You can easily upgrade the firewall cluster firmware without user attention!!!
  • User IDentity based feature is fantastic and intrusion prevention just works with least false-positive possible.
  • Very reachfull and intuitive GUI, just love it
Read full review
Cons
  • I think something I've just went to a session with hyper fabric and the ideas that hyper fabric has. Keep it really simple because Cisco ACI is a complex system and adopt some of the ideas behind hyper fabric, bring it to ACI that will be really beneficial. So as I said, automation is a great thing, but it's still, you need to have the background and the really complex stuff that happens behind the scenes to leverage the value of that solution. And by adding more simplicity to it, I think that will be a great thing. And also integrating with other applications in terms of the automation.
Read full review
  • When we switched to Fortinet Fortigate, it took some time getting used to and become familiar with the new interface. Being used to strictly command-line interfaces, a full GUI-based firewall was something brand new. Careful planning had to be done when creating rules to ensure we didn't miss anything. However, once we got used to the new GUI interface, going from one Fortinet product to another was simple, as Fortinet used the same interface for all of its devices.
Read full review
Likelihood to Renew
Cisco ACI is doing exactly what was intended for it to do, that is support our next generation data centre, improve security, and increase resiliency. Migrating to another platform would be a waste of time, resource and energy, which could be better spent migrating more legacy applications into the Cisco ACI fabric.
Read full review
Fortinet's products have kept improving with new software releases and they continue to deliver great value. Their support is also very good. I believe that as a small enterprise, their products have given us competitive advantage delivering features and functionality that enable us to innovate and do things better. They also continue to be a leader in the markets they serve.
Read full review
Usability
Cisco ACI has changed the traditional data center model into a new era of automation and agility. The product was considerably easy to deploy met all the expectations. In terms of usability, ACI provides a unified interface for managing the whole infrastructure in one place which is the main benefit for users (admins)
Read full review
The user interface shared among many simultaneous users is very easy to get around. With shared favorites among users, most tasks are easily bookmarked and can quickly be found and edited. Their strategy for web filter integration is easy to understand and manage as well. With some general direction, setup and maintenance were easy to do and easy to teach others in the organization to do as well.
Read full review
Reliability and Availability
It allways works. If there are problems with links going down by accident (say someone accidentally unpatches something they shouldn't have), we rarely miss more then one packet over the link. Also, using VPCs we are able to upgrade the software on the switches without the attached EPs ever noticing.
Read full review
We had didn't any hardware failures at our two main office locations and upgraded our units last year after using them for about 5-6 years
Read full review
Performance
I do not give it 10 because the platform evolves more and more every day in the data traffic of the datacenter. But the implementations that they carry out for different clients of the platform are very happy with the result of the same over time. Another point that you notice about the platform, despite its good performance, is the low use of energy used by this 24x7 on, it is a good fact to take into account for our environment.
Read full review
Good performance and really good integration. We have integration with Microsoft AD.
Read full review
Support Rating
Cisco provides users and partners with a multitude of data for you to consume. I think that the stuff in the public domain goes a long way to assisting you find any answers you may need, plus insights and information from areas such as DevNet provide you with access to more than just the traditional release notes and the like
Read full review
We live in Turkey. Fortinet's Turkey office [dealt] constantly with us in our every problem or our experience. In addition, global support teams also supported every ticket we opened in every problem we encountered. They support innovative approaches and evaluate and offer solutions. In this context, they were very supportive of the problems we encountered in previous versions.
Read full review
In-Person Training
The Cisco ACI training provided by Cisco was in depth, covered all of our requirements, and allowed us to implement and maintain the platform without issues.
Read full review
I received it a couple years afters use it and it was just to confirm my knowledge about the tool.
Read full review
Implementation Rating
Being involved in the implmentation gives you more overview on how things are supposed to be working and communicating, you can easily performce troubleshooting and understanding the troubleshooting scenario
Read full review
Make sure that you have the most current version of FortiOS. Make sure all Fortigates are on the same version
Read full review
Alternatives Considered
I've used the Cisco Wireless LAN Controller 9800. I was quite surprised. It was very good to manage access points in a campus network setup that was good. There's a Cisco SD Access solution that I use. I forgot the name of it, to manage also the campus. It was also good. Yeah, I've used quite some Cisco product, but the one I can remember was the Cisco Wireless LAN Controller 9800.
Read full review
One of the biggest advantages over competitors that Fortinet FortiGate leverages well is its remote virtual private networks options. Licensing is included with Fortinet FortiGate units at no extra cost. We find that the telemetry is easier to compile and most importantly communicate with non technical members of staff. The Fortinet FortiGate unit is also extremely stable for long periods of time without showing signs of needing a reboot.
Read full review
Scalability
Cisco ACI scales well and is suited in scenarios such as multi-cloud or large data centre implementations. It is not suited to smaller deployments as the efficiencies that it provides are not fully realised. It is well suited in large environments that contain both virtual and bare-metal machines allowing a great deal of flexibility. It is also perfect to support multi-tenancy platforms.
Read full review
My environments are pretty small (less than 100 users per location) so no issues here.
Read full review
Return on Investment
  • We've definitely spent quite a bit of time relearning how to do things in ACI, but I think the investment has been well worth while considering that we can now deploy tenants and leaves from the ground up in a matter of seconds.
  • We can if we choose to upgrade an entire datacenters worth of switches in a single night. (We've chosen to break it up for availability requirements, but if you didn't require 99.999% uptime like us you may be able to do it)
Read full review
  • SD-WAN : Can't stress it further that we are very happy with this functionality and outcomes in the org. We have multiple WAN and MPLS links and traffic switching becomes an important in order to utilize the best performing line.
  • QoS : We use QoS for almost all internet traffic, be it Web browsing by users, IOT segment, Application based traffic policy and VIP and normal user based bandwidth allocation.
  • SSL and IPSec VPN, both features are fully used to it absolute capacity. IPSec tunnels with multiple sister companies across globe.
Read full review
ScreenShots