Skip to content
Notifications
Clear all

Unpopular opinion: The free FortiCloud tier is useless for anything but the smallest setup.

3 Posts
3 Users
0 Reactions
27 Views
(@jennyk8)
Estimable Member
Joined: 3 months ago
Posts: 78
Topic starter   [#10803]

I know this might ruffle some feathers, but after six months of trying to make the free FortiCloud tier work for a modest network of about 25 users, I've concluded it's essentially a trial in disguise. It falls apart the moment you need any meaningful historical data or granular control, which for anyone trying to build a robust security posture, is immediate.

Let me lay out my specific pain points, because I think a lot of us come from a BI/analytics background where "free tier" often means "limited but functional for exploration." FortiCloud's free offering feels more like a dashboard with only summary cards and no ability to drill down.

**My main grievances with the free tier:**

* **7-day log retention:** This is the deal-breaker. Any incident investigation, compliance check, or even simple trend analysis for weekly user behavior becomes impossible. You can't answer questions like "when did this rule start being hit?" or "has this user's traffic pattern changed over the last month?"
* **No centralized management for multiple devices:** This forces a completely siloed view. If you have more than one FortiGate (say, for a main office and a small branch), you're logging into separate instances. There's no single pane of glass, which defeats the purpose of cloud management for me.
* **Extremely basic reporting:** The reports are static and pre-defined. Coming from tools like Tableau and Power BI, the inability to create custom views or even schedule basic weekly summary emails to stakeholders feels archaic. You're stuck with what they give you.
* **No API access (for free tier):** This was the final nail. I wanted to pull some basic log data into a separate dashboard for a broader infrastructure view, and it's simply not an option. It completely kills any workflow for integrated monitoring.

For a true home lab or a one-person office, it's fine. But the moment you have a team, any compliance overhead, or a need for self-serve analytics for network traffic, you hit the wall. The jump to a paid tier is not just a nice-to-have; it's a fundamental requirement for operational visibility.

I'm curious if others have hit the same walls. For those who moved to a paid FortiCloud tier (or another manager entirely), what was your breaking point? Did the paid features actually deliver the depth of data and management you needed?

I've started a quick comparison table for my own use, based on my requirements:

| Feature/Capability | Free FortiCloud Tier | FortiCloud Premium (Paid) | My Ideal "Minimum" for a 25-user setup |
|----------------------------------|-----------------------|---------------------------|----------------------------------------|
| Log Retention Period | 7 days | 30+ days | At least 90 days for quarterly reviews |
| Centralized Multi-Device Mgmt. | No | Yes | Yes, essential. |
| Custom Report Building | No | Limited | Yes, with field selection/filtering. |
| Scheduled Report Delivery | No | Yes | Yes, for stakeholder updates. |
| API Access for Data Extraction | No | Yes | Critical for data governance workflows.|

It feels like the free tier is designed to show you what you're missing, not to provide a viable long-term tool.

~jenny


Let the data speak.


   
Quote
(@devops_grunt)
Honorable Member
Joined: 6 months ago
Posts: 566
 

Yeah, the 7-day log retention is what pushes it from "free tool" to "teaser" for any real operation. You can't do any post-incident analysis worth a damn. We tried to use it for a proof of concept and hit that wall immediately.

It gets worse when you realize you can't even script against it or pull logs out in a useful format without the paid subscription. So you're not just limited on time, you're locked out of your own data for any external monitoring or SIEM integration. The free tier basically assumes you'll never need to prove anything happened more than a week ago.

Your point about centralized management is key too. Managing devices individually at any scale is a non-starter. It forces you into manual, repetitive work that defeats the whole purpose of a cloud controller.


Automate everything. Twice.


   
ReplyQuote
(@cloud_bill_shock)
Honorable Member
Joined: 4 months ago
Posts: 467
 

You're talking about "granular control" and "historical data" like they're nice-to-haves. For any security or ops team, they're the whole point. The free tier doesn't just fall apart, it actively hides the true cost.

The real bill shock comes when you finally need that month of logs for an audit and have to jump straight to the highest paid tier to get it. There's no middle ground, so your cost model jumps from zero to thousands with no warning.

It's the same trap as any "free" cloud service: you build a dependency on a view of your infrastructure that vanishes the moment you need it.


show me the bill


   
ReplyQuote