Advanced Security with Exceptional Performance
Across the Entire Attack Surface
Network Security Solutions & Appliances with Fortient
Advanced Security with Exceptional Performance Across the Entire Attack Surface
Fortinet’s purpose-built technology enables broad, integrated security functionality while delivering exceptional performance. The Fortinet platform delivers top-rated security inside the network, at the edge, and on the endpoints to enable seamless protection across the entire attack surface –from client to core network to cloud.
- Accelerated Performance with FortiASIC
- Industry-leading Security with FortiGuard
- Consolidated, Intuitive Control with FortiOS
Unparalleled Solutions for Today’s IT Challenges
Internal Segmentation Firewall
High-end FortiGate appliances deployed as internal segmentation firewalls help protect key network resources from attacks that get past perimeter defenses or originate from inside.
Public Cloud Security
Organizations are increasingly moving to the cloud for the agility and cost benefits. It is now easy to secure your on-premises data centers and cloud workloads with one solution, greatly reducing cost and complexity.
Advanced Threat Protection (ATP)
Beyond just an ATP solution, the comprehensive “ATP framework” integrates FortiSandbox with FortiGate next generation firewall, FortiMail email security, FortiWeb web application firewall, and FortiClient endpoint products with our world-class threat research team. This integrated solution detects, correlates, and stops zero-day threats attacking the perimeter, e-mail, web applications, and endpoints. This provides you with reduced complexity and true intelligence sharing between multiple protection systems for a stronger defense.
Accelerated Performance with FortiASIC
In traditional security appliances, multi-purpose CPU-based architectures become an infrastructure bottleneck. The only way for these network security appliances to scale is through purpose-built ASICs that accelerate specific parts of the packet processing and content scanning functions. ASIC technology also offers the ability to run multiple security applications without degradation in performance.
Fortinet has developed several key ASICs, including:
- Content Processor ASIC (CP8): Accelerates content security
- Network Processor: Accelerates network security tasks such as firewall, VPN and IPv6 translation
- Flow Processor: Provides line rate DDoS and resource mapping
- Integrated Switching Fabric ASIC: Connects resources for larger models
- System-On-A-Chip Processor SOC2 (Hybrid ASIC): Integrates all ASICs (including CPU) into a single process for best price/performance
- Multi-core CPU: Provides policy and management functions
These ASICs are used to scale from 20Mbps to 500Gbps of firewall throughput—independent of packet size, while simultaneously maintaining a high number of sessions with low latency.
Optimum path processing (OPP) enhances the different resources available in packet flow.
Mid-range models use segmented CPUs plus a network processor to provide additional performance. High-end models use multiple ASICs for even greater performance.
Industry-leading Security with FortiGuard
Applied Threat Intelligence
Fortinet solutions with FortiGuard services are consistently confirmed by NSS Labs, Virus Bulletin, AV Comparatives and ICSA tests to deliver superior security effectiveness.
- 2016 VB Web test found that FortiGuard Web Filtering blocked 97.7% of direct malware downloads – it is the only web filtering service in the industry to receive VB Web certification
- 2015 VB100 Reactive and Proactive Test ranked Fortinet the industry’s 2nd highest business AV solution for security effectiveness
- 2015 VBSPAM Test ranked Fortinet 2nd highest for security effectiveness at 99.98
- 2015 AV Comparatives awarded their highest level award, the Advanced+ rating to Fortinet for anti-phishing, file detection, and real world protection
Knowledge of the threat landscape combined with the ability to respond quickly at multiple levels is the foundation of providing effective security. Since 2000, FortiGuard Labs have provided in-house, industry-leading security research on over 200 zero-day virus discoveries, powering Fortinet’s platform and suite of services.
FortiGuard takes information from global sources through its Security Services, using analytics and machine learning to turn big data into near real-time updates for Fortinet appliances, assuring some of the fastest response times in the industry to new vulnerabilities, attacks, viruses, botnets, and zero-day exploits.
FortiGuard® Security Services
Significantly reduces spam volume at the perimeter for superior control of email attacks and infections.
Protects against the latest content-level threats by detecting, and removing malicious software.
Application Control & IPS (NGFW Service)
Protects against application based threats by allowing or denying usage. Protects against threats by examining network traffic.
Database Security Control
Database protection that is centrally-managed, enterprise-scale, with database hardening capabilities.
Web Security Services
Web application protection with fully automated updates to ensure defense against the latest application layer threats.
Protects against centrally-managed and automated botnet attacks with up to date information about threatening sources.
Protects against objectionable content from the internet by blocking access to inappropriate, and dangerous websites.
Protects against threats targeting mobile platforms by detecting and blocking malicious software.
Consolidated, Intuitive Control with FortiOS
One Operating System for Your Network Security
Control all the security and networking capabilities in all your FortiGate platforms across your entire network with one intuitive operating system. Improve your protection and visibility while reducing operating expenses and save time with a truly consolidated next generation enterprise firewall platform.
360° Visibility – One-Click to See Everything
Solve your need to keep current on your network environment, usage patterns and quickly identify any active security threats with 360° visibility provided by FortiOS. Act fast on new information through intuitive one-click shortcuts within FortiOS to keep your security current to keep up with today’s fast changing threat landscape. FortiOS seamlessly integrates with centralized management from Fortinet and offers robust SDN and SIEM APIs for extended centralized management and orchestration.
Best Protection – Industry-leading Effectiveness
No matter how large or small your organization, you are at risk; 80% of organizations reported 2 or more data breaches between 2014 and 2015. FortiOS helps you protect your organization better with a full range of industry-leading next generation security services from FortiGuard Labs plus automated advanced threat protection through integration with the Fortinet Advanced Threat Protection framework. FortiGate-based solutions are certified and validated by NSS Labs, ICSA, Virus Bulletin, and AV Comparatives for superior security effectiveness.
Fastest, Most Flexible Platform – Optimized for Internal, Perimeter, Data Center, Distributed and Cloud deployments
FortiOS leverages a performance optimized security engine architecture and custom FortiASICs in the FortiGate platform to deliver faster throughput performance – up to 10x faster than equivalent firewalls from other vendors. With FortiOS you have the flexibility to deploy exactly the capabilities and form factor you need for your specific firewall use case.
Key FortiOS Features
- Next Generation Firewall
- Internal Segmentation Firewall
- Next Generation IPS & Application Control
- Advanced Threat Protection (Sandbox)
- Web Filtering
- User Authentication
- Mobile Security
- Endpoint Network Access Control (NAC)
- WAN Optimization
- Central Management, Logging and Reporting
- VPN: SSL and IPSec
- SSL Inspection
- Data Loss Prevention (DLP)
- Monitoring, Logging and Reporting
- Wifi Controller
- Switch Controller
- VLANs and Virtual Domains
- High Availability
- Layer 2/3 Routing Services
- Full IPv6 Support