Download as pdf or txt
Download as pdf or txt
You are on page 1of 3

INDUSTRY’S MOST EFFECTIVE NGFW USING THE

FORTINET ENTERPRISE FIREWALL SOLUTION

Stolen data fuels a highly profitable benefits of NGFW are consolidation followed
cybercrime economy and organizations are by added security against advanced threats
FORTINET’S ENTERPRISE
constantly under attack. The risk of data and data breach. (IDG Research 2015)
FIREWALL SOLUTION —
breach drives the need to add more security
NGFW DEPLOYMENT
and the need to increase visibility into and KEY NGFW DEPLOYMENT
control over network traffic, especially at REQUIREMENTS Fortinet’s Enterprise Firewall solution
the network perimeter or between network enables NGFW deployment which
nnHighly Effective Security – Your NGFW
segments within an organization. delivers unparalleled protection
should include highly effective security
and ultra-fast performance against
The Fortinet Enterprise Firewall Solution backed by extensive threat intelligence
emerging threats with a collaborative
combines with the Fortinet Security Fabric to reduce your risk of data breach. A fully
security fabric that extends across the
to enable an immediate, responsive, and featured NGFW includes security features
borderless network.
intelligent defense against malware and beyond intrusion prevention, application
emerging threats. You can improve your control, and user identity, such as web
network security, get more control, and filtering, IP reputation, SSL inspection,
simplify your infrastructure by adopting and sandboxing to break the kill chain of
Fortinet’s next-generation firewall (NGFW) attacks.
Validated Security
deployment at the edge and core. nnVisibility and Control Over Network
TRENDS DRIVING NEXT GENERATION Traffic – The more you know, the more
FIREWALL ADOPTION you can control. An NGFW should use
deep inspection into network traffic to
Data breaches occur every day and Universal Platform Support
identify applications, users, devices,
organizations are increasingly under attack.
and threats enabling it to deliver better
You need better security. There were nearly
protection through context-aware policy
100,000 reported security incidents with
controls. Your NGFW solution should
3,141 confirmed data breaches reported in
also come with single-pane-of-glass
the 2016 Verizon Data Breach Investigation One Network OS
management, advanced visualization
Report. 700 million records were lost,
components, and rich reporting to keep
representing about $400M of financial loss
you informed and help you to make
to organizations.
strategic security decisions.
Network bandwidth requirements
nnPerformance and Reliability – Next- Single Pane of Glass
are doubling every 18 months due to
generation capabilities are only useful
rapid growth of IoT devices, big data,
if your platform’s performance, with
virtualization, cloud storage, and SaaS
desired features enabled, can keep
applications. Network throughput is critical.
up. To support business continuity and
You need security that keeps up with the Performance
bandwidth requirements, your NGFW
pace of your business.
platform should deliver highly reliable core
IT executives consider network security a firewall capabilities, as well as the full
critical priority, but they also want to reduce range of next-generation features, at high
the complexity associated with supporting throughput speeds.
multiple disparate security products. 76%
of IT executives identify NGFWs as a top
priority IT initiative. The most often cited

SOLUTION BRIEF
SOLUTION BRIEF: INDUSTRY’S MOST EFFECTIVE NGFW USING THE FORTINET ENTERPRISE FIREWALL SOLUTION

THE FORTINET ENTERPRISE UNPARALLELED PROTECTION More and more enterprises are
FIREWALL SOLUTION — NGFW Security solutions should stop attacks from implementing network-based antivirus, but
DEPLOYMENT damaging your organization and the more most network security vendors only offer
The FortiGate Next-Generation Firewall limited capabilities in this area. Fortinet offers
threats blocked, the better. Fortinet security
delivers unparalleled protection, operational a powerful antivirus engine that provides
technologies are the most validated by
ease of use, and ultra-fast performance. one-to-many signature matching, heuristics,
independent industry tests conducted by
Powered by FortiGuard Labs, FortiGate decompression, and emulation, developed
experts such as NSS Labs, Virus Bulletin,
offers a wide range of integrated services in-house by FortiGuard Labs. This engine
and AV Comparatives. Most recently, the
including: consistently
Fortinet NGFW deployment blocked over
receives top
99% of exploits
Virus Bulletin, AV
and received
Active Directory or LDAP Comparatives, and
“Recommended”
NSS Labs ratings
ratings in NSS Labs
FortiAnalyzer that are as good or
Logging, Analytics, Reporting 2016 NGFW industry
better than other
tests.
FortiAuthenticator AV vendors.
User Identity Management Fortinet threat
In addition to traditional malware
intelligence and
FortiManager protection, organizations are increasingly
Centralized Management security services
looking to NGFWs for protection from
are provided by
the latest advanced threats. Fortinet
FortiSandbox FortiGuard Labs,
Advanced Threat Protection
FortiSandbox earned the coveted NSS
our dedicated global
Labs Recommendation in the 2015 Breach
threat research
Detection System Group Test and offers this
team. FortiGuard
capability as a FortiGuard security service
Labs delivers the
accessible through the FortiGate
most advanced
or a dedicated on-premises physical or
threat intelligence
virtual appliance.
to address all
phases of the
OPERATIONAL EASE OF USE
attack lifecycle with
top-rated security The unique single-platform approach of
effectiveness. Threat the Fortinet NGFW delivers end-to-end
researchers around protection that is easier to buy, deploy,
the globe keep and manage. A highly intuitive view of
close watch on the applications, users, devices, threats, cloud
threat landscape service usage, and deep inspection give
nnStateful Firewall 24x365, enabling the
nnIntrusion Prevention FortiGuard Labs team
to deliver updates
nnApplication Control
to the entire Fortinet
nnUser/Device Identity & Authentication security ecosystem
nnAnti-malware
with some of the
fastest response
nnSandboxing
times in the industry.
nnWeb Filtering
nnIP Reputation CLICK TO SEE AN
nnSSL Inspection INTERACTIVE MAP
nnIPsec/SSL
OF THREATS BEING
VPN
MONITORED BY
nnNetworking (LAN, WAN, Wi-Fi) FORTIGUARD LABS
nnManagement & Reporting LIVE RIGHT NOW

2
SOLUTION BRIEF: INDUSTRY’S MOST EFFECTIVE NGFW USING THE FORTINET ENTERPRISE FIREWALL SOLUTION

you a better sense of what is happening on sandbox intelligence − all consolidated SUMMARY
your network. With this strategic view, you and managed from a single pane of glass.
Organizations face an increasing risk
can easily create and manage more granular
of experiencing a data breach in an
security policies designed to optimize your
environment rapidly demanding more
security and your allocation of network
connectivity and bandwidth. Adding
resources.
additional security is necessary but adding
nnIdentify thousands of different applications latency and complexity is not acceptable.
with application control (including deep The next-generation firewall is quickly
application control specific to cloud becoming the standard approach for
services) to set up effective application- enterprise security. But it must deliver
aware policy enforcement. The FortiGate the high effectiveness and performance
can inspect SSL encrypted and evasive necessary to secure the organization
traffic as well as traffic running on the without slowing the business.
latest protocols. These capabilities INDUSTRY’S FASTEST PLATFORM
combined with other available security Gartner predicts that
Purpose-built FortiASIC processors drive
features can catch advanced attacks performance at the heart of the FortiGate
85% of enterprise
that hide within applications or within firewalls will be NGFW
platform to deliver industry-leading, high-
by the end of 2018
encrypted sessions. speed processing. This level of performance
nnSet granular policies for different types is necessary to deliver on the promise The Fortinet Enterprise Firewall solution
of users with user identity capabilities of a great NGFW. Deep next-generation enables NGFW deployment to deliver
integrated in the FortiGate through inspection and the consolidation of multiple unparalleled protection, ease of use, and
integration with AD/LDAP, RADIUS, security functions onto a single appliance ultra-fast performance.
Exchange and other sources. This require a high-performance platform to keep
up with the speed of business. For more information on Fortinet’s Next-
integrated NGFW capability is easily
Generation Firewall solution, please visit:
expanded to many more sources for At the same time, the software architecture
https://www.fortinet.com/solutions/
user identity through the addition of leverages parallel path processing to
enterprise-midsize-business/next-
FortiAuthenticator for large, diverse optimize the high-performance hardware
networks. generation-firewall-ngfw.html
and software resources available in packet
nnUniquely identify the type and OS of flow for maximum throughput.
devices being used on the network As a result, the FortiGate integrated
without requiring agents or additional architecture provides extremely high
products to set stronger security policies throughput and exceptionally low latency,
for riskier types of devices. while still delivering industry-leading security
nnSpeed incident response with advanced effectiveness and consolidating functions.
visualization such as custom threat maps
specific to your organization, one-click
policies like device quarantine, and more.
nnReduce administrative workload by
leveraging the broadest range of
enterprise-class security services − that
now include mobile malware and local

GLOBAL HEADQUARTERS EMEA SALES OFFICE APAC SALES OFFICE LATIN AMERICA HEADQUARTERS
Fortinet Inc. 905 rue Albert Einstein 300 Beach Road 20-01 Sawgrass Lakes Center
899 Kifer Road 06560 Valbonne The Concourse 13450 W. Sunrise Blvd., Suite 430
Sunnyvale, CA 94086 France Singapore 199555 Sunrise, FL 33323
United States Tel: +33.4.8987.0500 Tel: +65.6513.3730 Tel: +1.954.368.9990
Tel: +1.408.235.7700
www.fortinet.com/sales

Copyright © 2016 Fortinet, Inc. All rights reserved. Fortinet®, FortiGate®, FortiCare® and FortiGuard®, and certain other marks are registered trademarks of Fortinet, Inc., and other Fortinet names herein may also be registered and/or common law
trademarks of Fortinet. All other product or company names may be trademarks of their respective owners. Performance and other metrics contained herein were attained in internal lab tests under ideal conditions, and actual performance and other
results may vary. Network variables, different network environments and other conditions may affect performance results. Nothing herein represents any binding commitment by Fortinet, and Fortinet disclaims all warranties, whether express or implied,
except to the extent Fortinet enters a binding written contract, signed by Fortinet’s General Counsel, with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and, in
such event, only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet. For absolute clarity, any such warranty will be limited to performance in the same ideal conditions as in Fortinet’s internal
lab tests. Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise revise this publication without notice, and the most
current version of the publication shall be applicable. Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise revise this
publication without notice, and the most current version of the publication shall be applicable. Jan 04, 2017

You might also like