Professional Documents
Culture Documents
FFT - SD-Branch LAN Edge Wired and Wireless - Presentation h1.0
FFT - SD-Branch LAN Edge Wired and Wireless - Presentation h1.0
Section Two: Lab, covers the configuration of LAN Edge with FortiLink.
*Note: Lab does not cover SD-WAN or FortiNAC configuration due to time constraints.
Branch Network
Vendor 1 Vendor 2 Vendor 3 Vendor 4 Vendor 5
LAN Secure
Edge SD WAN
NAC
Hospitality Healthcare
Restaurant Government
© Fortinet Inc. All Rights Reserved. 5
Enabling the edges of your
network
Fortinet’s Secure SD-Branch Vision
A secure, agile, integrated approach to branch networking
Enablethe
Enable Cloud
CloudOn-Ramp
On-Ramp Simplify Operations Address IoT
Security
Fabric Adaptive Cloud
Security
Broad
visibility and protection of the entire
digital attack surface to better Zero Trust
Access
manage risk
FORTIOS
Integrated
solution that reduces management
complexity and shares threat
intelligence
Automated Security-Driven
Open
Ecosystem
self-healing networks with AI-driven Networking
FortiGuard Threat
security for fast and efficient Intelligence
operations
Accelerated
convergence of
SECURITY
NETWORKING
Appliance (ASIC)
Networking and
Security
Cloud Flexible,
Goal: toanywhere
support theand
anytime
dynamic security
secure access
needs of organizations
1
Fortinet View
Cloud delivered
Scalable
© Fortinet Inc. All Rights Reserved. © Fortinet Inc. All Rights Reserved. 11
11
SD-Branch WAN Edge
Simplicity
• Agile deployment and management
• Flexible architecture, scales as needs change
FortiLink
Lower Cost of Ownership FortiAP
• Access Management included with FortiOS.
• No licenses required
SD-WAN FortiGate
FortiGate
• Visibility into 5000+ • Application Steering • WAN Path • High-level • Multi-Tenancy with
Applications Based on Expanded Remediation (FEC) Monitoring of Patented VDOM
• High Application SLAs • Tunnel Bandwidth SD-WAN Devices • User Level
• Automated Fail-Over Aggregation on a Map Segmentation for
Identification
Capabilities (Per Packet • Expanded Historical Applications
Accuracy Steering) SLA Analytics
▪ Entry Level Switch ▪ Mid level Switch ▪ Enterprise Switch ▪ Aggregation Switch
▪ 8 to 48 gigabit Ethernet ▪ 24 to 48 GE ports POE+ ▪ 24 to 48 gigabit Ethernet ▪ 24 to 48 gigabit Ethernet
ports, POE Capable Capable ports POE+ Capable ports POE+ Capable
▪ Desktop to wiring closet. ▪ Typical wiring closet switch ▪ Multi-Gig and UPoE options ▪ Up to (4) 10 Gigabit
Ethernet (2) 40 Gigabit
▪ (2-4) GE or 10GE ▪ (4) Gigabit Ethernet SFP ▪ Larger wiring closet or high
Ethernet SFP uplinks
Ethernet SFP SFP+ uplink ports throughput requirements.
uplink ports
▪ Up to (4) 10 Gigabit
Small Business Ethernet SFP uplinks
Secure SD-Branch
Campus Networks
© Fortinet Inc. All Rights Reserved. 20
FortiSwitch Data Center Switch Family
1000 Series 3000 Series
▪ Top of Rack and Data Center Applications ▪ Top of Rack and Data Center Applications
▪ 24 or 48 10 Gigabit Ethernet SFP slots ▪ 3000 series offers 32 x 100 Gigabit
▪ Up to four QSFP28 100 GbE Uplinks or Ethernet capable QSFP28 slots
Six 40 GbE QSFP+ ▪ Dual hot swappable power supplies
▪ Dual hot swappable power supplies
FAP-U433F-A
Family Indication Number of Radios Wi-Fi Standard
<blank> - Standard Indicates the number E – 802.11ac
AP of Wi-Fi radios built F – Wi-Fi 6
U – Premium AP, dual into the AP Regulatory
Form Factor
5GHz capable Please refer to the
1 – Indoor, Internal
Spatial Streams antenna price list for a
Indicates the number 2 – Outdoor, External complete listing
of spatial streams antenna
supported on the AP 3 – Indoor, External
antenna
4 – Outdoor, Internal
antenna
© Fortinet Inc. All Rights Reserved. 25
J – Wallplate AP
NAC
FOS Native NAC
Secure
• Automatically discovers devices and applies policy
FortiGate
• Flexible triggers and actions
• Rules point to policy (and policy can point to
additional policy) FortiLink
FortiSwitch
Simple
• Defaults are ready to go
• Can simplify network deployment
• User Devices and FortiGuard IOT identification*
Scalable FortiAP
• Quickly enable NAC on port(s) or entire network
• EMS Tags with dynamic addresses
• Actions can be port or device specific
LAN Edge
Zero Trust
Access
• Protecting the access edge LAN Edge
MPLS
FortiNAC WAN Edge
User
NGFW
• Protecting the device edge FortiClient
FortiClient Contractor
Wireless Switch
FortiFone Broadband
• Protecting the managed device edge Guest
Cellular
FortiCamera FortiCamera
4G
5G
• Enhancing physical security
FortiFone / FortiVoice
• Enabling communication
4. FortiManager pushes
4 configuration to FortiGate
FortiSwitch and FortiAP.
SD
BRANCH
Gartner, Magic Quadrant for WAN Edge Infrastructure, By Jonathan Forest, Naresh Singh, Andrew Lerner, Evan Zeng, 20 September 2021
Gartner, Magic Quadrant for Network Firewalls, By Rajpreet Kaur, Jeremy D'Hoinne, Nat Smith, Adam Hils, 1 November 2021
Gartner, Magic Quadrant for Enterprise Wired and Wireless LAN Infrastructure, Bill Menezes, Christian Canales, Tim Zimmerman, Mike Toussaint, 16 November 2021.
“Gartner does not endorse any vendor, product or service depicted in its research publications and does not advise technology users to select only those vendors with the highest ratings or other designation. Gartner
research publications consist of the opinions of Gartner’s Research & Advisory organization and should not be construed as statements of fact. Gartner disclaims all warranties, expressed or implied, with respect to this
research, including any warranties of merchantability or fitness for a particular purpose. Gartner and Magic Quadrant are registered trademarks of Gartner, Inc. and/or its affiliates in the U.S. and internationally and is
used herein with permission. All rights reserved.
© Fortinet Inc. All Rights Reserved. 35
This graphic was published by Gartner, Inc. as part of a larger research document and should be evaluated in the context of the entire document. The Gartner document is available upon request from Fortinet.
Fortinet Leads Gartner Critical Capability Report of
WAN Edge SD-Branch
These graphics were published by Gartner,
Inc. as part of a larger research document
and should be evaluated in the context of the
entire document. The Gartner documents are
available upon request from our website:
https://www.fortinet.com/solutions/gartner-ma
gic-quadrants.html.
Gartner Peer Insights reviews constitute the subjective opinions of individual end users based on their own experiences, and do not represent the views of Gartner or its
affiliates.
© Fortinet Inc. All Rights Reserved. 37
Gartner Peer Insights reviews constitute the subjective opinions of individual end users based on their own experiences, and do not represent the views of Gartner or its
affiliates.
Integrated Security
• No other vendor offers tighter security integration.
o FortiSwitch and FortiAP integrated into FortiGate as
extensions of the NGFW through FortiLink
o FortiNAC Discovery, visibility, security and anomaly detection
for IoT
Low Complexity
• Single pane of glass to manage security, network access
and Secure SD-WAN.
o Simplify troubleshooting
o Increased agility in deployment and expansion
• Licensing simple to understand and implement
Lower Total Cost of Ownership
• No licensing fees on the FortiGate
POD-3
to a POD.
POD-16
This is a short technical lab designed to walk you through the steps
necessary to configure FortiLink between the FortiGate and
FortiSwitch enabling the Fortinet Security Fabric in the Ethernet
access layer.
This is a short technical lab designed to walk you through the steps necessary to
configure a variety of common wireless network types on FortiAPs using the FortiLink
wireless protocol running across CAPWAP.