Skip to content Skip to navigation Skip to footer

Fortinet Data Center Solution

Protect, Consolidate amd Scale with FortiGates

Gartner Critical Capabilities for Network Firewalls

Overview

Securing hybrid and hyperscale data centers remains essential to host business-critical applications and data that can’t be moved to the cloud.

FortiGate Next-Generation Firewalls (NGFWs) protect hybrid data centers with dynamic segmentation and coordinated, automated AI/ML-powered FortiGuard services to enable speed and manage all security risks. They offer industry’s fastest NGFW delivering up to 520 Gbps of threat protection with full visibility and ransomware protection. Powered by purpose-built security processing units, they consolidate tens of millions connections per second and up to 1.9 Tbps firewall performance. This enables you to scale your business to meet escalating user demands.

FortiGate NGFWs for the data center combine industry-leading performance with AI/ML-driven security services from FortiGuard Labs to:

  • Manage risks in hyperscale networks by weaving security deep into hybrid IT architectures. This enables protection of any workload, anywhere, anytime.
  • Protect the entire attack surface with contextual, actionable, coordinated, and fully-automated threat protection.
  • Simplify operations, automate workflows, and save time with easy-to-use, single-pane-of-glass management across the Fortinet Security Fabric and 400+ ecosystem partners.
 

Delivering Enterprise Security with FortiGate Network Firewall

Fortinet NGFWs reduce cost and complexity by eliminating point products and consolidating industry-leading security capabilities. These include secure sockets layer (SSL) inspection (including TLS1.3), web filtering, and intrusion prevention (IPS) to provide full visibility and protection for any edge.

立即觀看

View by:

FortiGate: High-end NGFW

Advance Threat Protection
75 Gbps
SSL Inspection Throughput
70 Gbps
Network Interfaces
Multiple 100 GE/40GE QSFP28, multiple 25GE/10 GE SFP28/SFP+, two 25G SFP28 / 10GE SFP+ HA, multiple 1 GE RJ45
Advance Threat Protection
45 Gbps
SSL Inspection Throughput
50 Gbps
Network Interfaces
Multiple 100 GE/40GE QSFP28, multiple 25GE/10 GE SFP28/SFP+, two 10GE SFP+ HA, multiple 1 GE RJ45
Advance Threat Protection
20 Gbps
SSL Inspection Throughput
32 Gbps
Network Interfaces
10x 100GE QSFP28, 16x 10GE SFP+, 2x GE RJ45
Advance Threat Protection
13.5 Gbps
SSL Inspection Throughput
30 Gbps
Network Interfaces
Multiple 40/100 GE QSFP+/QSFP28, 10 GE SFP+ and GE RJ45
Advance Threat Protection
13 Gbps
SSL Inspection Throughput
24 Gbps
Network Interfaces
Multiple 40 GE QSFP+, 10 GE SFP+ and GE SFP
Advance Threat Protection
30 Gbps
SSL Inspection Throughput
34 Gbps
Network Interfaces
6x 100 GE QSFP28, 32x 25 GE SFP28, 2x GE RJ45
Advance Threat Protection
57 Gbps
SSL Inspection Throughput
64 Gbps
Interfaces
Multiple 25GE/10GE SFP25/SFP+ Multiple 100GE/40GE QSFP28
Advance Threat Protection
25 Gbps
SSL Inspection Throughput
30 Gbps
Network Interfaces
4x 100 GE QSFP28, 24x 25 GE SFP28, 2x GE RJ45
Advance Threat Protection
17Gbps
SSL Throughput Inspection
21 Gbps
Network Interfaces
4x 40GE QSFP+, 4x 10GE RJ45, 16x 10GE/25GE SFP+/SFP28, 12x GE RJ45
Advance Threat Protection
15 Gbps
SSL Inspection Throughput
20 Gbps
Network Interfaces
Multiple GE RJ45 and 10 GE SFP+ / GE SFP slots
Advance Threat Protection
13 Gbps
SSL Inspection Throughput
22 Gbps
Network Interfaces
Multiple 10 GE SFP+ | Multiple GE SFP and GE RJ45
Advance Threat Protection
13 Gbps
SSL Inspection Throughput
19 Gbps
Network Interfaces
Multiple 10 GE SFP+ | Multiple GE SFP and GE RJ45
Advance Threat Protection
17 Gbps
SSL Throughput Inspection
20 Gbps
Network Interfaces
4x 100GE QSFP28, 16x 25GE SFP28 / 10GE SFP+, 16x10GE RJ45
Advance Threat Protection
5.4 Gbps
SSL Inspection Throughput
11.5 Gbps
Network Interfaces
10x 10GE SFP+, 2x 10GE SFP+ bypass, 34x GE RJ45
Advance Threat Protection
11 Gbps
SSL Throughput Inspection
17 Gbps
Network Interfaces
4x 40GE QSFP+, 20x 10GE/25GE SFP+/SFP28, 12x GE RJ45
Advance Threat Protection
5.4 Gbps
SSL Inspection Throughput
12.5 Gbps
Network Interfaces
6x 10GE SFP+, , 34x GE RJ45
Advance Threat Protection
9.1 Gbps
SSL Inspection Throughput
17 Gbps
Network Interfaces
Multiple 40 GE QSFP+, multiple 25GE, 10 GE SFP28/SFP+, two 10GE SFP+ HA, multiple 1 GE SFP, multiple 1 GE RJ45
Advance Threat Protection
5 Gbps
SSL Inspection Throughput
10.5 Gbps
Network Interfaces
8x 10GE SFP+/GE SFP, 16x GE SFP, 18x GE RJ45
Advance Threat Protection
4 Gbps
SSL Inspection Throughput
6 Gbps
Network Interfaces
4x 10GE SFP+/GE SFP, 16x GE SFP, 18x GE RJ45
Advance Threat Protection
7.1 Gbps
SSL Throughput Inspection
10 Gbps
Network Interfaces
2x40GE QSFP+, 4x25GE SFP28, 4x10GE SFP+/SFP, 8x1GE SFP, 16xGE RJ45
Advance Threat Protection
4 Gbps
SSL Throughput Inspection
4 Gbps
Network Interfaces
2x 10 GE SFP+, 16x GE SFP, 18x GE RJ45

Please see the product page for more information on these and many more Product features.  

FortiGate: Ultra high-end NGFW

Advance Threat Protection
60 Gbps
SSL Inspection Throughput
90 Gbps
Network Interfaces
Multiple 40/100 GE QSFP28, 1/10/25 GE SFP28, 1/10 GE SFP+ and GE RJ45
Advance Threat Protection
100 Gbps
SSL Inspection Throughput
130 Gbps
Network Interfaces
Multiple 40/100 GE QSFP28, 1/10/25 GE SFP28, 1/10 GE SFP+ and GE RJ45

Please see the product page for more information on these and many more Product features.  

FortiGate: Chassis-based NGFW

Advance Threat Protection
520Gbps
SSL Inspection Throughput
540Gbps
Interfaces
Multiple 10GE SFP+/SFP, Multiple 40GE QSFP28, Multiple 100GE QSFP28, Multiple 400GE QSFP28
Advance Threat Protection
80 Gbps
SSL Inspection Throughput
79.9 Gbps
Network Interfaces
Multiple 10 GE SFP+/SFP, 40 GE QSFP+, 100 GE CFP2/QSFP28
Advance Threat Protection
40 Gbps
SSL Inspection Throughput
50 Gbps
Network Interfaces
Multiple 10 GE SFP+/SFP, 40 GE QSFP+, 100 GE CFP2/QSFP28
Advance Threat Protection
35 Gbps
SSL Inspection Throughput
50 Gbps
Network Interfaces
Multiple 10 GE SFP+/SFP, 40 GE/100 GE QSFP28
Advance Threat Protection
13.5 Gbps
SSL Inspection Throughput
17 Gbps
Network Interfaces
2x 40GE QSFP+, 2x 10GE SFP+, 2x GE RJ45

Please see the product page for more information on these and many more Product features.  

FortiGate 的 FortiGuard 安全服務 : 新一代防火牆

FortiGate NGFW 從 FortiGuard Labs 安全服務接收持續的威脅情報更新,入侵防禦、反惡意軟體、雲端沙箱、應用程式控制和Web過濾可保護企業免受已知和未知的各式網路攻擊。

瀏覽 FortiGuard Labs 服務和解決方案。

應用程式控制

可對您的客戶正在執行的應用程式獲得無可比擬的即時可視性,並輕鬆實施您可接受的使用原則,進而提高安全性並滿足合規要求。透過 FortiGuard 應用程式控制,您可以快速建立原則來允許、拒絕或限制對應用程式或整個類別的應用程式的存取。

網頁篩選

透過對惡意、被入侵或不當網站的存取封鎖來保護您的組織。

FortiSandbox 雲端

FortiSandbox 雲端服務是一個進階威脅偵測解決方案,可執行動態分析以識別先前未知的惡意軟體。FortiSandbox 雲端產生的可執行情報會反饋到網路中的預防控制機制,進而消除威脅。

防毒

FortiGuard 防毒可阻斷最新病毒、間諜軟體以及其他內容層面的威脅。它採用行業領先的進階偵測引擎來阻止不斷變化的新威脅在您的網路中獲得據點、存取網路中寶貴的內容。

入侵防護

FortiGuard IPS 透過偵測威脅並在威脅侵入到網路裝置前進行封鎖,以此抵禦最新的網路入侵。

Virus Outbreak Protection Service

FortiGuard Virus Outbreak Protection Service (VOS) closes the gap between antivirus updates with FortiCloud Sandbox analysis to detect and stop malware threats discovered between signature updates before they can spread throughout an organization. OS initiates a real-time look-up to our Global Threat Intelligence database.

內容威脅 & 解除

內容威脅 & 解除 (CDR) 功能可即時移除檔案中所有的活動內容,建立一個清潔的平面檔案。所有活動內容都被視為可疑內容並被移除。CDR 可以處理所有入埠檔案,對它們進行解構,然後移除所有不符合防火牆原則的元素。

IP 聲譽評等 & 預防殭屍網路安全服務

FortiGuard IP 聲譽評等服務從 Fortinet 分佈式威脅感測器網路、CERT、MITRE、進行合作的競爭對手以及其他全球資源彙集惡意來源 IP 資料,這些資源共同協作,合力提供關於敵對來源的最新威脅情報。憑藉來自分佈式網路閘道近乎即時的情報,再結合 FortiGuard Labs 的世界級研究,組織可得到更安全的保護並對攻擊實施主動攔截。

FortiGate Enterprise Bundle

Our Enterprise (ENT) bundle now includes:

  • CASB - providing visibility, compliance, data security and threat protection for your cloud-based services.
  • Industrial Security Service protection – SCADA (supervisory control and data acquisition) and ICS (industrial control systems). These signatures address attacks against critical infrastructure and manufacturing industries, where we are seeing frequent and sophisticated cyberattacks.
  • Security Rating Service - this service performs checks against your fabric-enabled network and provides scoring and recommendations to your operation teams. The subsequent scorecard can be used to gauge adherence to various internal and external organizational polices, standards, and regulations requirements, including providing a ranking of your firm against industry peers. 

The FortiGuard Enterprise (ENT) Protection bundle is designed to address today’s advanced threat landscape. The Enterprise Bundle consolidates the comprehensive protection needed to protect and defend against all cyberattack channels from the endpoint to the cloud. Including the technologies needed to address today’s challenging OT, compliance, and management concerns. The Enterprise Bundle offers the most comprehensive protection overall. The Enterprise Bundle includes: 

  • NGFW Application Control
  • IPS
  • Antivirus
  • Botnet
  • IP/Domain Reputation
  • Mobile Security
  • Web Filtering
  • Antispam
  • FortiSandbox Cloud
  • Virus Outbreak Protection
  • Content Disarm & Reconstruction 
  • CASB
  • Security Rating 
  • Industrial Security Service
  • FortiCare
FortiGate UTM Bundle

The FortiGuard Unified Protection Bundle (UTM) is our traditional Unified Threat Management security bundle. The Unified Protection Bundle extends threat protection across the entire digital attack surface, providing industry-leading defense against sophisticated attacks. The UTM bundle has you covered for web and email-based attacks. The UTM bundle delivers the best package available for a unified threat protection offering. The UTM Bundle includes: 

  • NGFW Application Control
  • IPS
  • Antivirus
  • Botnet
  • IP/Domain Reputation
  • Mobile Security
  • Web Filtering
  • Antispam
  • FortiSandbox Cloud
  • Virus Outbreak Protection
  • Content Disarm & Reconstruction 
  • FortiCare

The FortiGuard Advantage: 

  • FortiGuard processes over 69 million websites every hour, providing up-to-the-minute reputation and categorization. 
  • Prevent malicious downloads and browser hijacking attacks with top-rated web filtering (VBWeb Verified)
  • Improved email productivity through superior spam prevention validated with 3rd party independent testing (VBSpam + Verified)
FortiGate Advanced Threat Protection Bundle

The FortiGuard Advanced Threat Protection (ATP) bundle provides the foundational security needed to protect and defend against known and unknown cyber threats. The Advanced Threat Protection bundle includes: 

  • NGFW Application Control
  • IPS
  • Antivirus
  • Botnet
  • IP/Domain Reputation
  • Mobile Security
  • FortiSandbox Cloud
  • Virus Outbreak Protection
  • Content Disarm & Reconstruction 
  • FortiCare 24*7
Services Table
Service Advanced Threat Protection
(ATP)
 
Unified Protection
(UTM)
 
Enterprise Protection
(ENT)
 
A La Carte Protection


Threat Intelligence Service
     
Industrial Security Service
   

Security Rating
   

CASB
   

Web Filtering
 

Antivirus + Sandboxing




IPS




Antispam
 

 
Internet DB



 
IP Reputation


 
Application Control



 

Features and Benefits

As the data center grows to keep up with escalating business demands, security needs to scale and perform efficiently. Through consolidation of security, network and application controls, the data center can securely scale with the business.

 

Protect Hybrid

Protect the Data Center Edge
FortiGate NGFWs deliver artificial intelligence (AI)- and machine learning (ML)-enhanced FortiGuard Services and hardware-assisted DDoS to protect local data, applications, and services at data center speeds.

Firewall Segmentation

Consolidate within Data Center Core
FortiGate NGFWs deliver dynamic segmentation to prevent lateral spread of threats and build defense-in-depth.

Firewall Hyperscale

Scale Across Data Center Interconnect
FortiGate NGFWs deliver hyperscale security within, at the edge, and across data centers. They connect and replicate data securely, with support for ultra-fast elephant flows, to safely enable disaster recovery sites and accelerate time to market for advanced research.

security driven networking | security fabric

Security-Driven Networking

Traditional security strategies can’t keep up with the challenges of your expanding attack surface – from remote work, to mobility, to multi-cloud networks. Fortinet Security-Driven Networking addresses these challenges by tightly integrating network infrastructure with security architecture, meaning your network will remain secure as it scales and changes.