0% found this document useful (0 votes)
24 views48 pages

Intro Managed SDWAN

Uploaded by

guesiero
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
24 views48 pages

Intro Managed SDWAN

Uploaded by

guesiero
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
You are on page 1/ 48

Managed Secure SD-WAN

Fabric Management Center for MSSP


Customer Meeting - CAMTEL
Hilton Yaoundé, Mai 2024

Romaric GUELIAGO
Sales Engineer TCAF
Infrastructure has become more Complex…
…leaving It Vulnerable to Attack

Users are moving The world today is hybrid


on and off the network with applications sitting
with multiple devices across multiple clouds

Users

Networks Applications

Devices

A fast and secure network


is essential for digital acceleration

A whole new ecosystem


of connected devices
© Fortinet Inc. All Rights Reserved. 2
The MSSP Cybersecurity Landscape
The demand for Managed Security is growing

4.07 million cybersecurity 58% of organizations use a third- Top-tier CIOs are 4x more likely
roles are currently unfilled, party provider for at to partner with an MSSP3
a 39% increase year least some security operations
over year1 center (SOC) functions2

1 “(ISC)2 Cybersecurity Workforce Study 2019,” (ISC)2, November 6, 2019.


2 “Improving the Effectiveness of the Security Operations Center,” Ponemon Institute, June 15, 2019.
3 “The CIO and Cybersecurity,” Fortinet, May 23, 2019.

© Fortinet Inc. All Rights Reserved. 3


The MSSP Cybersecurity Landscape
The customer has specific wants

70% of enterprises want 56% of enterprises are looking 96% of organizations are using 41% of enterprises want integration
access to a 24/7 SOC1 for integration with existing cloud computing3 of their WAN and LAN management
security stack2 environments4

…MSSPs need to know what convinces a potential customer to move security out of house

1 “Managed Detection and Response Report,” Cybersecurity Insiders, September 18, 2019.
2 Ibid.
3 Marc Wilczek, “IT governance critical as cloud adoption soars to 96 percent in 2018,” CIO, April 2, 2018.
4 Shamus McGillicuddy, “Survey: Enterprises want end-to-end management of SD-WAN,” Network World, January 9, 2019.

© Fortinet Inc. All Rights Reserved. 4


The MSSP Market Opportunity
Market Revenue in 2028 $52,9 Billion USD at a CAGR of 11,5%

© Fortinet Inc. All Rights Reserved. 5


What convinces Enterprises to move to an MSSP ?
48% Ability to respond to incidents

48% Lack of internal security expertise • MSSPs that offer solutions to these
problems are more attractive to
potential customers.
41% Potential cost savings

• But an MSSP must expand their


34% Concern about potential breaches offerings strategically since engineering
accounts for 60% to 70% of an MSSP’s
costs.2
32% Regulatory compliance requirements

25% Recently experienced breach1

1 “Managed Detection and Response Report,” Cybersecurity Insiders, September 18, 2019.
2 “How MSSPs Can Maximize Revenues with Various Security Service Models,” Fortinet, January 25, 2018.

© Fortinet Inc. All Rights Reserved. 6


New
Customer Challenges – Too Many Devices, Too Many Tools

Through 2025, policy


misconfigurations will remain
the cause of 99% of firewall
breaches and bypasses.

Incomplete visibility Inconsistent policy Inefficient operation

© Fortinet Inc. All Rights Reserved. 7


New
How Fortinet Addresses the Challenges
Unified Management

DC Perimeter Hyperscale/5G Virtual Machine AWS


Firewall Firewall Firewall Firewall

FortiManager

Single OS

Core DC Azure
Segmentation FortiOS Firewall
Firewall

Distributed Firewall OT Firewall GCP Firewall Private Cloud Firewall

On-premises Data Center, Campus, FortiGuard


and Branch FortiGates Cloud and Cloud Native FortiGates
Threat Protection

“By 2026, more than 60% of organizations will have more than one type of firewall deployment”
*Gartner Network Firewall MQ 2022

© Fortinet Inc. All Rights Reserved. 8


New
The Management Plane for Fortinet Security Fabric
FortiManager seamlessly knits Fortinet Security Fabric, crafting a robust, cohesive network defense.

Secure Networking Unified SASE AI-driven Security


Operations

Converge security and Secure users anywhere and Detect, investigate and respond to
networking to protect every applications on any cloud threats at massive scale
edge and device

One Operating System, One Management Plane, One Analytics


Engine, Unified Endpoint Agent, and AI-powered Security Services

© Fortinet Inc. All Rights Reserved. 10


Our Solution — Single Platform, OS and Central Management

FortiGates

d Manage
tralize me
Branch SD-WAN en nt
Edge C
Cloud Cloud
Edge

AP/Switch Single Pane Automation Analytics


Branch
Edge

NGFW
Edge Co-Location

Campus AI/ML Security Services

Si

N
LA
ng
le d
OS an
SASE
Edge SaaS
for AN
F i r e w a l l, W
Data Center

Large scale, AIOps driven network Automation-driven Single Pane, Consistent security posture
visibility and dynamic insights for NOC Unified Management and Analytics across hybrid / multi-cloud

© Fortinet Inc. All Rights Reserved. 11


NOC Fabric Manager
FortiManager is the NOC Manager component

Network Security
Operations Operations

Cloud
Security

FortiAnalyzer
FortiManager User and
Device
Security (SOC)
(NOC) FortiGuard
Threat
Intelligence

Secure Open
Networking Ecosystem

© Fortinet Inc. All Rights Reserved. 12


Six Keys
to an Intelligent Next-Generation Network

Visibility Security Scalability

Performance Management Automation

© Fortinet Inc. All Rights Reserved. 13


Core Elements Fully Functional Fortigate
Hubs

MSSP VDOM A VDOM B


Premises

Customer
Premises

Customer A Customer B Customer A Customer B

Customer A Customer B

Option 1: Vdom mode Option 2: Clean Pipe mode Option 3: Cpe Mode
✓ Deployed on MSSP premises ✓ Deployed on MSSP premises ✓ Deployed on Customer premises
✓ Multitenant (VDOM per Customer) ✓ Dedicated to Customer ✓ Enterprise design flavor
✓ Usually FGT-VM

© Fortinet Inc. All Rights Reserved. 14


Core Elements FortiManager + FortiAnalyzer
Fabric Management Center
ADOM A ADOM B

ADOM A ADOM B
MSSP Premises
or Public Cloud

Customer A Customer B Customer A Customer B Customer A Customer B

Option 1: Option 2: Option 3:


✓ Deployed on MSSP premises ✓ Deployed on MSSP premises ✓ Deployed on MSSP premises
✓ Multitenant (ADOM per Customer) ✓ Multitenant (ADOM per Customer) or in Public Cloud
✓ Customer access to ADOM ✓ Customer access to FortiPortal or ✓ Dedicated to Customer
to custom Portal developed in-house
© Fortinet Inc. All Rights Reserved. 15
FortiManager — Enterprise-Grade Network Security
Deployment flexibility with hardware, virtual machine, cloud or SaaS Options

Centralized
Management

Single pane management across


the security fabric

Simplify Automate Expand

Easy provisioning and Open Fabric API’s and integrations Extend security policies across
management with ecosystem partners hybrid/ multi-cloud environments

16K+
Customers
DevOPS Security
Terraform / Ansible Appliance Virtual Machine Cloud Security-as-a-Service

© Fortinet Inc. All Rights Reserved. 16


FortiManager Key Capabilities

WAN Edge LAN Edge Policy & Objects ADOM FDS


FGT and FEX FGT, FSW, FAP, FEX Create or import Administrative Domain and FortiGuard Distribution
workspace Server

IPS Management FortiAnalyzer Integration SASE and ZTNA Upgrade and Backups
Centrally manage IPS View security fabric analysis Rule and Policy Management Firmware upgrades and
via FMG configuration backups

ATT

Monitoring FortiSoC Attack Surface Mgmt Extension External Connector


Real-Time, Single Pane for Integrated SOAR for Active assessment of security Automate and Optimize FortiGuard Distribution
NoC/SoC Automation posture versus best practices workflows Server

© Fortinet Inc. All Rights Reserved. 17


Expand and Built Consistent Security
Across Hybrid and multi-cloud environments

FortiManager
DIFFERENTATION
• Flexible deployment options: on-premise,
FMGR Cloud FMGR VM FMGR HW hybrid and/or multi-cloud.
• Cloud-native connectivity integrations
with Fortinet Security Fabric

CAPABILITIES
• Distributed deployment at scale
• Secure cloud on-ramp for GCP, Amazon
and Azure
FortiGate FortiGate-VM • Efficient cloud operations with automation
BENEFIT
Branch Campus DC AWS Transit
Gateway
Azure
Virtual WAN
Colocation
Private Cloud
• Consistent security posture across multi-
cloud scenarios

18
© Fortinet Inc. All Rights Reserved. 18
WAN Edge
FortiExtender

FortiGate
Key Components

FortiGate
Secure SD-WAN
FortiGate, FortiGate VM
FortiGate VM Cloud-Native FortiGate

FortiManager FortiExtender

FortiManager

Branch office Headquarter Data Center

© Fortinet Inc. All Rights Reserved. 19


LAN Edge

Key Components:

FortiGate
FortiGate, FortiGate VM, Cloud FortiGate

FortiSwitch
DC FortiGate FortiManager
FortiAP

FortiManager

© Fortinet Inc. All Rights Reserved. 20


Simplify and Reduce Complexity
Infrastructure visibility and management at-scale

DIFFERENTATION
Fabric Management Center
• Centralized management across the
security fabric (SD-WAN, SD-Branch,
NGFW and more) for visibility and control
• Accelerated Day 0 Zero-touch
provisioning (ZTP)
• Easily scale to 100K+ FortiGate's

CAPABILITIES
• Zero-Touch-Provisioning Templates
• Fortinet Management Extensions -
FortiAIOps
ZTNA NAC EMS SD-Branch SD-WAN NGFW Public Private Application
Cloud Cloud Delivery • Granular Role-based control

Adaptive BENEFIT
Zero-trust Security-driven
Access Networking Cloud Security • Fast time-to-deployment for Day 0/ Day 1
deployment and accelerate time to value
• Adapt to distinct customer use cases
Unified Console Across Security Fabric
21
© Fortinet Inc. All Rights Reserved. 21
Automate and Achieve Efficient Operations
Streamline workflows into Enterprise Ecosystem
DIFFERENTATION
• Integrate into existing enterprise
ecosystem
Fabric Fabric
Connector DevOps • DevOps tools to automate policies
and trigger actionable outcomes

CAPABILITIES
• Complete REST API and SDK

Fabric Extended • DevOps Scripts – Ansible,


API Fabric Terraform etc.
Ecosystem • Customizable CI/CD integration
policies

BENEFIT
• Increase Operational Efficiency &
Effectiveness – reduce truck-roll costs
450+ security fabric ecosystem integrations • Accelerate speed of operations
• Eliminate costly human errors

22
© Fortinet Inc. All Rights Reserved. 22
Core Elements
SD-WAN Configuration

Performance SLA SD-WAN Rules


• Health probes to measure latency, • Match different types of traffic and apply
jitter and packet-loss over different desired steering strategy to it
SD-WAN Interface Members Members • Selecting the right Member for each session,
• Different probe protocols considering its current health and SLA status
• This is your “SD-WAN bundle”
• Ping, DNS, HTTP, TWAMP, • Different match criteria
• Nearly any Fortigate interface
TCP/UDP Echo • L3-L7, Application, ISDB, User Group…
can be a member
• Physical ports, VLANs, LAGs, • Zero or more SLA Targets • Different steering strategies
IPSEC/GRE/IPIP, FEX… • For different applications • Pick the cheapest Member that meets SLA target

• Grouped into SD-WAN Zones • Load-balance across Members that meet SLA target

• Pick the Member with the best quality

• Pick a particular Member

© Fortinet Inc. All Rights Reserved. 23


Recap - Security Fabric NOC
Simplify NOC Operations​

Zero Touch Provisioning Fabric Management


Simplify FortiGate Provisioning at Unified Management at Scale –
Scale – SD-WAN, SD-Branch SD-WAN, NGFW etc.
Reduce NetOps TCO Reduce Complexity

NOC Automation Network Monitoring


Streamline workflows
SaaS-Based Network Monitoring
across Enterprise Ecosystem
Increase NetOps Efficiency Increase NetOps RCA Efficiency

© Fortinet Inc. All Rights Reserved. 24


FortiManager Portfolio

Hybrid Mesh
Firewall
Hardware VM Cloud
Scalability • Best response time • Flexible and scalable • No hardware maintenance
• Better control & reliability • Quick deployment • Always updated
• Access Anywhere
200G (30) Perpetual or Subscription
3/10K
Comprehensive 400G (150) (10/10K)
Capabilities 1000G (1K)
3100G (4K→8K)
3700G (10K→100K)
(Devices: Default/Max)
Dedicated Local
FortiGuard Server
• Large Enterprise • Cloud Environment • Distributed networks
• Air-gapped network due to • Hybrid Environment • Limited IT Resources
data-sensitivity • Test and Development • Preference for OpEx over
Extended Fabric • Limited Cloud Connectivity CapEx
Ecosystem
© Fortinet Inc. All Rights Reserved. 25
Deployment Workflow
FortiManager

Provisioning Templates
Security Zero-Touch,
System CLI SD-WAN Policy Low-Touch
… Packages
Templates Templates Templates

Model
Device Groups
Device

Templating Staging Deploying

Do per project
Do Per-Site
Reuse much!

© Fortinet Inc. All Rights Reserved. 26


FORTIMANAGER DIFFERENTIATORS
Competitive

Strata Cloud Manager


Solution to manage Hybrid environment.
Manage hardware, VM, limited models,
not Global. Need Prisma Access, AIOps,
Prisma SD-WAN and Cortex Data Lake
license on top of SCM license

Checkpoint Smart 1
Limited capacity (<5000 devices), only
for firewalls, no template, no security
rating, no signature update in air-
gapped network
01 02 03
Cisco Secure cdFMC
Converged Scaled Integrated
Limited capacity (<1000 devices), limited
firewalls models. No Switches and APs
management, no ZTNA, no template, no Single OS, networking 100K+ devices under a FortiAnalyzer, FortiAIOps,
signature update in air-gapped network and security single pane of FortiGuard and
management FortiSOAR

© Fortinet Inc. All Rights Reserved. 27


Jinja CLI Templates
Generic and Reusable!

• Jinja rendering engine built into FortiManager


• Powerful and widely used templating syntax
• IP address arithmetic, loops, “if” expressions and much more!
• Create a generic set of CLI Templates that can be reused for sites
with different physical topology and Fortigate models
• Unify Underlay, Overlay and Routing configuration for all your
projects
• Define per-project data
• Define per-device variables (meta fields)
• Maintain your templates on GIT, edit them in any plain-text editor

© Fortinet Inc. All Rights Reserved. 28


Automation
REST API

Every action in FMG/FAZ can be done with REST API call!

• JSON API: Industry-standard and widely used


• Can be used with virtually any automation framework of your choice:
• Python? Ansible? You name it…
• We also provide Ansible Galaxy modules, quick-start snippets for Python and more
• Unify Provisioning and Operations for all your projects
• Many reasons to make use of it:
• Save time and effort, avoid human errors
• Deploy at large scale
• Manage your Infrastructure as Code (IaC)
• Integrate with your existing DevOps processes and 3rd party tools
• Develop custom Portals tailored to specific needs of your customers (speak your customer’s language!)
© Fortinet Inc. All Rights Reserved. 29
Security Teams Are Often Overwhelmed

Evolving Threat Expanded Attack Volume & Complexity


Landscape Surface of Security Alerts

• Customized ransomware is • The age of IoT is here and • Hard to Prioritize Response
shifting down market must be equally protected
• Skills Gap & Resources
• Initial Access Brokers now • Aging OT systems and
specialize in accessing technologies are growing • Too Many IOCs, Pyramid of
“protected” businesses targets Pain

• More use of wipers to clean • The supply chain is an


up any trace of attack increasing target
Sources: ESG Research. Nov 2022.
FortiGuard Labs. 2023.
© Fortinet Inc. All Rights Reserved. 30
FortiAnalyzer
Analytics-powered security and
log management for the Security Delivering performance and scalability for
Fabric organizations of all sizes

Eliminate Reduce
Blind Spots Complexity

Speed Converge
Investigations NOC/SOC

© Fortinet Inc. All Rights Reserved. © Fortinet Inc. All Rights Reserved. | Confidential 3131
Unified Logging & Analytics Threat Intel Driven Management
Single,analytics
Real-time Unified Management
& reporting enabling Enhanced network visibility with accurate
complete visibility of network devices,
Console threat prediction & faster response to
systems, and users across the Fortinet Improve SecOps efficiency
Security Fabric

One operating system for all Management Extension


Applications
networking & security functions
delivering consistent user experience FortiAnalyzer FortiSIEM FortiSOAR
& resilient security posture

Centralize NOC/SOC Operations with Deep Fortinet Security Fabric Integrations

FortiManager FortiADC FortiDeceptor FortiSOAR


FortiGate

Authenticator FortiMail FortiSandbox FortiSIEM


FortiAP

FortiSwitch FortiToken FortiWeb FortiNDR FortiGuard Labs

FortiCASB FortiEDR 3rd Party Integrations


FortiNAC FortiClient © Fortinet Inc. All Rights Reserved. 32
Normalized Data Analytics with ML to detect
incidents across the Fortinet Security Fabric
• Application of ML to large-scale log data for pattern
detection and anomaly flagging

• Offers minimal configuration for 24x7 real-time threat


detection, automating alerts based on specific triggers

• Trigger automated responses upon threat detection,


enhancing incident response time and accuracy.

• Craft tailor-made reports, ensuring stakeholders get the


exact information they need.
FortiAnalyzer
• Utilize pre-built templates to remain compliant with
Consolidated Fabric Visibility industry standards, reducing the compliance burden.

Fabric Response Automation

TI & Rules Detect Known Attacks

Accelerate SOC Maturity

© Fortinet Inc. All Rights Reserved. 33


Key Functions & Capabilities

Central Log Management Security Automation

• Log Consolidation: Centralizes logging across the • Workflow Automation: Automates responses to
security landscape for streamlined analysis. predefined security scenarios, increasing efficiency.
• Threat Identification: Employs AI-driven analytics to • Incident Handling: Tools and interfaces for
pinpoint and alert security incidents. comprehensive incident lifecycle management.
• Event Correlation: Detects patterns across data points • Playbook Customization: Allows for tailored security
to identify and flag complex threats. response workflows via configurable playbooks.
• Compliance Reporting: Automates the creation of • Security Fabric Integration: Seamless integration
detailed reports that adhere to regulatory standards. within the Fortinet ecosystem for cohesive security
• Real-Time Monitoring: Provides instant visibility into management.
network and security events for prompt action
© Fortinet Inc. All Rights Reserved. 34
Key Functions & Capabilities

Threat Intelligence Management Attack Surface Management

• FortiGuard Labs Data: Integrates Fortinet's leading • Vulnerability Insights: Scans for and identifies system
threat intelligence for up-to-date security insights. weaknesses and potential entry points.
• Threat Contextualization: Offers in-depth context for • Network Profiling: Automatically maps the network,
threats, aiding in accurate identification. highlighting assets and potential vulnerabilities.
• Dynamic Adaptation: Continuously updates with the • Posture Assessment: Regularly assesses network
latest intelligence for proactive defense measures security posture to ensure policy compliance and identify
risks.
© Fortinet Inc. All Rights Reserved. 35
FortiAnalyzer

Unified Security Posture


• FortiAnalyzer centralizes logs and data from across the Fortinet security fabric, providing enhanced visibility, ensuring all data points are covered and
no threat vector remains unchecked - offering a holistic view of the organization's security posture.
• Seamlessly converge diverse data points into actionable intelligence, bridging the traditional IT/OT divide.

Real-time Analytics & Detection


• FortiAnalyzer promptly recognizes patterns, pinpointing vulnerabilities and suggesting remediations before they escalate into tangible threats
• In concert with FortiGuard Labs, FortiAnalyzer speeds threat hunting and response to the newest advanced malware and outbreaks.

Scalable & Adaptable


• FortiAnalyzer’s horizontal scalability ensures that as your organization grows, your security infrastructure evolves alongside, providing continuous
protection without system overhauls.
• Adaptable Deployments that cater to both on-premise and cloud deployments

© Fortinet Inc. All Rights Reserved. 36


FortiAnalyzer Series

FAZ-150G FAZ-300G FAZ-810G FAZ-1000G FAZ-3000G FAZ-3510G FAZ-3700G


GB/Day 25 100 200 660 3,000 5,000 8,300
Analytic Sustained
500 2,000 4,000 20,000 42,000 60,000 100,000
Rate (logs/sec)
Collector
Sustained Rate 750 3,000 6,000 30,000 60,000 90,000 150,000
(logs/sec)
Max.
50 180 800 2,000 4,000 10,000 10,000
Devices/ADOMs

Max Number of
90 28 50 60 30 60
Days Analytics
2x GE RJ45, 2x GE RJ45, 2x 10GE RJ45,
4x GE RJ45,
Total Interfaces 2x GE RJ45 4x GE RJ45 2x 25GE 2x 25GE 2x 25GE
2x GE SFP
SFP28 SFP28 SFP28
60 x 4TB HDD
Storage capacity 2x 2 TB 2x 4 TB 4x 4 TB 8x 4TB 16x 4TB + 6x 3.2TB
NVMe SSD
Yes, (RAID 0, Yes, (RAID 0, Yes, (RAID 0,
RAID support Yes (0,1) Yes (0,1) Yes (0,1,5,10) 1, 5, 6, 10, 50, 1, 5, 6, 10, 50, 1, 5, 6, 10, 50,
60) 60) 60)
© Fortinet Inc. All Rights Reserved. 37
FortiAnalyzer VM-Series

FAZ-VM-GB1 FAZ-VM-GB5 FAZ-VM-GB25 FAZ-VM-GB100 FAZ-VM-GB500 FAZ-VM-GB2000

GB/Day +1 +5 +25 +100 +500 +2,000


Max.
10,000 10,000 10,000 10,000 10,000 10,000
Devices/ADOMs
Network
Interface 1/4
(Min/Max)
vCPU (Min/Max) 4 / Unlimited
Memory Support
8 GB / Unlimited for 64-bit
(Min/Max)

FortiAnalyzer-VM-S subscription license model


• consolidates multiple services for easier purchase and renewal
• stackable log licenses (5, 50, 500 GB/day) for scalable logging needs

© Fortinet Inc. All Rights Reserved. 38


Partner Benefits
from building
Managed
Security Services: Increase Growing your
profits business through
recurring revenue

Competitive Customer
advantage loyalty

© Fortinet Inc. All Rights Reserved. 39


Industry validation

Mai 2024
Recognized by Industry Analysts

Gartner Peer Insights


Gartner SD-WAN MQ Forrester SASE/ZTE Wave
Customers’ Choice
Sep. 2023 Magic Quadrant for Aug. 2023 Forrester Wave
March 2024 Gartner SD-WAN Peer Insights
SD-WAN Zero Trust Edge Solutions
Fortinet Recognized as a Leader Fortinet Recognized as a Leader Fortinet Receives Customers’ Choice
Four Years in a Row Five Years in a Row

© Fortinet Inc. All Rights Reserved. 41


Recognized by Industry Analysts

Gartner SD-WAN Critical


IDC MarketScape Cyber Ratings
Capabilities
Sep. 2023 Critical Capabilities Report for Sep. 2023 IDC MarketScape Worldwide SD-WAN
Q3 2023 Cyber Ratings for SD-WAN
SD-WAN Infrastructure
Fortinet Ranked #1 Fortinet Ranked #1 Twice Fortinet Received Highest Ranking
in Two Categories for “Recommended”
Three Consecutive Years

#1
On-Premises #1
Security- WAN for Small
Sensitive Branches
WAN

© Fortinet Inc. All Rights Reserved. 42


Fortinet Recognized as a Leader in the 2024 Gartner® Magic Quadrant
for Enterprise Wired and Wireless LAN Infrastructure

Fortinet named a Leader in this report

Gartner, Magic Quadrant for Enterprise Wired and Wireless LAN Infrastructure, by
Tim Zimmerman, Christian Canales, Nauman Raja, Mike Leibovitz on 6th March
2024.

GARTNER is a registered trademarks and service mark, and MAGIC QUADRANT


is a registered trademark of Gartner, Inc. and/or its affiliates in the U.S. and
internationally and are used herein with permission. All rights reserved. This
graphic was published by Gartner, Inc. as part of a larger research document and
should be evaluated in the context of the entire document. The Gartner document
is available upon request from Fortinet. Gartner does not endorse any vendor,
product or service depicted in its research publications, and does not advise
technology users to select only those vendors with the highest ratings or other
designation. Gartner research publications consist of the opinions of Gartner’s
research organization and should not be construed as statements of fact. Gartner
disclaims all warranties, expressed or implied, with respect to this research,
including any warranties of merchantability or fitness for a particular purpose.

© Fortinet Inc. All Rights Reserved. 43


A Gartner Peer Insights Customers’ Choice

Customer’s Choice
Wired and Enterprise
Wireless Firewall SD-WAN

© Fortinet Inc. All Rights Reserved. 44


Learn More…
Solution Briefs: Ordering
Ordering Guide
Guide Datasheet

HighSpot © Fortinet Inc. All Rights Reserved. Partner Portal 45


Flexible & Future-Proof infrastructure to expand MSSP services
Manage Manage Unified Threat Manage Manage Hybrid Manage Security
NextGen Firewall Protection Office Network FW Deployments in the Cloud
Develop Your Extend to advanced Extend Your Management Manage Firewalls Extend Services to more
Core Offering Network Security Services Boundary On-Premise + in Clouds Cloud Opportunities
Managed Build a solid managed Cover advanced IPS, Cover the LAN with integrated Huge Market, same FortiOS, Huge Market, same FortiOS,
Services NextGen Firewall service antimalware, web security Switching, WiFi Same Management tools Same Management tools

• Firewall Configuration • Managed IPS • Managed LAN access • Firewall Configuration • Web Apps Protection
• Firewall Supervision • Managed Antimalware • Managed WiFi access • Firewall Supervision • Mail Protection
• Backup & Restoration • Managed Cloud Sandbox • Managed 4G/5G access • Backup & Restoration • Phishing Simulations
• Log Retention & Audit • Managed Web Protection • Managed Authentication • Log Retention & Audit • SASE (Secure Access)
• etc … • etc … • etc … • etc … • etc …

FortiCloud
Etc …
Management
Tools
FortiGate FortiGate FortiGate FortiGate .
Cloud Cloud Cloud Cloud . …

FortiWeb FortiSASE
FortiGate FortiGate FortiGate
Customer …
Network FortiGuard FortiGate VM
Services
FortiMail FortiPhish

© Fortinet Inc. All Rights Reserved. 47


FortiSwitch FortiAP FortiExtender
Expand your MSSP Business with more Cloud Opportunities
Increase your Managed Security Services revenues manyfold

Secure Cloud Protect Secure Everyone


Networks Applications Everywhere

FortiGate VM FortiWeb VM / Cloud FortiSASE


• Protects Data stored in the Cloud • Web Application Firewall • Secure internet access … all the time
• Protects Servers in the Cloud • Bot Defense • Private access (encryption) to FortiGate
✓ Inbound Control • API Protection and Visibility • Visibility & control on Shadow IT (CASB)
✓ Outbound Traffic Protection • Updated OWASP Top Ten Protection • Zero Trust Access control (ZTNA)
✓ East-West Traffic Inspection • Zero-Day Threat Protection with AI • Endpoint Protection

© Fortinet Inc. All Rights Reserved. 48


Hybrid Management: more effective with FortiCloud
Centrally manage Assets + Identities + Access Permissions + Support Tickets … FortiCloud

Support Tickets Asset


FortiCloud Management
Identity & Access Management
Critical Management Management
Functions

SaaS or
Public Cloud

Secure Cloud Protect Secure Everyone


Networks Applications Everywhere

Virtual Machines Appliances


© Fortinet Inc. All Rights Reserved. 49

You might also like