Enterprise Protection (IPS, Advanced Malware Protection, Application Control, Web & Video Filtering, Antispam, Security Rating, IoT Detection, Industrial Security, FortiConverter Svc, and 24x7 FortiCare)Ģ4x7 Comprehensive Support, Advanced Hardware Replacement (NBD), Firmware and General Upgrades, Enterprise Services Bundle (IPS, AV, Botnet IP/Domain, Mobile Malware, FortiGate Cloud Sandbox including Virus Outbreak and Content Disarm & Reconstruct, Application Control, Web & Video Filtering, Antispam, Security Rating, Industrial Security and FortiConverter Service).360 Protection (SD-WAN Orchestrator, SD-WAN Cloud Monitoring, FMG/FAZ Cloud, IPAM, IPS, AMP, App Ctrl, Web & Video Filtering, AS, Security Rating, IoT Detection, Industrial Security, FortiConverter Svc, and ASE FortiCare)Ģ4x7 Comprehensive Support, Advanced Services Ticket Handling, Advanced Hardware Replacement (NBD), Firmware and General Upgrades, 360 Services Bundle (SD-WAN Orchestrator, SD-WAN Cloud Assisted Monitoring, SD-WAN Overlay Controller VPN, FortiManager Cloud, FortiAnalyzer Cloud, Fortinet SOCaaS, IPS, AV, Botnet IP/Domain, Mobile Malware, FortiGate Cloud Sandbox, Application Control, Web & Video Filtering, Antispam, Security Rating, IoT Detection, Industrial Security and FortiConverter Service).
Hardware Unit, 24x7 Comprehensive Support, Advanced Hardware Replacement (NBD), Firmware and General Upgrades, UTP Services Bundle (IPS, AV, Botnet IP/Domain, Mobile Malware, FortiGate Cloud Sandbox including Virus Outbreak and Content Disarm & Reconstruct, Application Control, Web & Video Filtering and Antispam Service) plus term of contract
Hardware plus ASE FortiCare and FortiGuard 360 Protection.* Maximum loading on each PoE/+ port is 30 W (802.3at). CAPWAP performance is based on 1444 byte UDP packets. Threat Protection performance is measured with IPS and Application Control and Malware protection enabled, based on Enterprise Traffic Mix.Ħ. NGFW performance is measured with IPS and Application Control enabled, based onĥ. Application Control performance is measured with 64 Kbytes HTTP traffic.Ĥ. Inspection is measured with IPS enabled and HTTP traffic, using TLS v1.2 with AES256-SHA.ģ. IPS performance is measured using 1 Mbyte HTTP and Enterprise Traffic Mix. IPsec VPN performance is based on 512 byte UDP packets using AES-256+SHA1.ġ. Note: All performance values are "up to" and vary depending on system configuration. The Fortinet Security Fabric supports split-task VDOM mode.Īllowed only if the FortiGate is not a member of a Security Fabric.Configuring the root FortiGate and downstream FortiGates * Please note: Split-task VDOM mode is not available on all FortiGate models. SD-WAN, SD-WAN Rules, and Performance SLA.Security Fabric topology, settings (read-only, except for HTTP Service settings), and Fabric Connectors ( SSO/Identity connectors only).The Status, Top Usage LAN/DMZ, and Security dashboards.Interface and static route configuration.Security Fabric topology and settings (read-only, except for HTTP Service settings).The following GUI sections are available: The Traffic VDOM provides separate security policies, and is used to process all network traffic. The Management VDOM is used to manage the FortiGate, and cannot be used to process traffic. In split-task VDOM mode, the FortiGate has two VDOMs: the management VDOM (root) and the traffic VDOM (FG-traffic).