Title: Fortinet Product Webinar
1FortiGate-200BMulti-Threat Security Appliance
for the Mid-Enterprise
November 2009
2Agenda
3Multiple Threat Vectors
- Multiple Threat Types
- Various Application Entry Points
- Different Functions
- Threat Payload Intent Varies
- Broad Range of Propagation Techniques
- Application Threat Vector
- Viruses Spyware
- Spam Directory Harvest Attacks
- Web Phishing
- IM and P2P file transfers
- Network Threat Vector
- Network Worms
- DDOS/DOS
- IP Packet Capture
- Spoofing Man-In-The-Middle
4A Single Solution FortiGate-200B
- Description
- Integrated threat management
- High-port density with FortiASIC-accelerated
performance - All at an affordable price
- Ideal Deployments
- Small or medium organizations large
organizations with remote offices - Locations requiring high port density and
hardware-accelerated performance
- Features
- 16 interfaces
- FortiASIC Network Processor Accelerated
- 4 x 10/100/1000
- FortiASIC Content Processor Accelerated
- 8 x 10/100/1000
- 8 x 10/100
- Expansion
- 1 x Fortinet Storage Module (FSM) Slot
5Agenda
6FortiGate-200B Features and Benefits
- Performance
- 5 Gbps Firewall
- 2.5 Gbps IPSec VPN
- 500 Mbps IPS
- 95 Mbps AV
- Comprehensive Protection
- Firewall, VPN (IPSec SSL), IPS, AV/AS,
antispam, Web filtering - Application control, data loss prevention,
dynamic routing (IPv4 IPv6), end point NAC,
SSL-encrypted traffic inspection, and WAN
optimization
- Unmatched Protection for the Price
- 16 configurable ports enable granular network
segmentation and policy enforcement - FortiASIC-accelerated performance protects
applications and network without affecting
availability - Lower TCO
- Consolidates stand-alone devices and management
consoles - Expansion slot enables WAN optimization
- ICSA Labs Certified Security
- Firewall, IPS, Antivirus, IPSec VPN
7FortiGate-200B Delivers Deployment Flexibility
- High port density supports multiple security
zones for various departments, users, access
methods, and devices - 16 interfaces enables customizable policy
enforcement between segments with switch-like
performance - FortiASIC acceleration delivers unmatched
performance - Content processor accelerates encryption/decryptio
n features (e.g., IPSec VPN and SSL inspection) - Additional acceleration for content-intensive
security technologies such as antivirus/antispywar
e. - Network processor delivers firewall and VPN
throughput at switching speeds by performing
high-speed processing of network flows.
8FortiGate Mid-Enterprise Product Line
Product Firewall IPSec VPN Anti Virus IPS Ports Price
FG-200B 5 Gbps 2.5 Gbps 95 Mbps 500 16
FG-310B 8 Gbps (12 Gbps w/ AMC) 6 Gbps (9 Gbps w/ AMC) 160 Mbps 800 Mbps 10
FG-620B 16 Gbps (20 Gbps w/ AMC) 12 Gbps (15 Gbps w/ AMC) 250 Mbps 1 Gbps 20
FG-1240B 40 Gbps (44 Gbps w/ AMC) 16 Gbps (18.5 Gbps w/ AMC) 450 Mbps 1.5 Gbps 40
Insert Regional Pricing
- Customers can chose the ideal mix of price and
performance to fit their network and budget -
8
9Agenda
10Address Internal Network Segmentation
NeedsSixteen ports enable granular segmentation
- More granular policy enforcement
- Isolate security events before they spread
- Increased visibility into encrypted traffic and
applications - Lower costs while increasing access
- Single security zone with no protection between
LAN segments no longer acceptable
Corporate LAN
Switch
DMZ
Switch
Switch
Switch
Switch
Application Servers
11Enable Secure Web AccessFirewall Antivirus
IPS Web Filtering
- Allows network devices secure access to the
Internet - Automatic protection against blended attacks
- Prevents access to malicious sites
- Blocks malicious code before it can install
- ICSA-certified multi-layered security protection
platform
12Enable Secure Perimeter AccessFirewall VPN
Antivirus IPS
- Enterprise-grade technologies ensure that remote
users can easily access the corporate network
while also ensuring that remote users are not
introducing security risks - Firewall
- VPN
- Antivirus
- Intrusion Prevention
- Application control
- Endpoint NAC
13Protect Against Blended ThreatsApplication-Based
Attacks Can Bypass Firewalls
Problem
PORT 80
Error message Drops copy of itself on system
and attempts to propagate
Innocent Video Link Redirects to malicious
Website Or innocent site, hosting content
Out of date Flash player error Download
malware file
Solution
FIREWALL
WEB FILTERING
ANTIVIRUS
INTRUSION PROTECTION
14Agenda
15FG-200B Competitive Price/Performance Analysis
Performance FortiGate-200B Cisco ASA 5510 Check Point UTM-1136 Juniper SSG 320M SonicWALL NSA 3500 PA Networks PA 500
Firewall (512/1518 bytes) 5 Gbps 300 Mbps 400 Mbps 450 Mbps 1.5 Gbps 250 Mbps
IPSec VPN 2.5 Gbps 170 Mbps 100 Mbps 175 Mbps 625 Mbps 50 Mbps
Antivirus 95 Mbps Option Not Published Not Published 350 Mbps 100 Mbps
IPS Throughput 500 Mbps Option 300 Mbps Not Published 750 Mbps 100 Mbps
Gateway-to- Gateway IPSec VPN Tunnels 2,000 250 Not Published 500 800 Not Supported
Concurrent Sessions 500K 50K/130K 300,000 64,000 128,000 64,000
New Sessions/Sec 15,000 9,000 Not Published 8,000 7,000 7,500
Policies 6,000 Not Published Not Published 2,000 Not Published Not Published
US List Price (USD) 2,995 3,495-4,495 4,800 3,500 3,400 4,500
16FG-200B Competitive Analysis
Feature FortiGate-200B Cisco ASA 5510 Check Point UTM-1136 Juniper SSG 320M SonicWALL NSA 3500 PA Networks PA 500
Application Control
Data Loss Prevention
WAN Optimization
SSL Content Inspection
Endpoint Control
Virtualization
WAN Optimization requires FSM
offered not offered
17Agenda
18Series Components Pricing
Product Description SKU List Price
FortiGate-200B 8 10/100/1000 ports and 8 10/100 ports FG-200B
FortiGate-200B Bundle Bundle - 8 10/100/1000 ports and 8 10/100 ports FG-200B-BDL
FortiGate Storage Module (FSM) FortiGate Storage Module (FSM), 64 GB Solid State Drive for FortiGate with FSM slot FSM-064
19THANK YOU.
- For more information, visit Fortinet.com or
contact - your preferred Fortinet reseller