FortiGate 300D Next Generation Firewall Enterprise Branch .

2y ago
12 Views
2 Downloads
1.38 MB
6 Pages
Last View : 21d ago
Last Download : 2m ago
Upload by : Azalea Piercy
Transcription

FortiGate 300DNext Generation FirewallEnterprise BranchSecure SD-WAN The FortiGate 300D delivers next generation firewall capabilities for mid-sized to large enterprises, withthe flexibility to be deployed at the campus or enterprise branch. Protects against cyber threats withsecurity processor powered high performance, security efficacy and deep visibility.Security§§ Protects against known exploits, malware and maliciouswebsites using continuous threat intelligence provided byFortiGuard Labs security services§§ Identify thousands of applications including cloud applicationsfor deep inspection into network traffic§§ Detects unknown attacks using dynamic analysis and providesautomated mitigation to stop targeted attacksPerformance§§ Delivers industry’s best threat protection performance andultra-low latency using purpose-built security processor(SPU) technology§§ Provides industry-leading performance and protection for SSLencrypted trafficCertification§§ Independently tested and validated best security effectivenessand performance§§ Received unparalleled third-party certifications from NSS Labs,ICSA, Virus Bulletin and AV ComparativesNetworking§§ Delivers an extensive routing, switching, wireless controllerand high performance IPsec VPN capabilities to consolidatenetworking and security functionality§§ Enables flexible deployment such as Next Generation Firewalland Secure SD-WANManagement§§ Single Pane of Glass with Network Operations Center (NOC)view provides 360 visibility to identify issues quickly andintuitively§§ Predefined compliance checklist analyzes the deployment andhighlights best practices to improve overall security postureSecurity Fabric§§ Enables Fortinet and Fabric-ready partners’products to collaboratively integrate andprovide end-to-end security across the entireattack surface§§ Automatically builds Network Topology visualizations whichdiscover IoT devices and provide complete visibility intoFortinet and Fabric-ready partner productsFirewallIPSNGFWThreat ProtectionInterfaces8 Gbps2 Gbps1.7 Gbps1.5 GbpsMultiple GE RJ45 and GE SFP SlotsRefer to specification table for detailsDATA SHEET

FortiGate 300D DEPLOYMENTN ext GenerationFirewall (NGFW)S ecureSD-WAN§§ Combines threat prevention security capabilities into single high§§ Secure direct Internet access for Cloud applications forperformance network security applianceimproved latency and reduce WAN cost spending§§ Reduces complexity by creating campus topology view§§ Effective, cost-efficient and high performance threatand providing granular visibility of devices, users andthreat informationprevention capabilities§§ WAN Path Controller and Link Health Monitoring for better§§ Identify and stop threats with powerful intrusion preventionbeyond port and protocol that examines the actual content ofapplication performance§§ Security Processor powered industry’s best IPsec VPN and SSLyour network trafficInspection performance§§ Delivers industry’s highest SSL inspection performance using§§ Centralized Management and Zero-Touch deploymentindustry-mandated ciphers§§ Proactively detect malicious unknown threats using integratedcloud-based sandbox serviceFortiSandboxAdvanced ementFortiAnalyzerLogging, Analysis,ReportingFortiGateNGFWFortiAPSecure AccessPointFortiClientEndpoint ProtectionFortiExtender3G/4G LTEWireless WANExtenderFortiAPSecure AccessPointCAMPUS ent FortiGateNGFWFortiClientEndpoint ProtectionFortiGate 300D deployment in campus(NGFW)2ecIPsFortiGateSecure SD-WANFortiDeploy (via FortiCloud)Zero-touch Bulk ProvisioningFortiGate 300D deployment in branch office(Secure SD-WAN)www.fortinet.com

FortiGate 300D HARDWAREFortiGate 300D123456NP6CP81U120GBRPSInterfaces1. Console Port (RJ45)2. 2x USB Ports3. 2x GE RJ45 Management Ports4. 4x GE RJ45 Ports5. 4x GE SFP Slots6. FRPS ConnectorNetwork ProcessorPowered by SPU§§ Custom SPU processors deliver thepower you need to detect maliciouscontent at multi-Gigabit speeds§§ Other security technologies cannot protect againsttoday’s wide range of content- and connection-basedthreats because they rely on general-purpose CPUs,Fortinet’s new, breakthrough SPU NP6 network processor worksinline with FortiOS functions delivering:§§ Superior firewall performance for IPv4/IPv6, SCTP and multicasttraffic with ultra-low latency down to 2 microseconds§§ VPN, CAPWAP and IP tunnel acceleration§§ Anomaly-based intrusion prevention, checksum offload andpacket defragmentation§§ Traffic shaping and priority queuingcausing a dangerous performance gap§§ SPU processors provide the performance neededto block emerging threats, meet rigorous third-partycertifications, and ensure that your network securitysolution does not become a network bottleneckContent ProcessorThe SPU CP8 content processor works outside of the direct flow oftraffic, providing high-speed cryptography and content inspectionservices including:§§ Signature-based content inspection acceleration§§ Encryption and decryption offloading3

FortiGate 300D FORTINET SECURITY FABRICSecurity FabricAdvanced ThreatIntelligenceNOC/SOCThe Security Fabric allows security to dynamically expand andadapt as more and more workloads and data are added. Securityseamlessly follows and protects data, users, and applicationsCloudClientas they move between IoT, devices, and cloud environmentsthroughout the network.FortiGates are the foundation of Security Fabric, expanding securityNetworkAccessApplicationvia visibility and control by tightly integrating with other Fortinetsecurity products and Fabric-Ready Partner solutions.Partner APIFortiOSControl all the security and networking capabilities across the entireFortiGate platform with one intuitive operating system. Reduceoperating expenses and save time with a truly consolidated nextgeneration security platform.§§ A truly consolidated platform with one OS for all security andnetworking services for all FortiGate platforms.§§ Industry-leading protection: NSS Labs Recommended, VB100,AV Comparatives, and ICSA validated security and performance.§§ Control thousands of applications, block the latest exploits, andfilter web traffic based on millions of real-time URL ratings.§§ Prevent, detect, and mitigate advanced attacks automatically inminutes with integrated advanced threat protection.§§ Fulfill your networking needs with extensive routing, switching,and SD-WAN capabilities.§§ Ultilize SPU hardware acceleration to boost security capabilityperformance.For more information, please refer to the FortiOS datasheet available at www.fortinet.comSERVICESFortiGuard Security ServicesFortiCare Support ServicesFortiGuard Labs offers real-time intelligence on the threatOur FortiCare customer support team provides global technicallandscape, delivering comprehensive security updates acrosssupport for all Fortinet products. With support staff in the Americas,the full range of Fortinet’s solutions. Comprised of securityEurope, Middle East, and Asia, FortiCare offers services to meetthreat researchers, engineers, and forensic specialists, thethe needs of enterprises of all sizes.team collaborates with the world’s leading threat monitoringorganizations and other network and security vendors, as well aslaw enforcement agencies.4For more information, please refer to forti.net/fortiguardand forti.net/forticarewww.fortinet.com

FortiGate 300D SPECIFICATIONSFORTIGATE 300DFORTIGATE 300DDimensions and PowerInterfaces and ModulesGE RJ45 Interfaces4Height x Width x Length (inches)1.73 x 17 x 12.68GE SFP Slots4Height x Width x Length (mm)44 x 432 x 322GE RJ45 Management Ports2Weight10.5 lbs (4.8 kg)USB (Client / Server)1/2Form Factor1 RURJ45 Console Port1Power Consumption (Average / Maximum)106 W / 194 WLocal Storage120 GB SSDPower Source100–240V AC, 60–50HzIncluded Transceivers2x SFP (SX 1 GE)Current (Maximum)110V/4A, 220V/2AHeat Dissipation660 BTU/hSystem Performance and CapacityIPv4 Firewall Throughput(1518 / 512 / 64 byte, UDP)8 / 8 / 8 GbpsIPv6 Firewall Throughput(1518 / 512 / 64 byte, UDP)8 / 8 / 8 GbpsFirewall Latency (64 byte, UDP)3 μsFirewall Throughput (Packet per Second)12 MppsConcurrent Sessions (TCP)4 MillionNew Sessions/Second (TCP)200,000Firewall Policies10,000IPsec VPN Throughput (512 byte) 17 GbpsGateway-to-Gateway IPsec VPN Tunnels2,000Client-to-Gateway IPsec VPN Tunnels50,000SSL-VPN Throughput350 MbpsConcurrent SSL-VPN Users(Recommended Maximum, Tunnel Mode)500SSL Inspection Throughput (IPS, HTTP) 31.9 GbpsApplication Control Throughput(HTTP 64K) 24 GbpsCAPWAP Throughput (1444 byte, UDP)5.4 GbpsVirtual Domains (Default / Maximum)10 / 10Maximum Number of Switches Supported48Maximum Number of FortiAPs(Total / Tunnel)512 / 256Maximum Number of FortiTokens1,000Maximum Number of Registered Endpoints600High Availability ConfigurationsActive-Active, Active-Passive, ClusteringOperating Environment and CertificationsOperating Temperature32–104 F (0–40 C)Storage Temperature31–158 F (-35–70 C)Humidity10–90% non-condensingNoise Level45 dBAOperating AltitudeUp to 7,400 ft (2,250 m)ComplianceFCC Part 15 Class A, C-Tick, VCCI, CE, UL/cUL, CBCertificationsICSA Labs: Firewall, IPsec, IPS, Antivirus, SSL-VPN;USGv6/IPv6System Performance — Optimal Traffic MixIPS Throughput 22.8 GbpsSystem Performance — Enterprise Traffic MixIPS Throughput 22 GbpsNGFW Throughput 2, 41.7 GbpsThreat Protection Throughput 2, 51.5 GbpsNote: All performance values are “up to” and vary depending on system configuration.1. IPsec VPN performance test uses AES256-SHA256.2. IPS (Enterprise Mix), Application Control, NGFW and Threat Protection are measured with Logging enabled.3. SSL Inspection performance test uses TLS v1.2 with AES128-SHA256.4. NGFW performance is measured with Firewall, IPS and Application Control enabled.5. Threat Protection performance is measured with Firewall, IPS, Application Control and MalwareProtection enabled.5

FortiGate 300D ORDER INFORMATIONProductSKUDescriptionFortiGate 300DFG-300D6x GE RJ45 ports, 4x GE SFP slots, SPU NP6 and CP8 hardware accelerated, 120 GB onboard storage.FRPS-100External redundant AC power supply for up to 4 units: FG-300C, FG-310B, FS-348B and FS-448B. Up to 2 units: FG-200B, FG-200D, FG-240Dand FG-300D, FG-400D, FG-500D, FG-600D, FHV-500D, FDD-200B, FDD-400B, FDD-600B and FDD-800BOptional AccessoriesExternal Redundant AC Power Supply1 GE SFP LX Transceiver ModuleFG-TRAN-LX1 GE SFP LX transceiver module for all systems with SFP and SFP/SFP slots.1 GE SFP RJ45 Transceiver ModuleFG-TRAN-GC1 GE SFP RJ45 transceiver module for all systems with SFP and SFP/SFP slots.1 GE SFP SX Transceiver ModuleFG-TRAN-SX1 GE SFP SX transceiver module for all systems with SFP and SFP/SFP slots.Enterprise BundleFortiGuard Labs delivers a number of security intelligence services to augment the FortiGate firewall platform. Youcan easily optimize the protection capabilities of your FortiGate with the FortiGuard Enterprise Bundle. This bundlecontains the full set of FortiGuard security services plus FortiCare service and support offering the most flexibilityand broadest range of protection all in one package.GLOBAL HEADQUARTERSFortinet Inc.899 KIFER ROADSunnyvale, CA 94086United StatesTel: 1.408.235.7700www.fortinet.com/salesEMEA SALES OFFICE905 rue Albert Einstein06560 ValbonneFranceTel: 33.4.8987.0500APAC SALES OFFICE300 Beach Road 20-01The ConcourseSingapore 199555Tel: 65.6395.2788LATIN AMERICA SALES OFFICESawgrass Lakes Center13450 W. Sunrise Blvd., Suite 430Sunrise, FL 33323United StatesTel: 1.954.368.9990Copyright 2017 Fortinet, Inc. All rights reserved. Fortinet , FortiGate , FortiCare and FortiGuard , and certain other marks are registered trademarks of Fortinet, Inc., in the U.S. and other jurisdictions, and other Fortinet names herein may also be registered and/or common law trademarks of Fortinet. All otherproduct or company names may be trademarks of their respective owners. Performance and other metrics contained herein were attained in internal lab tests under ideal conditions, and actual performance and other results may vary. Network variables, different network environments and other conditions may affectperformance results. Nothing herein represents any binding commitment by Fortinet, and Fortinet disclaims all warranties, whether express or implied, except to the extent Fortinet enters a binding written contract, signed by Fortinet’s General Counsel, with a purchaser that expressly warrants that the identified productwill perform according to certain expressly-identified performance metrics and, in such event, only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet. For absolute clarity, any such warranty will be limited to performance in the same ideal conditions as inFortinet’s internal lab tests. In no event does Fortinet make any commitment related to future deliverables, features or development, and circumstances may change such that any forward-looking statements herein are not accurate. Fortinet disclaims in full any covenants, representations, and guarantees pursuanthereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise revise this publication without notice, and the most current version of the publication shall be applicable.FST-PROD-DS-GT3HFG-300D-DAT-R8-201708

The FortiGate 300D delivers next generation firewall capabilities for mid-sized to large enterprises, with the flexibility to be deployed at the campus or enterprise branch. Protects against cyber threats with security processor powered high performance, security efficacy and deep visibility.

Related Documents:

Expected Life Span 3-5 years License cost Perpetual License for life. Fortinet Confidential Initial Setup. Fortinet Confidential . FortiGate-50B FortiGate-50B 20 FortiGate- 60B/C FortiGate-80C 500 FortiGate -110C/111C FortiGate-200B FortiGate-310 FortiGate-620 FortiGate-800 1000 FortiGate-1240 FortiGate-3016B

Mar 14, 2021 · Datasheet Fortigate-60D CP0 FortiSOC2 1 1839 3879 n/a Fortigate 60D datasheet FortiWiFi-60E SOC3 ARMv7 4 1863 3662 (EMMC) n/a Fortigate 60E datasheet Fortigate-60E SOC3 ARMv7 4 1866 3662 (EMMC) n/a Fortigate 60E datasheet FortiGate-61E SOC3 ARMv7 4 1866 3662 (EMMC) 122104 Fortigate

FortiGate-100D FortiGate-3700D/DX FortiGate-100E/EF FortiGate-3810D FortiGate-101E FortiGate-3815D FortiGate-140D FortiGate-3950D . Manual Bootdevice AESencrypted UsedtogenerateIKE protocolkeys ByerasingtheBoot deviceandpower cyclingthemodule

FortiGate 300D 次世代ファイアウォール 大規模企業の支社向け セキュアSD-WAN FortiGate 300D は、中規模から大規模の企業

Internal Segmentation Firewall VPN Gateway The FortiGate-VM on OCI delivers next generation firewall capabilities for organizations of all sizes, with the flexibility to be deployed as next generation firewall, internal segmentation firewall and/or VPN gateway. It protects against cyber threats with high performance, security efficacy and deep .

FortiGate 60E FortiGate/FortiWiFi 30D FortiWiFi 90D FortiWiFi 60E Pricing Model FortiGate 100D FortiGate 300D FortiGate 600D MID-RANGE APPLIANCES ENTRY-LEVEL APPLIANCES FortiGate 200D 8 - 20 Gbps 2.5 - 4 Gbps 800 Mbps - 3.5 Gbps High-Performance Network Security Platforms NEW Security Services &a

FortiGate Rugged 30D FortiGate Rugged 35D FortiGate Rugged 60D FortiGate Rugged 90D Product SKU Description FortiGate Rugged 30D FGR-30D Ruggedized, 4x GE RJ45 ports, 2x GE SFP slots, 2x DB9 Serial. Maximum managed FortiAPs (Total / Tunnel) 2 / 2. FortiGate Rugged 35D FGR-35D Ruggedized,

ASTM F2100-11 KC300 Masks† ASTM F1862 Fluid Resistance with synthetic blood, in mm Hg 80 mm Hg 80 mm Hg 120 mm Hg 120 mm Hg 160 mm Hg 160 mm Hg MIL-M-36954C Delta P Differential pressure, mm H 2O/cm2 4.0 mm H 2O 2.7 5.0 mm H 2O 3.7 5.0 mm H 2O 3.0 ASTM F2101 Bacterial Filtration Efficiency (BFE), % 95% 99.9% 98% 99.9% 98% 99.8% .