FortiGate 1100E Series Data Sheet - Corporate Armor

2y ago
3 Views
2 Downloads
1.50 MB
6 Pages
Last View : 1m ago
Last Download : 3m ago
Upload by : Anton Mixon
Transcription

DATA SHEETNext Generation FirewallSegmentationIPSMobile SecurityFortiGate 1100E Series FG-1100E and 1101EThe FortiGate 1100E series delivers high performance threat protection and SSL inspection for largeenterprises and service providers, with the flexibility to be deployed at the enterprise/cloud edge, in thedata center core or internal segments. The multiple high-speed interfaces, high port density, superiorsecurity efficacy and high throughput of the 1100E series keeps your network connected and secure.Security§§ Identifies thousands of applications inside network traffic fordeep inspection and granular policy enforcement§§ Protects against malware, exploits, and malicious websites inboth encrypted and non-encrypted traffic§§ Prevent and detect against known and unknown attacks usingcontinuous threat intelligence from AI powered FortiGuard Labssecurity servicesNetworking§§ Delivers advanced networking capabilities that seamlesslyintegrate with advanced layer 7 security and virtual domains(VDOMs) to offer extensive deployment flexibility, multi-tenancyand effective utilization of resources§§ Delivers high-density, flexible combination of various highspeed interfaces to enable best TCO for customers for datacenter and WAN deploymentsPerformance§§ Delivers industry’s best threat protection performance andultra-low latency using purpose-built security processor (SPU)technology§§ Provides industry-leading performance and protection for SSLencrypted trafficManagement§§ Includes management console that is effective, simple to use,and provides comprehensive network automation & visibility.§§ Provides Zero Touch Integration with Security Fabric’s SinglePane of Glass Management§§ Predefined compliance checklist analyzes the deployment andhighlights best practices to improve overall security postureCertification§§ Independently tested and validated best security effectivenessand performance§§ Received unparalleled third-party certifications from NSS LabsFirewall80 GbpsIPS12.5 GbpsRefer to specification table for detailsNGFW9.8 GbpsSecurity Fabric§§ Enables Fortinet and Fabric-ready partners’ products to providebroader visibility, integrated end-to-end detection, threatintelligence sharing and automated remediationThreat ProtectionInterfaces7.1 GbpsMultiple GE RJ45, GE SFP, 10 GE SFP , 25 GE SFP28,and 40 GE QSFP slots

DATA SHEET FortiGate 1100E SeriesDeploymentN ext GenerationFirewall (NGFW)§§ Reduce complexity by combiningSegmentationI PS§§ Intent-based Segmentation builds§§ Highly cost-effective mitigation ofthreat protection security capabilitiesrobust security framework whileunpatched vulnerability for hard-to-into single high-performance networkproactively reducing risk, cost andpatch systems such as IOT, ICS, andsecurity appliance§§ Identify and stop threats with powerfulcomplexityScada§§ Integrates with Security Fabric§§ Protect sensitive data to achieve variousintrusion prevention beyond port andseamlessly to allow third party solutionsregulatory compliance such as PCI,protocol that examines the actualand continuous trust assessment andHIPPA, PII, GDPRapplications in your network traffic§§ Delivers industry’s highest SSLthereby prevent sophisticated attacks§§ Multiple inspection engines, threat§§ Protects critical business applicationsintelligence feeds and advanced threatinspection performance using industry-and helps implement any complianceprotection options to defend againstmandated ciphers while maximizing ROIwithout network redesignsunknown threats in real-time§§ Proactively blocks newly discovered§§ Best of breed intrusion prevention withsophisticated attacks in real-time withhigh-performance SSL inspectionadvanced threat protectionCAMPUSFortiAPSecure AccessPoint Mobile Securityfor 4G, 5G and IOT§§ SGi LAN security powered by multipleSPUs to provide high performanceCGNAT and accelerate IPv4 and IPv6FortiGate 1100E deployment in largecampus networks (NGFW, Intent-basedSegmentation)FortiSandboxAdvanced point WFortiManagerSingle Pane-of-GlassManagement§§ RAN Access Security with highlyFortiAnalyzerAnalytics-poweredSecurity & Log Managementscalable and best performing IPsecaggregation and control securitygateway (SecGW)§§ Various high-speed interfaces toenable deployment flexibilityFortiClientVPN ClientDATACENTERFortiGate 1100E deployment in datacenter (IPS/NGFW, SegmentationFortiManagerSingle eredSecurity & Log Management2

DATA SHEET FortiGate 1100E SeriesHardwareFortiGate 2325222426SFP 27292830SFP28QSFP 3331FortiGate ONDISCONNECT ALLPOWER CORDSBEFORE nterfaces1.2.3.4.2x USB PortsConsole Port2x GE RJ45 MGMT/HA Ports16x GE RJ45 Ports5.6.7.8.8x GE SFP Slots4x 10 GE SFP Slots4x 25 GE SFP28 / 10 GE SFP Slots2x 40 GE QSFP SlotsNetwork ProcessorPowered by SPUFortinet’s new, breakthrough SPU NP6 network processor works§§ Custom SPU processors deliver the§§ Superior firewall performance for IPv4/IPv6, SCTP and multicastpower you need to detect maliciouscontent at multi-Gigabit speeds§§ Other security technologies cannot protect againsttoday’s wide range of content- and connection-basedthreats because they rely on general-purpose CPUs,causing a dangerous performance gap§§ SPU processors provide the performance neededto block emerging threats, meet rigorous third-partycertifications, and ensure that your network securitysolution does not become a network bottleneckinline with FortiOS functions delivering:traffic with ultra-low latency down to 2 microseconds§§ VPN, CAPWAP and IP tunnel acceleration§§ Anomaly-based intrusion prevention, checksum offload andpacket defragmentation§§ Traffic shaping and priority queuingContent ProcessorFortinet’s new, breakthrough SPU CP9 content processor worksoutside of the direct flow of traffic and accelerates the inspection ofcomputationally intensive security features:§§ Enhanced IPS performance with unique capability of fullsignature matching at SPU§§ SSL Inspection capabilities based on the latest industrymandated cipher suites§§ Encryption and decryption offloadingHigh Speed ConnectivityHigh speed connectivity is essential for network security segmentation at the core of data networks. The FortiGate 1100E seriesprovides 40 GE and 25 GE interfaces, simplifying network designswithout relying on additional devices to bridge desired connectivity.3

DATA SHEET FortiGate 1100E SeriesFortinet Security FabricSecurity FabricThe Security Fabric delivers broad visibility, integrated AI-driven breachprevention, and automated operations, orchestration, and responseacross all Fortinet and its ecosystem deployments. It allows security todynamically expand and adapt as more and more workloads and dataare added. Security seamlessly follows and protects data, users, andapplications as they move between IoT, devices, and cloud environmentsthroughout the network. All this is ties together under a single pane ofglass management for significantly thereby delivering leading securitycapabilities across your entire environment while also significantly reducingcomplexity.FortiGates are the foundation of Security Fabric, expanding securityvia visibility and control by tightly integrating with other Fortinet securityproducts and Fabric-Ready Partner solutions.FortiOSControl all security and networking capabilities across the entireFortiGate platform with one intuitive operating system. Reducecomplexity, costs, and response time with a truly consolidatednext-generation security platform.§§ A truly consolidated platform with a single OS and pane-of-glassfor all security and networking services across all FortiGateplatforms.§§ Industry-leading protection: NSS Labs Recommended, VB100,AV Comparatives, and ICSA validated security and performance.Ability to leverage latest technologies such as deception-basedsecurity.§§ Control thousands of applications, block the latest exploits, andfilter web traffic based on millions of real-time URL ratings inaddition to true TLS 1.3 support.§§ Prevent, detect, and mitigate advanced attacks automaticallyin minutes with integrated AI-driven breach prevention andadvanced threat protection.§§ Fulfil your networking needs with extensive routing, switching,and SD-WAN capabilities along with intent-based segmentation.§§ Utilize SPU hardware acceleration to boost security capabilityperformance.ServicesFortiGuard Security ServicesFortiCare Support ServicesFortiGuard Labs offers real-time intelligence on the threatOur FortiCare customer support team provides global technicallandscape, delivering comprehensive security updates acrosssupport for all Fortinet products. With support staff in the Americas,the full range of Fortinet’s solutions. Comprised of securityEurope, Middle East, and Asia, FortiCare offers services to meetthreat researchers, engineers, and forensic specialists, thethe needs of enterprises of all sizes.team collaborates with the world’s leading threat monitoringorganizations and other network and security vendors, as well aslaw enforcement agencies.4For more information, please refer to forti.net/fortiguardand forti.net/forticare

DATA SHEET FortiGate 1100E SeriesSpecificationsFORTIGATE 1100EFORTIGATE 1101EInterfaces and ModulesFORTIGATE 1100EHardware Accelerated 40 GE QSFP Slots2Height x Width x Length (inches)Hardware Accelerated 25 GE SFP28 /10 GE SFP Slots4Height x Width x Length (mm)Hardware Accelerated 10 GE SFP Slots4Form FactorHardware Accelerated GE SFP Slots8AC Power SupplyHardware Accelerated GE RJ45 Ports16Power Consumption (Average / Maximum)GE RJ45 Management / HA Ports2Current (Maximum)WeightUSB Ports (Client / Server)1/2Console PortOnboard StorageIncluded TransceiversHeat Dissipation10Redundant Power Supplies2x 480 GB SSD.2x SFP (SX 1 GE)System Performance — Enterprise Traffic MixOperating TemperatureNoise LevelThreat Protection Throughput 2, 57.1 GbpsOperating AltitudeIPv6 Firewall Throughput(1518 / 512 / 86 byte, UDP)80 / 80 / 45 GbpsFirewall Throughput (Packet per Second)8 Million500,000Firewall Policies100,000IPsec VPN Throughput (512 byte) 148 GbpsGateway-to-Gateway IPsec VPN Tunnels20,000Client-to-Gateway IPsec VPN Tunnels100,000SSL-VPN Throughput8.4 GbpsConcurrent SSL-VPN Users(Recommended Maximum, Tunnel Mode)10,000Application Control Throughput (HTTP 64K) 226 GbpsCAPWAP Throughput (HTTP 64K)43 GbpsVirtual Domains (Default / Maximum)10 / 250Maximum Number of FortiSwitches Supported128Maximum Number of FortiAPs (Total / Tunnel)4,096 / 1,024High Availability Configurations32–104 F (0–40 C)66.7 dBAUp to 7,400 ft (2,250 m)ComplianceFCC Part 15 Class A, C-Tick, VCCI, CE, UL/cUL, CBCertificationsICSA Labs: Firewall, IPsec, IPS, Antivirus, SSL-VPN;USGv6/IPv66,500780,000Maximum Number of Registered FortiClients1181 BTU/hYes, Hot swappable10.0 GbpsSSL Inspection Concurrent Session(IPS, avg. HTTPS) 3Maximum Number of FortiTokens1147 BTU/h3 μsNew Sessions/Second (TCP)SSL Inspection CPS (IPS, avg. HTTPS) 3222 W / 346 W6A@120V, 3A@240V67.5 MppsConcurrent Sessions (TCP)SSL Inspection Throughput (IPS, avg. HTTPS) 3100–240V AC, 50–60 Hz217 W / 336 W10–90% non-condensingHumidity9.8 Gbps80 / 80 / 45 Gbps25.4 lbs (11.55 kg)Rack Mount, 2 RU-31–158 F (-35–70 C)12.5 GbpsIPv4 Firewall Throughput(1518 / 512 / 64 byte, UDP)88.9 x 443 x 447.424.9 lbs (11.3 kg)Storage TemperatureNGFW Throughput 2, 4System Performance and Capacity3.5 x 17.44 x 17.62Operating Environment and CertificationsIPS Throughput 2Firewall Latency (64 byte, UDP)FORTIGATE 1101EDimensions and Power20,00020,000Active-Active, Active-Passive, ClusteringNote: All performance values are “up to” and vary depending on system configuration.1. IPsec VPN performance test uses AES256-SHA256.2. IPS (Enterprise Mix), Application Control, NGFW and Threat Protection are measured with Logging enabled.3. SSL Inspection performance values use an average of HTTPS sessions of different cipher suites.4. NGFW performance is measured with Firewall, IPS and Application Control enabled.5. Threat Protection performance is measured with Firewall, IPS, Application Control and MalwareProtection enabled.5

DATA SHEET FortiGate 1100E SeriesOrder InformationProductSKUDescriptionFortiGate 1100EFG-1100E2x 40 GE QSFP slots, 4x 25 GE SFP28 slots, 4x 10 GE SFP slots, 8x GE SFP slots, 18x GE RJ45 ports (including16x ports, 2x management/HA ports) SPU NP6 and CP9 hardware accelerated, and 2 AC power supplies.FortiGate 1101EFG-1101E2x 40 GE QSFP slots, 4x 25 GE SFP28 slots, 4x 10 GE SFP slots, 8x GE SFP slots, 18x GE RJ45 ports (including16x ports, 2x management/HA ports) SPU NP6 and CP9 hardware accelerated, 960 GB SSD onboard storage, and2 AC power supplies.Optional Accessories/SparesSKUDescription1 GE SFP LX Transceiver ModuleFG-TRAN-LX1 GE SFP LX transceiver module for all systems with SFP and SFP/SFP slots.1 GE SFP RJ45 Transceiver ModuleFG-TRAN-GC1 GE SFP RJ45 transceiver module for all systems with SFP and SFP/SFP slots.1 GE SFP SX Transceiver ModuleFG-TRAN-SX1 GE SFP SX transceiver module for all systems with SFP and SFP/SFP slots.10 GE SFP Transceiver Module, Short RangeFG-TRAN-SFP SR10 GE SFP transceiver module, short range for all systems with SFP and SFP/SFP slots.10 GE SFP Transceiver Module, Long RangeFG-TRAN-SFP LR10 GE SFP transceiver module, long range for all systems with SFP and SFP/SFP slots.10 GE SFP Active Direct Attach Cable, 10m / 32.8 ftSP-CABLE-ADASFP 10 GE SFP active direct attach cable, 10m / 32.8 ft for all systems with SFP and SFP/SFP slots.25 GE SFP28 Transceiver Module, Long RangeFG-TRAN-SFP28-LR25 GE SFP28 transceiver module, long range for all systems with SFP28 slots.25 GE/10 GE Dual Rate SFP28 Transceiver Module, Short RangeFG-TRAN-SFP28-SR25 GE/10 GE dual rate SFP28 transceiver module, short range for all systems with SFP28/SFP slots.40 GE QSFP Transceivers, Short RangeFG-TRAN-QSFP SR40 GE QSFP transceivers, short range for all systems with QSFP slots.40 GE QSFP Transceivers, Short Range, BiDiFG-TRAN-QSFP SR-BIDI40 GE QSFP transceivers, short range BiDi for systems with QSFP slots.40 GE QSFP Transceivers, Long RangeFG-TRAN-QSFP LR40 GE QSFP transceivers, long range for all systems with QSFP slots.Rack Mount Sliding RailsSP-FG3040B-RAILRack mount sliding rails for FG-1000C/-DC, FG-1100/1101E, FG-1200D, FG-1500D/-DC, FG-2000E, FG-2500E,FG-3040B/-DC, FG-3140B/-DC, FG-3240C/-DC, FG-3000D/-DC, FG-3100D/-DC, FG-3200D/-DC, FG-3400/3401E,FG-3600/3601E, FG-3700D/-DC, FG-3700DX, FG-3810D/-DC and FG-3950B/-DC.AC Power SupplySP-FG300E-PSAC power supply for FG-300/301E, FG-400/401E, FG-500/501E, FG-600/601E, FG-1100/1101E,FAZ-200F/FAZ-300F/FMG-200F and d Labs delivers anumber of security intelligenceservices to augment theFortiGate firewall platform.You can easily optimize theprotection capabilities of yourFortiGate with one of theseFortiGuard MThreatProtectionFortiCareASE 124x724x724x7FortiGuard App Control Service FortiGuard IPS Service FortiGuard Advanced Malware Protection (AMP) — Antivirus, Mobile Malware,Botnet, CDR, Virus Outbreak Protection and FortiSandbox Cloud Service FortiGuard Web Filtering Service FortiGuard Antispam Service FortiGuard Security Rating Service FortiGuard Industrial Service FortiCASB SaaS-only Service FortiConverter Service SD-WAN Cloud Assisted Monitoring 2 SD-WAN Overlay Controller VPN Service 2 FortiAnalyzer Cloud 2 FortiManager Cloud 2 1. 24x7 plus Advanced Services Ticket Handling2. Available when running FortiOS 6.2www.fortinet.comCopyright 2019 Fortinet, Inc. All rights reserved. Fortinet , FortiGate , FortiCare and FortiGuard , and certain other marks are registered trademarks of Fortinet, Inc., and other Fortinet names herein may also be registered and/or common lawtrademarks of Fortinet. All other product or company names may be trademarks of their respective owners. Performance and other metrics contained herein were attained in internal lab tests under ideal conditions, and actual performance and other resultsmay vary. Network variables, different network environments and other conditions may affect performance results. Nothing herein represents any binding commitment by Fortinet, and Fortinet disclaims all warranties, whether express or implied, except tothe extent Fortinet enters a binding written contract, signed by Fortinet’s General Counsel, with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and, in such event,only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet. For absolute clarity, any such warranty will be limited to performance in the same ideal conditions as in Fortinet’s internal lab tests.Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise revise this publication without notice, and the most current versionof the publication shall be applicable. Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise revise this publication withoutnotice, and the most current version of the publication shall be applicable.FST-PROD-DS-GT1K3FG-1100E-DAT-R6-201908

DATA SHEET FortiGate 1100E Series 5 Specifications Note: All performance values are “up to” and vary depending on system configuration. 1. IPsec VPN performance test uses AES256-SHA256. 2. IPS (Enterprise Mix), Application Control, NGFW and Threat Protection are measured with

Related Documents:

Expected Life Span 3-5 years License cost Perpetual License for life. Fortinet Confidential Initial Setup. Fortinet Confidential . FortiGate-50B FortiGate-50B 20 FortiGate- 60B/C FortiGate-80C 500 FortiGate -110C/111C FortiGate-200B FortiGate-310 FortiGate-620 FortiGate-800 1000 FortiGate-1240 FortiGate-3016B

Mar 14, 2021 · Datasheet Fortigate-60D CP0 FortiSOC2 1 1839 3879 n/a Fortigate 60D datasheet FortiWiFi-60E SOC3 ARMv7 4 1863 3662 (EMMC) n/a Fortigate 60E datasheet Fortigate-60E SOC3 ARMv7 4 1866 3662 (EMMC) n/a Fortigate 60E datasheet FortiGate-61E SOC3 ARMv7 4 1866 3662 (EMMC) 122104 Fortigate

FortiGate-100D FortiGate-3700D/DX FortiGate-100E/EF FortiGate-3810D FortiGate-101E FortiGate-3815D FortiGate-140D FortiGate-3950D . Manual Bootdevice AESencrypted UsedtogenerateIKE protocolkeys ByerasingtheBoot deviceandpower cyclingthemodule

FortiGate Rugged 30D FortiGate Rugged 35D FortiGate Rugged 60D FortiGate Rugged 90D Product SKU Description FortiGate Rugged 30D FGR-30D Ruggedized, 4x GE RJ45 ports, 2x GE SFP slots, 2x DB9 Serial. Maximum managed FortiAPs (Total / Tunnel) 2 / 2. FortiGate Rugged 35D FGR-35D Ruggedized,

FortiGate Rugged 30D FortiGate Rugged 35D FortiGate Rugged 60D FortiGate Rugged 90D Product SKU Description FortiGate Rugged 30D FGR-30D Ruggedized, 4x GE RJ45 ports, 2x GE SFP slots, 2x DB9 Serial. Maximum managed FortiAPs (Total / Tunnel) 2 / 2. FortiGate Rugged 35D FGR-35D Ruggedized, IP67 rating for outdoor environment, 3x GE RJ45 Switch ports.

The information in this guide applies to all FortiGate un its. All FortiGate models except the FortiGate-30B model support VDOMs, and all FortiGate models support VLANs. By default, your FortiGate unit supports a maximum of 10 VDOMs in any combination of NAT/Route and Transparent operating modes. For FortiGate models numbered

FORTIGATE 200D FORTIGATE 200D-POE FORTIGATE 240D FORTIGATE 240D-POE FORTIGATE 280D-POE Hardware Specifications GE RJ45 WAN Interfaces 2 2 2 2 2 GE RJ45 LAN Interfaces 16 8 40 16 52 GE RJ45 PoE LAN Interfaces – 8 – 24 32 GE SFP DMZ Interfaces 2 2

Adventure tourism is a rapidly expanding sector of the tourism industry internationally. New Zealand is internationally recognised as a country where adventure tourism and adventure sports are undertaken by a large proportion of the resident and visitor population. While the risks associated with adventure tourism and adventure sport activity are increasingly highlighted in media reports of .