Security Fabric Integration
The FortiAppSec Cloud ABP system is designed to seamlessly integrate with your existing infrastructure, supporting various products in the Fortinet Security Fabric, including FortiADC and FortiWeb.
|
No. |
Description |
|---|---|
| 1 | User request reaches FortiADC/FortiWeb (as Reverse Proxy). |
| 2 | FortiADC/FortiWeb inserts a JavaScript to the HTTP/S response for telemetric information. |
| 3 | The client and FortiADC/FortiWeb (via Fabric connector) share telemetry data (such as IP, headers, and device fingerprinting) with the Advanced Bot Protection engine. |
| 4 | Using Deep Learning, FortiAppSec Cloud ABP determines if the client is a human or a bot. |
| 5 | ABP sends instructions back to FortiADC/FortiWeb to initiate an action against the request (such as block, CAPTCHA, or allow). |
Supported Fortinet Products for Integration:
- FortiADC — An advanced Application Delivery Controller (ADC) that provides Application availability using Server Load Balancing (in Layer 4 and Layer 7) and Global Server Load Balancing (GSLB), along with application Security features such as Web Application Firewall (WAF), IPS, DLP, Sandbox, AV and more. For integration instructions, please refer to FortiADC Integration
- FortiWeb — A web application firewall (WAF) that protects hosted web applications from attacks that target known and unknown exploits. Using multi-layered and correlated detection methods, FortiWeb defends applications from known vulnerabilities and zero-day threats. The Web Application Security Service from FortiGuard Labs uses information based on the latest application vulnerabilities, bots, suspicious URL and data patterns, and specialized heuristic detection engines to keep your applications safe. For integration instructions, please refer to FortiWeb Integration