Fortinet black logo

AWS Administration Guide

About FortiGate-VM for AWS

Copy Link
Copy Doc ID 9e3b59dc-ba0b-11e9-a989-00505692583a:685891
Download PDF

About FortiGate-VM for AWS

By combining stateful inspection with a comprehensive suite of powerful security features, FortiGate Next Generation Firewall (NGFW) technology delivers complete content and network protection. This solution is available for deployment on AWS.

In addition to advanced features such as an extreme threat database, vulnerability management, and flow-based inspection, features including application control, firewall, antivirus, IPS, web filter, and VPN work in concert to identify and mitigate the latest complex security threats.

The security-hardened FortiOS operating system is purpose-built for inspecting and identifying malware and supports direct Single Root I/O Virtualization (SR-IOV) for higher and more consistent performance.

FortiGate-VM for AWS supports active/passive high availability (HA) configuration with FortiGate-native unicast HA synchronization between the primary and secondary nodes. When the FortiGate-VM detects a failure, the passive firewall instance becomes active and uses AWS API calls to configure its interfaces/ports.

FortiGate-VM also supports active/active HA using elastic load balancing, as well as auto scaling.

Highlights of FortiGate-VM for AWS include the following:

  • Delivers complete content and network protection by combining stateful inspection with a comprehensive suite of powerful security features.
  • IPS technology protects against current and emerging network-level threats. In addition to signature-based threat detection, IPS performs anomaly-based detection, which alerts users to any traffic that matches attack behavior profiles.
  • Docker application control signatures protect your container environments from newly emerged security threats. See FortiGate-VM on a Docker Environment.

About FortiGate-VM for AWS

By combining stateful inspection with a comprehensive suite of powerful security features, FortiGate Next Generation Firewall (NGFW) technology delivers complete content and network protection. This solution is available for deployment on AWS.

In addition to advanced features such as an extreme threat database, vulnerability management, and flow-based inspection, features including application control, firewall, antivirus, IPS, web filter, and VPN work in concert to identify and mitigate the latest complex security threats.

The security-hardened FortiOS operating system is purpose-built for inspecting and identifying malware and supports direct Single Root I/O Virtualization (SR-IOV) for higher and more consistent performance.

FortiGate-VM for AWS supports active/passive high availability (HA) configuration with FortiGate-native unicast HA synchronization between the primary and secondary nodes. When the FortiGate-VM detects a failure, the passive firewall instance becomes active and uses AWS API calls to configure its interfaces/ports.

FortiGate-VM also supports active/active HA using elastic load balancing, as well as auto scaling.

Highlights of FortiGate-VM for AWS include the following:

  • Delivers complete content and network protection by combining stateful inspection with a comprehensive suite of powerful security features.
  • IPS technology protects against current and emerging network-level threats. In addition to signature-based threat detection, IPS performs anomaly-based detection, which alerts users to any traffic that matches attack behavior profiles.
  • Docker application control signatures protect your container environments from newly emerged security threats. See FortiGate-VM on a Docker Environment.