Fortinet black logo

Introduction

24.1.0
Copy Link
Copy Doc ID 14154d66-4f02-11ed-9d74-fa163e15d75b:494449
Download PDF

Introduction

This document is intended to provide an architectural overview for both single location and distributed enterprises using Fortinet Wi-Fi gear managed via the FortiLAN Cloud portal.

Executive Summary

FortiLAN Cloud is a unified management platform for standalone FortiAP and FortiSwitch deployments. FortiLAN Cloud provides configuration management and monitoring control from a handful of devices an scaling up to thousands of devices across multiple sites. FortiLAN Cloud offers a simple, intuitive, easy-to-use interface for managing your LAN that is available from anywhere at any time.

To ensure there is no confusion, FortiLAN Cloud is typically for sites that do NOT use a FortiGate. A FortiGate includes a Wifi & Switch Controller that manages local FortiSwitches and FortiAPs, and the FortiGate can be cloud-managed via the FortiGate Cloud portal. FortiLAN Cloud is specifically for FortiSwtiches and FortiAPs that are not under FortiGate management, thus the are typically referred to as stand alone. The following are the strengths of FortiLAN Cloud.

Zero Touch Deployment

Initial configuration of network equipment can be a difficult proposition, often requiring expert staff on site to configure each device individually. FortiLAN Cloud with FortiZTP greatly simplifies initial configuration and onboarding by providing one-touch provisioning when devices are deployed.

Highly Scalable

Cloud-based model can manage deployments from single digits up to multiple thousands of devices, and can easily grow with your deployment along the way.

Multi-Tenancy

Maintain multi-tenancy for many customers within a single license. Simple Central visibility and access across all tenants. Enable Read-Only customer accounts with unique customer logos on reports.

Free and Licensed Tiers

FortiLAN Cloud has a free tier, allowing management of up to 30 FortiAPs, 3 FortiSwitches, 3 sites and 7 days of log storage. Licensed tiers scale with number of sites, hold one year of logs, and introduce advanced wireless and switch features, such as spectrum analysis, advanced roaming, Wireless Intrusion Detection, Airtime Fairness and more.

The FortiLAN Cloud WLAN Architecture Outline

This example depicts a FortiLAN Cloud architecture with branch offices.

  • FortiLAN Cloud Portal and FortiCare account (all sites)
  • Internet access for each site
  • Ethernet switch network with PoE access switch ports for FortiAPs
  • SSIDs for classes of users
  • Authorized users
  • Guest users
  • IoT devices

Intended Audience

This guide is intended for an audience which is interested in learning about FortiLAN Cloud managed wireless LAN architectures. Readers should have a basic understanding of networking, wireless and security concepts before they begin. Interested audience may include:

  • Network, Wireless and Security architects
  • Network, Wireless and Security engineers

About This Guide

After reading the Fortinet Secure Wireless LANs Concept Guide, readers should have a basic understanding of the concepts and terminologies behind Fortinet Standalone Wireless infrastructure. This guide explores further the design of a Wireless LAN for a branch or small campus network managed via the FortiLAN Cloud service portal for one or multiple locations. Learn about the role of the FortiLAN Cloud Portal, about AP placement and channel planning to achieve optimal performance. Also take a deeper dive into the details of the control plane, and how to launch and secure your SSIDs with proper user management and security.

[Future] Readers should use this guide to gather ideas for designing their wireless solution. After completing this Architecture guide, you may move on to the Fortinet FortiGate Cloud managed WLAN Deployment and Configuration Guide for actual steps in deploying a specific design scenario.

Introduction

This document is intended to provide an architectural overview for both single location and distributed enterprises using Fortinet Wi-Fi gear managed via the FortiLAN Cloud portal.

Executive Summary

FortiLAN Cloud is a unified management platform for standalone FortiAP and FortiSwitch deployments. FortiLAN Cloud provides configuration management and monitoring control from a handful of devices an scaling up to thousands of devices across multiple sites. FortiLAN Cloud offers a simple, intuitive, easy-to-use interface for managing your LAN that is available from anywhere at any time.

To ensure there is no confusion, FortiLAN Cloud is typically for sites that do NOT use a FortiGate. A FortiGate includes a Wifi & Switch Controller that manages local FortiSwitches and FortiAPs, and the FortiGate can be cloud-managed via the FortiGate Cloud portal. FortiLAN Cloud is specifically for FortiSwtiches and FortiAPs that are not under FortiGate management, thus the are typically referred to as stand alone. The following are the strengths of FortiLAN Cloud.

Zero Touch Deployment

Initial configuration of network equipment can be a difficult proposition, often requiring expert staff on site to configure each device individually. FortiLAN Cloud with FortiZTP greatly simplifies initial configuration and onboarding by providing one-touch provisioning when devices are deployed.

Highly Scalable

Cloud-based model can manage deployments from single digits up to multiple thousands of devices, and can easily grow with your deployment along the way.

Multi-Tenancy

Maintain multi-tenancy for many customers within a single license. Simple Central visibility and access across all tenants. Enable Read-Only customer accounts with unique customer logos on reports.

Free and Licensed Tiers

FortiLAN Cloud has a free tier, allowing management of up to 30 FortiAPs, 3 FortiSwitches, 3 sites and 7 days of log storage. Licensed tiers scale with number of sites, hold one year of logs, and introduce advanced wireless and switch features, such as spectrum analysis, advanced roaming, Wireless Intrusion Detection, Airtime Fairness and more.

The FortiLAN Cloud WLAN Architecture Outline

This example depicts a FortiLAN Cloud architecture with branch offices.

  • FortiLAN Cloud Portal and FortiCare account (all sites)
  • Internet access for each site
  • Ethernet switch network with PoE access switch ports for FortiAPs
  • SSIDs for classes of users
  • Authorized users
  • Guest users
  • IoT devices

Intended Audience

This guide is intended for an audience which is interested in learning about FortiLAN Cloud managed wireless LAN architectures. Readers should have a basic understanding of networking, wireless and security concepts before they begin. Interested audience may include:

  • Network, Wireless and Security architects
  • Network, Wireless and Security engineers

About This Guide

After reading the Fortinet Secure Wireless LANs Concept Guide, readers should have a basic understanding of the concepts and terminologies behind Fortinet Standalone Wireless infrastructure. This guide explores further the design of a Wireless LAN for a branch or small campus network managed via the FortiLAN Cloud service portal for one or multiple locations. Learn about the role of the FortiLAN Cloud Portal, about AP placement and channel planning to achieve optimal performance. Also take a deeper dive into the details of the control plane, and how to launch and secure your SSIDs with proper user management and security.

[Future] Readers should use this guide to gather ideas for designing their wireless solution. After completing this Architecture guide, you may move on to the Fortinet FortiGate Cloud managed WLAN Deployment and Configuration Guide for actual steps in deploying a specific design scenario.