FortiSASE is a software as a service-based service that allows clients to securely access the Internet with the protection from FortiOS. With FortiSASE, you can ensure to protect remote off-net endpoints and users with the same security policies as when they are on-net, no matter their location. The service is available through a subscription based on the number of endpoints or users.
FortiSASE works with various FortiCloud services in the background to deliver a seamless service for securing your Internet access.
In terms of security, FortiSASE offers the following features to protect clients:
- Web Filter
- Intrusion prevention
- File filter
- Data leak prevention
- Application control
- SSL inspection
Security features are customizable and offer many familiar settings as you would see on a FortiGate.
FortiSASE offers the following modes:
- Endpoint mode, where endpoints connect to FortiSASE through an always-up VPN connection using FortiClient. In endpoint mode, you can also configure zero trust network access, an access control method that uses client device identification, authentication, and zero trust tags to provide role-based application access. See Endpoint mode.
- Secure Web Gateway (SWG) mode, where users configure FortiSASE as an SWG server in their browser. See SWG mode.
For details on the deployment process, see FortiSASE Cloud Deployment.
User provisioning is made simple, whether you are creating local users in bulk, integrating users from your Active Directory or LDAP server, or integrating with SAML authentication. You can also easily group your users to apply similar VPN or SWG policies.