对于FortiGate SD-WAN SPA用例,您必须配置新的Fortigate SD-WAN部署,或者已经配置了现有的FortiGate SD-WAN部署。您然后配置fortisase与Fortigate SD-WAN集线器进行通信。完成此配置后,Fortisase Security的存在点(POP)充当该轮毂的发言,依靠IPSEC VPN覆盖层和IBGP来保护和在组织Fortigate SD-WAN HUB和OKEN网络背后的POP和网络之间进行访问和路由流量。
Fortigate Cloud是一项SaaS服务,可为Fortinet Fortigate NGFWS提供简化的管理,安全分析和报告,以帮助您更有效地管理设备并降低网络风险。它简化了零触摸式配置的最初部署,设置和持续的管理设备,例如Fortiap,FortiSwitch和Fortiextender等连接设备。它为交通分析和安全威胁提供了实时和历史可见性,以降低风险并改善安全姿势。查看在云中存储的各种威胁,网络流量和系统事件长达一年,并提供预定义的报告,以满足合规性并提供可行的见解。
服务解决了应用程序使用情况以及总体数据安全性的许多安全用例。这由数据泄漏(DLP)组成,可确保跨网络,云和用户的数据可见性,管理和保护(包括阻止去渗透),同时简化合规性和隐私实现。分别,我们的内联云访问安全经纪人(CASB)服务保护运动,静止和云中的数据。服务执行主要合规性标准,并管理帐户,用户和云应用程序使用情况。服务还包括旨在不断评估您的基础架构的功能,验证配置是否有效和安全,并产生对可能影响业务运营的风险和脆弱性的认识。这包括在物联网设备上进行物联网检测和物联网漏洞相关性的覆盖范围。
版权所有©2024 Fortinet,Inc。保留所有权利。fortinet®,fortigate®,forticare®和fortiguard®以及某些其他商标是Fortinet,Inc。的注册商标,此处的其他Fortinet名称也可以注册和/或Fortinet的普通法商标。所有其他产品或公司名称可能是其各自所有者的商标。的性能和其他指标,实际绩效和其他结果可能会有所不同。网络变量,不同的网络环境和其他条件可能会影响性能结果。Nothing herein represents any binding commitment by Fortinet, and Fortinet disclaims all warranties, whether express or implied, except to the extent Fortinet enters a binding written contract, signed by Fortinet's SVP Legal and above, with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and, in such event, only the specific performance metrics expressly identified in such binding written contract shall对Fortinet有约束力。为了绝对清晰,任何此类保修都将仅限于与Fortinet内部实验室测试相同的理想条件下的性能。Fortinet完全根据明示或暗示的任何盟约,代表和保证。Fortinet保留更改,修改,转让或以其他方式修改本出版物的权利,恕不另行通知,最新版本的出版物应适用。
a)Fortigate标志ForticLient提交的客户证书。这是错误的,因为FortiGate不会签署客户证书。
Change log 6 Introduction 7 Endpoint mode 9 SWG mode 10 Embedded onboarding guide 10 FortiFlex licensing 13 Network restrictions removed 13 Required services and ports 14 Signing in as an IAM user 14 Supporting external IdP users 15 System status notifications 15 Dashboards 16 Adding a custom dashboard 16 Resetting all dashboards 17 Drilling down on vulnerabilities 17 FortiView monitors 18 Adding a custom monitor 19 Resetting all monitors 19监视薄边缘带宽用法20薄边缘21边缘设备23 fortiextender 23先决条件23查看新的Fortiextender的通知26将fortiextender作为Fortiextender fortiextender fortiSase lan Extension 26 fortigation 34 forterecites 35先决条件35查看以备fortigation 36的fortigation fortigation 36 fortia fortia fortia fortia fortia fortia fortia fortia fortiapiace 39 FortiAP as FortiSASE edge device 41 Network 51 Secure private access 51 Prerequisites 53 Configuring the FortiSASE security PoPs as the FortiGate hub's spokes 54 Verifying IPsec VPN tunnels on the FortiGate hub 73 Testing private access connectivity to FortiGate hub network from remote users 75 Verifying BGP routing on the FortiGate hub 75 Verifying private access traffic in FortiSASE portal 75 Verifying private access使用资产图77托管端点77
Change log 6 Introduction 7 Endpoint mode 8 SWG mode 9 Signing in as an IAM user 9 System status notifications 10 Required services and ports 10 Supporting external IdP users 10 Dashboards 11 Adding a custom dashboard 11 Resetting all dashboards 12 Drilling down on vulnerabilities 12 FortiView monitors 13 Adding a custom monitor 14 Resetting all monitors 14 Monitoring thin-edge bandwidth usage 15 Thin-Edge 16 Edge devices 18 FortiExtender 18 Prerequisites 18 Viewing notifications for a new FortiExtender 21 Configuring FortiExtender as FortiSASE LAN Extension 21 FortiGate 29 Prerequisites 30 Viewing notifications for a new FortiGate 31 Configuring FortiGate as FortiSASE LAN Extension 31 FortiAP 36 Prerequisites 36 Viewing notifications for a new FortiAP 38 Configuring FortiAP as FortiSASE edge device 38 Network 46 Secure private access 46 Prerequisites 48配置Fortisase Security将POP弹出为Fortigate Hub的辐条49在Fortigate Hub 68上验证IPSEC VPN隧道68测试私人访问连接到Fortigate Hub网络的私人访问连接70验证BGP在Fortigate Hub 70上验证BGP路由70在Fortigate Hub 70上验证私人访问72的私人访问72的私人访问72示例:默认情况下,确认端点已添加到管理中74示例:从管理75
更改日志8入门9要求9许可10初始化Fortisase 11简介12使用FOTICLIENT 14 SWG无代理模式15专用公共IP地址15嵌入登机指南16 FORTIFLEX许可19所需的服务和端口19中的端口和端口19的签名24 iam用户识别24远程启用22远程启用22 external IdP users 25 Dashboards 26 Adding a custom dashboard 26 Resetting all dashboards 27 Drilling down on vulnerabilities 27 FortiView monitors 28 Adding a custom monitor 28 Resetting all monitors 29 Monitoring thin-edge bandwidth usage 29 Thin-Edge 31 Edge devices 33 FortiExtender 33 Prerequisites 33 Viewing notifications for a new FortiExtender 36 Configuring FortiExtender as FortiSASE LAN Extension 37 Fortigate 45先决条件46查看新的Fortigate 47将Fortigate配置为Fortigate fortigate 47 Fortiap 50 50先决条件50查看新的Fortiap 52 52将Fortiap配置为Fortisase Edge设备52 SD-WAN RAMP 65
更改日志6介绍和支持的模型8支持的模型8 Fortigation 6000和7000支持8特殊通知9超大的不相容性和限制9 FortiGate 6000和7000不相容性和7000不相容性和限制9删除OCVPN支持9删除OCVPN支持9删除WTP配置文件9 Admin and super_admin administrators cannot log in after a prof_admin VDOM administrator restores the VDOM configuration and reboots the FortiGate 11 SMB drive mapping with ZTNA access proxy 11 Remote access with write rights through FortiGate Cloud 12 FortiGuard Web Filtering Category v10 update 12 FortiAP-W2 models may experience bootup failure during automatic firmware and federated upgrade process if they are powered by a managed FortiSwitch's PoE port 12 CLI系统权限13使用ECMP途径的本地流量可以使用不同的端口或服务器13 CLI的变化15 GUI行为的变化16违约行为的变化17表尺寸的变化17新功能或增强功能19 Cloud 6000和7000平台19 GUI 19 GUI 20 Hyperscale 20 Hyperscale 20 Hyperscale 20 Lan Edge 20 LAN Edge 21 Log&Report
Change Log 6 Introduction and supported models 8 Supported models 8 FortiGate 6000 and 7000 support 8 Special notices 9 Hyperscale incompatibilities and limitations 9 FortiGate 6000 and 7000 incompatibilities and limitations 9 SSL VPN removed from 2GB RAM models for tunnel and web mode 9 2 GB RAM FortiGate models no longer support FortiOS proxy-related features 10 FortiGate VM memory and upgrade 10 Hyperscale NP7 hardware limitation 10 FortiGate cannot restore configuration file 10 Changes in CLI 12 Changes in GUI behavior 13 Changes in default behavior 14 Changes in table size 15 New features or enhancements 16 Cloud 16 GUI 16 LAN Edge 17 Log & Report 20 Network 21 Policy & Objects 26 SD-WAN 27 Security Fabric 28 Security Profiles 29 System 31 User & Authentication 34 VPN 34 ZTNA 35 Upgrade information 37 Fortinet Security Fabric upgrade 37 Downgrading to previous firmware版本39固件图像校验和39 FortiGate 6000和7000升级信息39 CP-ACCEL模式的默认设置2GB内存模型40产品集成和支持41虚拟化环境42语言支持42 SSL VPN VPN支持43