FortiSASE 使组织能够授予每个用户和每个会话对 Web、云和应用程序的安全访问权限,无论它们部署在何处,并结合完全集成的企业级安全性。通过安全性和网络之间的无缝融合,FortiSASE 可确保将相同级别的保护、可见性和用户体验扩展到任何地方的每个用户。对于那些注重合规性的人来说,FortiSASE 已通过服务组织控制 (SOC2) 认证,该认证提供独立验证,确保解决方案安全控制符合美国注册会计师协会 (AICPA) 适用的信托服务原则和标准。此 SOC 2、Type II 标准认证表明我们致力于确保我们的客户能够满足各种合规性要求。Fortinet 提供 99.999% 的 SLA 和延迟保证,用于安全检查,这是因为其在全球范围内拥有数百个安全 PoP。
更改日志7入门8要求8许可9初始化Fortisase 10简介11端点模式13 SWG模式14专用公共IP地址14嵌入式登机指南15 Fortiflex许可指导18所需的服务和端口18选择可用性19个网络限制功能19删除了20个远程VPN远程VPN用户识别21支持外部IDP用户23次数23 System 22 23 System 22 22 22 23 Resetting all dashboards 24 Drilling down on vulnerabilities 24 FortiView monitors 25 Adding a custom monitor 26 Resetting all monitors 26 Monitoring thin-edge bandwidth usage 27 Thin-Edge 28 Edge devices 30 FortiExtender 30 Prerequisites 30 Viewing notifications for a new FortiExtender 33 Configuring FortiExtender as FortiSASE LAN Extension 33 FortiGate 41 Prerequisites 42 Viewing notifications for a new FortiGate 42将Fortigate配置为Fortisase Lan扩展43 Fortiap 45先决条件46查看新Fortiap的通知47将Fortiap配置为Fortiap作为Fortisase Edge设备48网络58 Secure Private Access 58
Change log 7 Getting started 8 Requirements 8 Licensing 9 Initializing FortiSASE 9 Introduction 10 Endpoint mode 12 SWG mode 13 Embedded onboarding guide 13 FortiFlex licensing 16 Network restrictions removed 16 Remote VPN user identification 17 Required services and ports 17 Signing in as an IAM user 18 Supporting external IdP users 18 System status notifications 18 Dashboards 19 Adding a custom dashboard 19 Resetting all dashboards 20 Drilling down on vulnerabilities 20 FortiView monitors 21 Adding a custom monitor 22 Resetting all monitors 22 Monitoring thin-edge bandwidth usage 23 Thin-Edge 24 Edge devices 26 FortiExtender 26 Prerequisites 26 Viewing notifications for a new FortiExtender 29 Configuring FortiExtender as FortiSASE LAN Extension 29 FortiGate 37 Prerequisites 38 Viewing notifications for a new FortiGate 38 Configuring FortiGate as FortiSASE LAN Extension 39 Fortiap 41先决条件42新的Fortiap的查看通知43将Fortiap配置为Fortisase Edge设备44网络53 Secure Private Access 53先决条件55配置Fortisase Security Pops作为Fortigate Hub的发声56
安全的访问服务边缘(SASE)体系结构专注于使用云交付的安全服务,该服务在网络的最远边缘(即服务边缘或用户端点)强制执行安全访问。连接到Fortisase时,远程用户进入Internet,As-As-As-Service(SaaS)应用程序或数据中心中的私有托管应用程序通过FireWall-As-A-A-Service(FWAAS)或安全网络网关(SWG),或者在此,流量符合安全政策和先进的威胁保护措施。对于流量重定向,远程用户的端点依赖于软件代理,网站后面的远程用户依赖于薄边缘设备,并且具有基于Web浏览器的设备的远程用户是无代理的,并且依赖Web浏览器代理设置。
Change log 6 Introduction 7 Endpoint mode 9 SWG mode 10 Embedded onboarding guide 10 FortiFlex licensing 13 Network restrictions removed 13 Required services and ports 14 Signing in as an IAM user 14 Supporting external IdP users 15 System status notifications 15 Dashboards 16 Adding a custom dashboard 16 Resetting all dashboards 17 Drilling down on vulnerabilities 17 FortiView monitors 18 Adding a custom monitor 19 Resetting all monitors 19监视薄边缘带宽用法20薄边缘21边缘设备23 fortiextender 23先决条件23查看新的Fortiextender的通知26将fortiextender作为Fortiextender fortiextender fortiSase lan Extension 26 fortigation 34 forterecites 35先决条件35查看以备fortigation 36的fortigation fortigation 36 fortia fortia fortia fortia fortia fortia fortia fortia fortiapiace 39 FortiAP as FortiSASE edge device 41 Network 51 Secure private access 51 Prerequisites 53 Configuring the FortiSASE security PoPs as the FortiGate hub's spokes 54 Verifying IPsec VPN tunnels on the FortiGate hub 73 Testing private access connectivity to FortiGate hub network from remote users 75 Verifying BGP routing on the FortiGate hub 75 Verifying private access traffic in FortiSASE portal 75 Verifying private access使用资产图77托管端点77
更改日志8入门9要求9许可10初始化Fortisase 11简介12使用FOTICLIENT 14 SWG无代理模式15专用公共IP地址15嵌入登机指南16 FORTIFLEX许可19所需的服务和端口19中的端口和端口19的签名24 iam用户识别24远程启用22远程启用22 external IdP users 25 Dashboards 26 Adding a custom dashboard 26 Resetting all dashboards 27 Drilling down on vulnerabilities 27 FortiView monitors 28 Adding a custom monitor 28 Resetting all monitors 29 Monitoring thin-edge bandwidth usage 29 Thin-Edge 31 Edge devices 33 FortiExtender 33 Prerequisites 33 Viewing notifications for a new FortiExtender 36 Configuring FortiExtender as FortiSASE LAN Extension 37 Fortigate 45先决条件46查看新的Fortigate 47将Fortigate配置为Fortigate fortigate 47 Fortiap 50 50先决条件50查看新的Fortiap 52 52将Fortiap配置为Fortisase Edge设备52 SD-WAN RAMP 65
通常,组织具有远程用户使用虚拟专用网络(VPN)连接将其互联网流量重定向到其数据中心的下一代防火墙(NGFW)。执行其安全功能后,NGFW将用户的网络流量发送到NGFW的WAN链接。建立了具有VPN连接的远程用户在通过此回程的WAN连接访问Internet时也会经历高潜伏期,因为防火墙的WAN链接变得拥挤其他远程用户生成的Internet流量。SASE通过允许远程用户直接连接到云传递的FWAA的最接近地理点点(POP)来降低此潜伏期。此外,每个POP可以扩展以满足用户需求并减少单个WAN链接成为这些远程用户的拥塞点的可能性。
安全的访问服务边缘(SASE)体系结构专注于使用云交付的安全服务,该服务在网络的最远边缘(即服务边缘或用户端点)强制执行安全访问。连接到Fortisase时,远程用户进入Internet,As-As-As-Service(SaaS)应用程序或数据中心中的私有托管应用程序通过FireWall-As-A-A-Service(FWAAS)或安全网络网关(SWG),或者在此,流量符合安全政策和先进的威胁保护措施。对于流量重定向,远程用户的端点依赖于软件代理,网站后面的远程用户依赖于薄边缘设备,并且具有基于Web浏览器的设备的远程用户是无代理的,并且依赖Web浏览器代理设置。
Change log 6 Introduction 7 Endpoint mode 8 SWG mode 9 Signing in as an IAM user 9 System status notifications 10 Required services and ports 10 Supporting external IdP users 10 Dashboards 11 Adding a custom dashboard 11 Resetting all dashboards 12 Drilling down on vulnerabilities 12 FortiView monitors 13 Adding a custom monitor 14 Resetting all monitors 14 Monitoring thin-edge bandwidth usage 15 Thin-Edge 16 Edge devices 18 FortiExtender 18 Prerequisites 18 Viewing notifications for a new FortiExtender 21 Configuring FortiExtender as FortiSASE LAN Extension 21 FortiGate 29 Prerequisites 30 Viewing notifications for a new FortiGate 31 Configuring FortiGate as FortiSASE LAN Extension 31 FortiAP 36 Prerequisites 36 Viewing notifications for a new FortiAP 38 Configuring FortiAP as FortiSASE edge device 38 Network 46 Secure private access 46 Prerequisites 48配置Fortisase Security将POP弹出为Fortigate Hub的辐条49在Fortigate Hub 68上验证IPSEC VPN隧道68测试私人访问连接到Fortigate Hub网络的私人访问连接70验证BGP在Fortigate Hub 70上验证BGP路由70在Fortigate Hub 70上验证私人访问72的私人访问72的私人访问72示例:默认情况下,确认端点已添加到管理中74示例:从管理75
更改日志7入门8要求8许可9初始化Fortisase 10简介11基于forticlient Agent的模式13 SWG无代理模式14专用公共IP地址14嵌入式板上登机指南15 FORTIFLEX许可18所需的服务和端口18选择可用性服务18个选择的服务端口18 SELECTION SELPESTIC dashboard 23 Resetting all dashboards 24 Drilling down on vulnerabilities 24 FortiView monitors 25 Adding a custom monitor 26 Resetting all monitors 26 Monitoring thin-edge bandwidth usage 27 Thin-Edge 28 Edge devices 30 FortiExtender 30 Prerequisites 30 Viewing notifications for a new FortiExtender 33 Configuring FortiExtender as FortiSASE LAN Extension 33 FortiGate 41 Prerequisites 42 Viewing notifications for新的Fortigate 42将Fortigate配置为Fortisase Lan扩展43 Fortiap 45先决条件46查看新Fortiap 47将Fortiap配置为Fortisase Edge设备48网络58 Secure Private Access 58