FortiGate 3600
Jun 1, 2003
Fortinet offers a range of what it calls 'anti-virus firewalls' for all markets, from the home user to the large enterprise and carrier-class service provider.

Fortinet offers a range of what it calls 'anti-virus firewalls' for all markets, from the home user to the large enterprise and carrier-class service provider.
Fortinet's FortiGate 5020 is built using a powerful chassis containing dual, hot-swappable power supplies as standard, building in redundancy. The chassis can also house two 5001 blades, each of which comes with four copper Gigabit Ethernet ports and four small, form-factor pluggable (SFP) ports.
Fortinet's FortiGate-300A is the company's entry level Enterprise appliance. As with its bigger brothers, its FortiOS operating system comes with antivirus and intrusion prevention as standard, which is regularly updated.
The FortiGate-300A can be deployed either as a full service gateway, or transparently to work with existing firewalls and protection in the network.
Fortinet's FortiGate-500A-HD appliance is another 1U rack-mountable unit but, being half-depth, is smaller than some similar products. It's claim to fame is as a "multi-zone network protection solution." Fortinet says it enables organizations to segment networks into independent security "zones", each with unique access and security policies.
The FortiGate-500A-HD is a united threat management (UTM) appliance with SSL VPN capability. The web interface covers a lot of ground, but is not too overwhelming. We found that setting up the VPN on this device was a little complicated, due to the fact that the functionality is tied to the firewall and there are extra configurations that need to take place. We found the configuration of the appliance to be awkward at certain points.
Fortinet's FortiGate-800 is the company's mid-range firewall. It uses FortiOS 3.0 (this is a correction from the incorrect v2.5 printed in the original article) and comes with antivirus and intrusion prevention as standard, both regularly updated.
The first two things that caught our attention with Fortinet FortiGate 60 is its small physical size and its similarly small price tag.
Fortinet's FortiGate-3000 Firewall provides a wide range of firewall services, including content filtering, intrusion detection and VPN facilities, as well as antivirus protection, packaged into a 2 U rack mountable chassis. The front panel contains the network connections, serial connection, LCD panel and four control buttons. The only printed documentation was a quick start sheet, with all the other documentation covering installation and management being provided on the accompanying CD-ROM.
The unit has two distinct operating modes, NAT/Route mode and Transparent mode. In NAT/Route mode the device acts as a gateway between the LAN and the Internet, with the option of routing or NAT controlled by the security policies, while in Transparent mode the device operates behind a router or another firewall. The device looses its VPN capability in Transparent mode.
Fortinet describes this appliance as an antivirus firewall based around a high-performance custom ASIC, but it also features VPN support and intrusion prevention. Web filtering and spam filtering are optional add-ons.
Fortinet's FortiGate-800 offers eight Ethernet connections in its 1U height chassis, and four of these are 10/100/1000 Base-T connections. Three of the high-speed connections are designated for internal, external and DMZ networks, with the fourth reserved for a high-availability connection to other FortiGate 800 devices.
This mail gateway provides anti-spam and anti-virus services. Aimed at the medium sized enterprise, it offers a comprehensive range of mail filtering options in a 1U height rack-mountable chassis. It lacks a redundant power supply, but has eight Ethernet ports, although only two are used at the moment.