FortiGate-500 安装和配置指南 2.50

简介

FortiGate 防病毒防火墙支持应用层服务的基于网络的部署,包括防病毒保护和全 内容扫描过滤。FortiGate 防病毒防火墙增强了网络的安全性,避免了网络资源的误用 和滥用,可以帮助您更好地使用通讯资源而不会降低网络的性能。FortiGate 防病毒防 火墙获得了 ICSA 防火墙认证,IP 安全认证和防病毒服务认证。

FortiGate 防病毒防火墙是一个易于管理的安全设备,它提供了一套完整的功能, 包括:

·应用层服务,例如病毒防护和内容过滤,

·网络曾服务,例如防火墙、入侵检测、VPN,以及流量控制等。

FortiGate 采用了先进的行为加速 (Accelerated Behavior)和内容分析系统技术 (ABACASTM),突破了芯片设计、网络通信、安全防御及内容分析等诸多难点。公司所 独有的,基于 ASIC 上的网络安全构架能实时进行网络内容和状态分析,并及时启动在 网络边界布署的防护关键应用程序,对您的网络进行最有效的安全保护。FortiGate 系列对现有的一些解决方案,如以主机为基础的防病毒保护进行补充,并在大力降低 设备,管理和维修成本的同时,为您提供一些新的应用和服务。

FortiGate-500 型提供了满足大型企业 及服务供应商所需的企业重载级性能和可 靠性。它具有最高可达 500Mbps 的传输速 率,12 个网络接口 (8 个用户自定义接 口),以及一些高可用性特征,包括无会 话损失的自动失效恢复等。FortiGate-500

是关键任务应用中的最好选择。FortiGate-500 的灵活性、可靠性和它的易于管理的特 性使它成为提供管理服务的最佳选择。

防病毒保护

ICSA 认证的 FortiGate 防病毒保护,可将通过 FortiGate 传输的 WEB (HTTP), 文件传输 (FTP)和 EMAIL(SMTP, POP3, 和 IMAP ) 内容中被病毒感染的文件删除。当 FortiGate 从内容流中检测出病毒时,自动病毒防护功能可以删除那些感染了病毒的文 件,用一条病毒感染信息替换掉原来的文件,然后转发到内容流的接收方。Web 和电子 邮件内容可以是存在于常规网络通讯中的或者是被封装在 IPSec VPN 通讯流中的。

您还可以提高安全防护的级别,将防病毒保护功能设置为阻塞通过 FortiGate 设备 的特定类型的文件。使用这一功能可以阻塞可能含有新型病毒的文件。

FortiGate-500 安装和配置指南

1

Page 13
Image 13
Fortinet manual 防病毒保护, FortiGate-500 安装和配置指南 2.50 版

500 specifications

Fortinet 500 is a next-generation firewall (NGFW) that is part of Fortinet's acclaimed FortiGate family, designed to provide advanced security for medium to large enterprises. This appliance is known for its high performance, flexibility, and ability to protect networks from a variety of cyber threats through its robust features and technologies.

One of the main features of the Fortinet 500 is its integrated security capabilities. It combines multiple security functions into a single device, allowing organizations to manage everything from intrusion prevention and antivirus to web filtering and application control. This integration leads to simplified management and increased efficiency, as users can address multiple security needs without deploying multiple devices.

The Fortinet 500 runs on the FortiOS operating system, which is known for its simplicity and user-friendliness. FortiOS provides a centralized management interface that allows for the easy configuration and monitoring of security policies across the entire network. Additionally, the Fortinet management tools, such as FortiManager and FortiAnalyzer, enable detailed insights and reporting capabilities, helping organizations stay compliant with their security mandates.

Another characteristic that sets Fortinet 500 apart is its advanced threat intelligence, powered by the FortiGuard Labs. This global threat intelligence system continuously updates the firewall with the latest threat signatures and attack vectors, ensuring that organizations stay ahead of emerging threats. The firewall also employs machine learning and artificial intelligence to detect and mitigate sophisticated attacks in real-time.

Performance is crucial in any security appliance, and the Fortinet 500 does not disappoint. With hardware acceleration and purpose-built security processors, it delivers high throughput levels, enabling organizations to maintain productivity without sacrificing security. This level of performance is particularly beneficial in environments with heavy traffic and bandwidth demands.

In addition to these core features, the Fortinet 500 supports seamless integration with other security solutions within the Fortinet Security Fabric. This comprehensive approach allows for greater visibility and control over the entire security posture of an organization.

Overall, the Fortinet 500 is a powerful NGFW that offers a blend of advanced security features, ease of management, top-notch performance, and robust threat intelligence. Its ability to adapt to the ever-evolving landscape of cybersecurity makes it a valuable asset for businesses seeking to safeguard their digital assets and ensure seamless network operation.