Firewall

New features and changes

Monitor

The Routing Monitor tab displays the entries in the FortiGate routing table. You can apply a filter to display certain routes to search for specific routing protocols.

Firewall

The Firewall menu consists of the following menus:

Policy

Address

Service

Virtual IP

Protection Profiles

Policy

The Policy menu is very similar to the menu in FortiOS 2.80MR11. However, there is no advanced option when you are creating a new policy. Also, there is authentication and traffic shaping checkboxes along with two additional options, Protection Profile and Log Allowed Traffic.

When you select Traffic Shaping, you can then select guaranteed bandwidth, maximum bandwidth, and the traffic priority.

Address

The Address menu now has the option to select the type of address you are creating. The type of address can be Subnet/IP Range or Fully Qualified Domain Name (FQDN).

Note: The FQDN should be used with caution, since it presents security risks.

Service

The Custom tab has a new look in the Service menu. From the Custom tab, you can add as many TCP/UDP protocols that you need to the custom service.

Virtual IP

The Virtual IP has additional options and the IP Pool menu is now a tab included in this menu.

Protection Profiles

The Protection Profiles menu has two additional options for you to select from, the

IM/P2P and Logging option.

22

Upgrade Guide for FortiOS v3.0

01-30000-0317-20060424

Page 22
Image 22
Fortinet FortiOS 3.0 manual Firewall

FortiOS 3.0 specifications

Fortinet FortiOS 3.0 is a robust network operating system designed to provide a comprehensive security solution for enterprise environments. Released as part of Fortinet's commitment to advancing cybersecurity, FortiOS 3.0 integrates several cutting-edge technologies and features to enhance network performance and protection against emerging threats.

One of the main features of FortiOS 3.0 is its advanced threat management capabilities. This includes intrusion prevention systems (IPS), application control, and web filtering, which work in tandem to identify and mitigate risks in real-time. The IPS component utilizes deep packet inspection to analyze traffic patterns and block malicious activity, ensuring that sensitive data remains secure.

Another key characteristic of FortiOS 3.0 is its unified threat management (UTM) approach. By consolidating multiple security functions into a single platform, organizations can simplify their infrastructure, reduce costs, and streamline administration. This consolidation is particularly beneficial for businesses looking to enhance their security posture without overwhelming their IT resources.

FortiOS 3.0 also incorporates advanced VPN capabilities, allowing remote access to secure corporate networks. With support for both IPsec and SSL VPN technologies, users can enjoy secure connections from virtually any location, which is essential in today's increasingly mobile work environment. This flexibility promotes productivity while maintaining stringent security standards.

Additionally, FortiOS 3.0 includes sophisticated logging and reporting features. These provide critical insights into network activity, helping organizations to analyze potential threats and compliance with industry regulations. Customizable alerts and reports empower IT teams to remain vigilant and responsive to any irregularities or breaches in security.

Moreover, FortiOS 3.0 leverages Fortinet's proprietary security processor technology, which accelerates threat processing and reduces latency. This hardware acceleration ensures that even in high-volume traffic situations, security measures do not compromise network speed.

In summary, Fortinet FortiOS 3.0 stands out due to its comprehensive security features, unified threat management capabilities, advanced VPN functionalities, and robust logging and reporting tools. These characteristics make it an ideal solution for organizations seeking to enhance their cybersecurity measures while maintaining operational efficiency. As cyber threats continue to evolve, FortiOS 3.0 equips enterprises with the tools necessary to safeguard their networks effectively.