Fortinet FG-3400E/FG-3401E Kenya

 

FortiGate FG-3400E/FG-3401E Kenya

The FortiGate 3400E series delivers high performance threat protection for mid-sized to large enterprises and service providers, with the flexibility to be deployed at the Internet or cloud edge, in the data center core or internal segments. The multiple high-speed interfaces, high port density, industry-leading security efficacy and high throughput of the 3400E series keeps your network connected and secure.

Category:

Description

Fortinet  FortiGate-3400E/FortiGate-3401E Nairobi

The Fortinet firewall Security Fabric is the cybersecurity platform that enables digital innovations. It delivers broad visibility of the entire attack surface to better manage risk. Its unified and integrated solution reduces the complexity of supporting multiple-point products, while automated workflows increase operational speeds and reduce response times across the Fortinet deployment ecosystem. The Fortinet Security Fabric covers many areas under a single management center.

The Fortinet FortiGate 3400E series delivers high performance next generation firewall (NGFW) capabilities for large enterprises and service providers using advanced features such as multiple high-speed interfaces, high-port density, and high-throughput. Ideal deployments can be made at the enterprise edge, hybrid data center core, and across internal segments. The firewall uses industry-leading IPS, SSL inspection, and advanced threat protection to optimize your network’s performance. Fortinet Firewall in Nairobi employs the use of a Security-Driven Networking approach which provides tight integration of the network to the new generation of security.

Fortinet FG-3400E Features.

  • Security :

    • Fortinet FG-3400E series identifies thousands of applications inside network traffic for deep inspection and granular policy enforcement, then protects the network system against malware, exploits, and malicious websites in both encrypted and non-encrypted traffic. It also detects known attacks using continuous threat intelligence from AI-powered FortiGuard Labs security services. The Fortinet FG-3400E series proactively blocks unknown sophisticated attacks in real-time with the Fortinet Security Fabric integrated AI-powered FortiSandbox.
  • Performance

    • Fortinet FG-3400E series is built for Innovation using Fortinet’s purpose-built security processors (SPU) to deliver the industry’s best threat protection performance and ultra-low latency. It provides industry-leading performance and protection for SSL encrypted traffic including the first firewall vendor to provide TLS 1.3 deep inspection.
  • Certification

    • Fortinet FG-3400E series has been independently tested and validated for best security effectiveness and performance. It has received unparalleled third-party certifications from NSS Labs, ICSA, Virus Bulletin, and AV Comparatives.
  • Networking

    • Fortinet FG-3400E series incorporates Application aware routing with in-built SD-WAN capabilities to achieve consistent application performance and the best user experience. It has built-in advanced routing capabilities which deliver high performance with encrypted IPSEC tunnels at scale.
  • Management

    • Fortinet FG-3400E series includes a management console that is effective and simple to use, which provides a comprehensive network of automation & visibility. It provides Zero Touch Provisioning leveraging Single Pane of Glass Management powered by the Fabric Management Center, and uses a set of predefined compliance checklists analyze the deployment and highlight best practices to improve the overall security posture.
  • Security Fabric

    • Fortinet FG-3400E series enables Fortinet and Fabric-ready partners’ products to provide broader visibility, integrated end-to-end detection, threat intelligence sharing, and automated remediation. It automatically builds Network Topology visualizations which discover IoT devices and provide complete visibility into Fortinet and Fabric-ready partner products.
  • Next Generation Firewall (NGFW)

    • Fortinet FG-3400E series reduces complexity and maximizes your ROI by integrating threat protection security capabilities into a single high performance network security appliance, powered by Fortinet’s Security Processing Unit (SPU). It offers full visibility into users, devices, applications across the entire attack surface and consistent security policy enforcement irrespective of asset location. The robust firewall protects your network system against network exploitable vulnerabilities with Industry validated IPS , resulting in security effectiveness, low latency and optimized network performance. It automatically block threats on decrypted traffic using the Industry’s highest SSL inspection performance, including the latest TLS 1.3 standard with mandated ciphers, and also proactively block newly discovered sophisticated attacks in real-time with AI-powered FortiGuard Labs and advanced threat protection services included in the Fortinet Security Fabric.
  • IPS

    • Fortinet FG-3400E series uses its purpose-built security processors delivering industry validated IPS performance with high throughput and low latency. It deploys virtual patches at the network level to protect against network exploitable vulnerabilities and optimize network protection time. Deep packet inspection at wire speeds offers unparalleled threat visibility into network traffic including traffic encrypted with the latest TLS 1.3.
  • Segmentation

    • Fortinet FG – 3400E boasts of a segmentation feature that adapts to any network topology, delivering end-to-end security from the branch level to data centers and extending to multiple clouds. Segmentation reduces security risks by improving network visibility from the components of the Fortinet Security Fabric, which adapt access permissions to current levels of trust and enforce access control effectively and efficiently. It also delivers defense in depth security powered by high-performance L7 inspection and remediation by Fortinet’s SPU, while delivering third party validated TCO of per protected Mbps, and also protects critical business applications and helps implement any compliance requirements without network redesigns.
  • Mobile Security for 4G, 5G, and IOT

    • Fortinet FG-3400E series is equipped with standard features including SPU acceleration, high performance CGNAT and IPv6 migration option including: NAT44, NAT444, NAT64/DNS64, NAT46 for 4G Gi/sGi and 5G N6 connectivity and security. It also boasts of RAN Access Security with highly scalable and best performing IPsec aggregation and control security gateway (SecGW). It has user plane security enabled by full Threat Protection and visibility into GTP-U inspection, and supports 4G and 5G security for user and data plane traffic including SCTP, GTP-U and SIP that provides protection against attacks. It is also packed with high-speed interfaces to enable deployment flexibility.
  • Secure Web Gateway (SWG)

    • Fortinet FG- 3400E series allows for secure web access from both internal and external risks, even for encrypted traffic at high performance, thus offering enhanced user experience with dynamic web and video caching. It also blocks and controls web access based on user or user groups across URL’s and domains. The Firewall prevents data loss and discovers user activity to known and unknown cloud applications. In addition, it blocks DNS requests against malicious domains using multi-layered advanced protection against zero-day malware threats delivered over the web.

Interfaces

  • USB Management Port
  • Console Port
  • 2x GE RJ45 Management Ports
  • 2x 25 GE SFP28 / 10 GE SFP / GE SFP HA Slots
  • 22x 25 GE SFP28 / 10 GE SFP / GE SFP Slots
  • 4x 100 GE QSFP28 / 40 GE QSFP Slots
Fortinet FortiGate 3400E/ FortiGate 3401E Specifications
Included Accessories 2 x 10Gb Ethernet SR SFP+ transceiver
Compliant Standards UL, VCCI, C-Tick, ICSA IPSec certified, ICSA Firewall certified, cUL, ICSA Antivirus, CB, FCC Part 15 A, IPv6 Ready, USGv6, ICSA SSL-VPN, ICSA IPS
Networking
Form Factor Rack-mountable
Connectivity Technology Wired
Data Link Protocol Gigabit Ethernet, 10 Gigabit Ethernet, 40 Gigabit Ethernet, 100 Gigabit Ethernet
Network / Transport Protocol TCP/IP, UDP/IP, IPSec, SCTP
Remote Management Protocol HTTP, HTTPS
Performance IPS throughput: 44 Gbps ¦ NGFW throughput: 34 Gbps ¦ Threat protection throughput: 23 Gbps ¦ Firewall throughput (1518-byte UDP): 240 Gbps ¦ Firewall throughput (512-byte UDP): 238 Gbps ¦ Firewall throughput (64-byte UDP): 150 Gbps ¦ Firewall latency (64-byte UDP): 4 µs ¦ Firewall throughput: 225 Mpps ¦ VPN throughput (SSL): 11 Gbps ¦ SSL inspection throughput: 30 Gbps ¦ VPN throughput (512-bit IPSec): 140 Gbps ¦ Application control (AVC) throughput: 86 Gbps ¦ CAPWAP throughput: 15 Gbps
Capacity Concurrent TCP sessions: 50000000 ¦ New TCP sessions per second: 460000 ¦ Firewall policies: 200000 ¦ Gateway to gateway IPSec VPN Tunnels: 40000 ¦ Client to gateway IPSec VPN tunnels: 200000 ¦ Concurrent SSL VPN users: 30000 ¦ SSL connections per second: 14000 ¦ Concurrent SSL connections: 4900000 ¦ Virtual domains: 10 ¦ Number of FortiSwitches: 256 ¦ Number of FortiAP devices: 1024 ¦ Number of FortiToken devices: 5000 ¦ Maximum number of registered endpoints: 50000
Status Indicators Power, status, alarm, link/activity, HA
Features Firewall protection, switching, routing, VPN support, traffic shaping, IPv6 support, High Availability, Intrusion Prevention System (IPS), IPSec Virtual Private Network (VPN), anti-malware protection, IPv4 support, web threat protection, CAPWAP support, checksum offload support, IP tunnel acceleration, multicast traffic
Encryption Algorithm SSL, 256-bit AES, 256-bit SHA
Environmental Parameters
Min Operating Temperature 32 °F
Max Operating Temperature 104 °F
Humidity Range Operating 10 – 90% (non-condensing)
General
Device Type Security appliance
Height (Rack Units) 2U
Width 17.4 in
Depth 21.9 in
Height 3.5 in
Weight 44.53 lbs
Processor / Memory / Storage
Processors Installed Fortinet FortiASIC CP9/NP6
Hard Drive SSD hot-swap 2 TB x 2
Expansion / Connectivity
Interfaces 4 x 40Gb Ethernet/100Gb Ethernet – QSFP28 ¦ 22 x 10Gb Ethernet – SFP+ ¦ 2 x 1000Base-T (management) – RJ-45 ¦ 1 x USB 3.0 – Type A ¦ 1 x console – RJ-45
Power
Power Device Internal power supply – hot-plug
Installed Qty 2
Max Supported Qty 2
Power Redundancy Yes
Voltage Required AC 120/230 V (50/60 Hz)
Power Consumption Operational 516 Watt
Software / System Requirements
OS Provided FortiOS