Fortinet

31
© Copyright Fortinet Inc. All rights reserved. Arquitetura de Segurança para Redes Wireless Fabio Paim – Systems Engineer

Transcript of Fortinet

Page 1: Fortinet

© Copyright Fortinet Inc. All rights reserved.

Arquitetura de Segurança para Redes Wireless

Fabio Paim – Systems Engineer

Page 2: Fortinet

IT Trends

Page 3: Fortinet

3

IT Trends

Page 4: Fortinet

4

IT Trends

Page 5: Fortinet

5

3rd Platform Innovation Accelerators

Page 6: Fortinet

6

3rd Platform Security Challenges Examples

E-MAIL

Page 7: Fortinet

7

3rd Platform Security Challenges Examples

INTERNAL COMMUNICATION

Page 8: Fortinet

8

3rd Platform Security Challenges Examples

CUSTOMER SERVICES

Page 9: Fortinet

9

3rd Platform Security Challenges Examples

STORAGE

Page 10: Fortinet

10

3rd Platform Security Challenges Examples

MOBILITY

Page 11: Fortinet

11

Network Impact

Higher core throughput & scalability Higher port density Increased small/mixed packet traffic Low user latency Increased east-west traffic

3rd Platform Network Impact

Page 12: Fortinet

12Confidential

We get it: Stay safe and reduce the pressure!

Internal Pressures Increasing

Your Enterprise is Under Constant Attack

Security is No Longer a “Nice to Have”

More and More Devices Connected to the Network

Regulations and Policies are Multiplying

Your World Isn’t Easy…

Page 13: Fortinet

Fortinet Security Architecture

Page 14: Fortinet

14Confidential

…but we are protected we have a NGFW…

Page 15: Fortinet

15Confidential

Internal Segmentation Firewall (ISFW)

Page 16: Fortinet

16

FortiMail

End-to-End Global Cybersecurity Platform

COREACCESS APPs

& DATA

THREATINTELLIGENCE

GLOBALMANAGEMENT

USERS NETWORK DATA CENTER

FortiGate

FortiAP

FortiSandbox

FortiSwitch

FortiGate VM

FortiWeb

FortiManager FortiAnalyzer

FortiGate for AWS

FortiGate VMX

Rugged Rugged

FortiWiFiFortiADC

Page 17: Fortinet

17

Supports Enterprises of ALL SIZES

Page 18: Fortinet

Securing the Wireless

Page 19: Fortinet

19

Today’s Wi-Fi Infrastructure Trends

Page 20: Fortinet

20

Wi-Fi Becoming Primary Access Medium

Page 21: Fortinet

21

Wireless Ranked as the Most Vulnerable IT Asset

Page 22: Fortinet

22

FORTISWITCH

FORTIAP

SWITCH

Typical Architecture with Access Points

WAN OPTIMIZATIONANTISPAMANTIVIRUSFIREWALL

WIRELESS CONTROLLER

VPNINTRUSION PREVENTIONAPPLICATION CONTROL

WEB FILTERINGWI-FI CONTROLLER

OVERLAY WIRELESS MANAGEMENT SYSTEM

Lower cost of acquisition Lower cost of ownershipImproves security provisioning

Security ConsolidationSecurity + Wireless Consolidation

Page 23: Fortinet

23

WLAN Architecture and Deployments

Page 24: Fortinet

24

FortiAP-S (Smart AP’s)

• Managed by FortiCloud • No controller required • FortiGuard services run on each AP • Simplifies deployment and management

Page 25: Fortinet

25

FortiCloud Managed Wi-Fi Security Capabilities

Page 26: Fortinet

26

Centralized Wireless Management and Reporting

FortiManager FortiAnalyzer

• FortiManagerGlobal Wireless ManagementCentralized AP Firmware UpgradesSSID and Radio Policy Configuration Centralized Rogue AP SuppressionReal-time Client Monitoring

• FortiAnalyzerWireless Usage ReportingSecurity Log Analysis and ForensicsWireless PCI Compliance Reporting

Branch OfficeBranch Office

Central Location

ManagementLogging

Page 27: Fortinet

27

MESH Deployment

Dynamic Multi-hop Mesh with resiliency Point-to-point / Multipoint Bridging

Page 28: Fortinet

28

FortiAP Flexible Approach

• “One Size Fits All” Architecture Doesn’t Work

• Some customers prefer cloud, others need controller

• Unified WLAN works for some, overlay for others

• No security or performance compromise

• Architecture change without rip-and-replace

Page 29: Fortinet

29

FortiPresence - Presence and Positioning Analytics

Total visitor trafficReal time visit capture rateDwell time durationA/B comparison across storesRepeat visitors, frequencyVIP Alert

Heat maps with animated flows

Real-time density, staff resources

Measure marketing campaign effectiveness

Page 30: Fortinet

30

What’s next?

Let’s move to the Next Generation Wireless Security

Architecture

Page 31: Fortinet

31

DON’T GO UNPROTECTED