שיחת ייעוץ חינם: 1-800-800-570

Fortinet FortiWeb VM02
Web Application Firewall

FortiMail

Fortinet FortiWeb VM02 Series
FortiWeb VM02
Fortinet FortiWeb VM02
FWB-VM02 virtual appliance for VMware ESX/ESXi, Citrix XenServer, Open Source Xen, Microsoft Hyper-V virtualization platforms and Amazon AWS. 2 x vCPU cores
#FWB-VM02
המחיר שלנו: הצעת מחיר
Fortinet FortiWeb VM02 8x5 Bundle Subscription
The 8x5 Bundle Subscription includes 8X5 Hardware Replacement (3 Days), Firmware Upgrades, 8x5 Support, AV, IPS, CF and AS
8x5 for FortiWeb VM02, 1-Year Bundle
#FC-10-VVM02-935-02-12
המחיר שלנו: הצעת מחיר
Fortinet FortiWeb VM02 24x7 Bundle Subscription
The 24x7 Bundle Subscription includes Advanced Hardware Replacement (Next Business Day), Firmware Upgrades, 24X7 Support, AV, IPS, CF and AS
24x7 for FortiWeb VM02, 1-Year Bundle
#FC-10-VVM02-936-02-12
המחיר שלנו: הצעת מחיר

מחירים נוספים מופיעים למטה, או לחצו כאן!

שימו לב: כל המחירים באתר כוללים מע"מ, לפי המחירון המומלץ של Fortinet לאזור EMEA. החיוב יבוצע על פי שער "העברות והמחאות מכירה" של המטבע (דולר אמריקאי) ביום אישור ההזמנה.

Overview:

FortiWeb virtual appliances allow you to mitigate blind spots by implementing critical web security controls within your virtual infrastructure. They also allow you to rapidly provision security infrastructure whenever and wherever it is needed. Moreover, FortiWeb virtual appliances feature all of the web application security and networking services common to traditional hardware-based FortiWeb appliances.

FortiWeb virtual appliances fully support all deployment modes supported by the hardware version – Reverse Proxy, Transparent Inspection, True Transparent Proxy and Sniffer (out-of-band).

FortiWeb Virtual Appliance Features & Benefits:

  • Aids in PCI DSS 6.6 compliance by protecting against OWASP top 10 web application vulnerabilities
  • Provides multiple protection layers to prevent attacks against vulnerable web applications: Application signatures, HTTP RFC compliance, auto-learn based violations and data leak prevention
  • Automatically and dynamically profiles user activity to create a baseline of allowed activity
  • Network and application layer DoS/DDoS protection
  • Real time data analysis provides an analytics interface that helps organizations analyze their web application usage from multiple vectors and maps requests to their geographic location
  • Integrated Web vulnerability scanner provides analysis of existing application vulnerabilities complementing web application firewall for PCI DSS.
Web Application Firewall
Web Application Firewall
Secures web applications to help customers meet compliance requirements
Web Vulnerability Scanner
Web Vulnerability Scanner
Scans, analyzes and detects web application vulnerabilities
Application Delivery
Application Delivery
Assures availability and accelerates performance of critical web applications

Need for PCI DSS Compliance

Network security threats have evolved to target web-based applications that are the interface to confidential information stored on back-end databases. In response to major security breaches, the credit card industry created the PCI standards. However, ensuring any web-application is free of vulnerabilities is complicated by the ongoing discovery of new vulnerabilities, patching challenges, code revisions, time-to-market pressures, the inherent difficulty of vulnerability identification, and even access to the application code.

Unmatched Protection for Web Applications

The FortiWeb family of web application firewalls provides specialized, layered application threat protection for medium and large enterprises, application service providers, and SaaS providers. FortiWeb web application protects your web-based applications and internetfacing data from attack and data loss. Using advanced techniques to provide bidirectional protection against sophisticated threats like SQL injection and cross-site scripting, FortiWeb platforms help you prevent identity theft, financial fraud and corporate espionage. FortiWeb delivers the technology you need to monitor and enforce government regulations, industry

Accelerate Deployment and Lower Costs

FortiWeb significantly reduces deployment costs by consolidating Web Application Firewall, web traffic acceleration, and application traffic balancing into a single device with no per-user pricing. It drastically reduces the time required to protect your regulated internetfacing data and eases the challenges associated with policy enforcement and regulatory compliance. Its intelligent, application-aware load-balancing and data compression and optimization engine increases application performance, improves resource utilization and application stability while reducing server response times.

Geo IP Analytics and Security

FortiWeb's real time data analysis provides an analytic interface that helps organizations analyze their web application usage from multiple vectors, maps requests to their geographic location and allows blocking access from specific countries.

Features & Benefits:


Features Benefits
Inline Reverse Proxy, Transparent, and Offline Deployment Modes Deploy FortiWeb into existing networks without the need for a network-level redesign or changes to web application and network infrastructure
Auto-Learning Security Profiles Discovers the structure and usage pattern of web applications, removes the need for manual configuration of access policies and security profiles
Web Vulnerability Scanner Scans web applications to detect existing vulnerabilities, complementing the Web Application Firewall for PCI DSS section 6.6
Data Leak Prevention Analyzes all outbound traffic alerting/blocking any credit card leakage and information disclosure
PCI DSS Helps organizations meet PCI compliance requirements by providing a comprehensive solution for web application protection

Flexible Deployment and Efficient Management Ultimate Protection and Monitoring
  • Multiple deployment options
    Transparent Inspection and True Transparent Proxy, Reverse Proxy and Offline Allow you to fit FortiWeb into any environment.

  • Auto-Learn Security Profiling
    Automatically and dynamically build a security model of protected applications by continuously monitoring real time user activity. Eliminate the need for manual configuration of security profiles.

  • Authentication Offload
    Offload your web server authentication to the Forti- Web platform while supporting different authentication schemes such as Local, LDAP, NTLM and Radius.

  • Policy wizard and pre-defined policies
    Allows for one click deployments and greatly eases the process of policies creation.

  • High Availability
    The high availability mode provides configuration synchronization and allows for a network-level fail- over in the event of unexpected outage events. Integrated bypass interfaces provide additional fail open capability for single box deployments.

  • Virtualization
    Provides a Virtual Appliance for VMware ESX and ESXi 3.5/4.0/4.1 platforms mitigating blind spots in virtual environments.
  • Application Layer Vulnerability Protection
    Provide out of the box protection for the most complex attacks such as SQL Injection, Cross Site Scripting, CSRF and many others. Together with the Auto Learn profiling system and advanced abilities, FortiWeb is able to create rules down to the single application element.

  • Data Leak Prevention
    Extended monitoring and protection for credit card leakage and application information disclosure by tightly monitoring all outbound traffic. Allow customers to create their own granular signatures and DLP patterns together with predefined rules for any type of events.

  • Application Support
    Streamlined monitoring and protection for well-known applications and protocols such as Microsoft Exchange, SharePoint, ActiveSync and RPC over HTTP.

  • Anti Web Defacement
    Unique capabilities for monitoring protected applications for any defacement and ability to automatically and quickly revert to stored version.

  • Vulnerability Assessments
    Automatically scans and analyzes the protected web applications and detects security weaknesses, potential application known and unknown vulnerabilities to complete a comprehensive solution for PCI DSS.

  • HTTP RFC Compliance Validation
    FortiWeb blocks any attacks manipulating the HTTP protocol by maintaining strict RFC standards to prevent attacks such as encoding attacks, buffer overflows and other application specific attacks.

  • Antivirus
    Scan file uploads using Fortinet's Antivirus engine with regular FortiGuard updates.
Application Delivery Aids in Compliance
  • Application Aware Load Balancing
    Intelligent, application aware layer 7 load balancing eliminates performance bottlenecks, reduces deployment complexity and provides seamless application integration.

  • Data Compression
    Allows efficient bandwidth utilization and response time to users by compressing data retrieved from servers.

  • SSL Offload
    With the integration of award winning FortiASIC™ technology, FortiWeb is able to process tens of thousands of web transactions by providing hardware accelerated SSL offloading.
  • PCI DSS compliance
    FortiWeb is the only product that provides a Vulnerability Scanner module within the web application firewall that completes a comprehensive solution for PCI DSS requirement 6.6.

  • Protects against OWASP top 10
    Incorporating a positive and a negative security module based on bidirectional traffic analysis and an embedded behavioral based anomaly detection engine FortiWeb fully protects against the OWASP TOP 10.

  • FortiGuard Labs
    Utilizing Fortinet's renowned FortiGuard service FortiWeb customers get up to date dynamic protection from the Fortinet Global Security Research Team, which researches and develops protection against known and potential application security threats.

Specifications:

FortiWeb Models FortiWeb-VM02 (2 vCPU) FortiWeb-VM04 (4 vCPU) FortiWeb-VM08 (8 vCPU)
Hardware Specifications
Hypervisors Supported VMware ESXi/ESX 3.5/4.0/4.1 VMware ESXi/ESX 3.5/4.0/4.1 VMware ESXi/ESX 3.5/4.0/4.1
Max vCPUs Supported 2 4 8
Max vNICs 4 4 4
Virtual Machine Storage Required (Minimum) 40 GB 40 GB 40 GB
Virtual Machine Memory Required (Minimum) 1024 MB 1024 MB 1024 MB
System Performance
HTTP Throughput 100 Mbps 500 Mbps 1 Gbps
Max HTTP transactions per second 8,000 24,000 36,000
Application Licenses Unlimited Unlimited Unlimited

Deployment:

FortiWeb Deployment Options

  • Inline Transparent – Layer two bridge that does not require network level redesign.
  • True Transparent Proxy – Layer two deployment with no need for network level redesign. The traffic is internally terminated to provide more functionality than pure inspection.
  • Reverse Proxy – Provides additional capabilities such as URL rewrite and advanced routing capabilities.
  • Offline Sniffing – Monitors environments with zero network footprint and latency.

FortiWeb Deployment Options

Interface:

FortiWeb Auto-Learn Profiling
The Auto-Learn profiling capability is completely transparent and does not require any changes to the application or network architecture. FortiWeb does not scan the application in order to build the profile, but rather analyzes the traffic as it monitors it flowing to the application. By creating a comprehensive security model of the application FortiWeb can now protect against any known or unknown vulnerabilities, zero day attacks.

FortiWeb

Dashboard: High-level view of your environment with real time traffic and attack statistic graphs to provide ‘at a glance’ view of status of web application security

FortiWeb

Data Analytics: Analyze user geographic location and web site access based on Hit, Data and Attack vector

FortiWeb

Management Reports: FortiWeb management reports contain the information you need to measure your policy compliane and risk profile, as well as understand the threats you face

 

FortiWeb Protects Against A Wide Range of Attacks:

  • Cross Site Scripting
  • SQL Injection
  • Session Hijacking
  • Cookie Tampering /Poisoning
  • Cross Site Request Forgery
  • Command injection
  • Remote File Inclusion
  • Forms Tampering
  • Hidden Field Manipulation
  • Outbound Data Leakage
  • HTTP Request Smuggling
  • Remote File Inclusion
  • Encoding Attacks
  • Broken Access Control
  • Forceful Browsing
  • Directory Traversal
  • Site Reconnaissance
  • Search Engine Hacking
  • Brute Force Login
  • Access Rate Control
  • Schema Poisoning
  • XML Parameter Tampering
  • XML Intrusion Prevention
  • WSDL Scanning
  • Recursive Payload
  • External Entity Attack
  • Buffer Overflows
  • Denial of Service

Services & Support:

FortiGuard Security Subscription Services

FortiGuard Security Subscription Services deliver dynamic, automated updates for Fortinet products. The Fortinet Global Security Research Team creates these updates to ensure up-to-date protection against sophisticated threats. Subscriptions include antivirus, intrusion prevention, web filtering, antispam, vulnerability and compliance management, application control, and database security services.

FortiCare Support Services

FortiCare Support Services provide global support for all Fortinet products and services. FortiCare support enables your Fortinet products to perform optimally. Support plans start with 8x5 Enhanced Support with "return and replace" hardware replacement or 24x7 Comprehensive Support with advanced replacement. Options include Premium Support, Premium RMA, and Professional Services. All hardware products include a 1-year limited hardware warranty and 90-day limited software warranty.

Documentation:

Download the Fortinet FortiWeb Series Datasheet (PDF).

הערות תמחור:

Fortinet FortiWeb VM02 Series
FortiWeb VM02
Fortinet FortiWeb VM02
FWB-VM02 virtual appliance for VMware ESX/ESXi, Citrix XenServer, Open Source Xen, Microsoft Hyper-V virtualization platforms and Amazon AWS. 2 x vCPU cores
#FWB-VM02
המחיר שלנו: הצעת מחיר
Fortinet FortiWeb VM02 8x5 Bundle Subscription
The 8x5 Bundle Subscription includes 8X5 Hardware Replacement (3 Days), Firmware Upgrades, 8x5 Support, AV, IPS, CF and AS
8x5 for FortiWeb VM02, 1-Year Bundle
#FC-10-VVM02-935-02-12
המחיר שלנו: הצעת מחיר
8x5 for FortiWeb VM02, 2-Year Bundle
#FC-10-VVM02-935-02-24
המחיר שלנו: הצעת מחיר
8x5 for FortiWeb VM02, 3-Year Bundle
#FC-10-VVM02-935-02-36
המחיר שלנו: הצעת מחיר
Fortinet FortiWeb VM02 24x7 Bundle Subscription
The 24x7 Bundle Subscription includes Advanced Hardware Replacement (Next Business Day), Firmware Upgrades, 24X7 Support, AV, IPS, CF and AS
24x7 for FortiWeb VM02, 1-Year Bundle
#FC-10-VVM02-936-02-12
המחיר שלנו: הצעת מחיר
24x7 for FortiWeb VM02, 2-Year Bundle
#FC-10-VVM02-936-02-24
המחיר שלנו: הצעת מחיר
24x7 for FortiWeb VM02, 3-Year Bundle
#FC-10-VVM02-936-02-36
המחיר שלנו: הצעת מחיר
Fortinet Subscriptions
IP Reputation Service for FortiWeb VM02
#FC-10-VVM02-140-02-12
המחיר שלנו: הצעת מחיר
FortiGuard AV Services for FortiWeb VM02
#FC-10-VVM02-100-02-12
המחיר שלנו: הצעת מחיר
FortiWeb Security Service for FortiWeb VM02
#FC-10-VVM02-137-02-12
המחיר שלנו: הצעת מחיר
FortiWeb VM02 FortiCare 8x5
The FortiCare 8x5 includes 8x5 Support, Hardware Replacement, Firmware Upgrades, VPN, and Traffic Management.
8x5 FortiCare for FortiWeb VM02, 1-Year
#FC-10-VVM02-851-02-12
המחיר שלנו: הצעת מחיר
8x5 FortiCare for FortiWeb VM02, 2-Year
#FC-10-VVM02-851-02-24
המחיר שלנו: הצעת מחיר
8x5 FortiCare for FortiWeb VM02, 3-Year
#FC-10-VVM02-851-02-36
המחיר שלנו: הצעת מחיר
FortiWeb VM02 FortiCare 24x7
The FortiCare 24x7 includes 24x7 Support, Advanced Hardware Replacement (Next Business Day), Firmware Upgrades, VPN, and Traffic Management.
24x7 FortiCare for FortiWeb VM02, 1-Year
#FC-10-VVM02-248-02-12
המחיר שלנו: הצעת מחיר
24x7 FortiCare for FortiWeb VM02, 2-Year
#FC-10-VVM02-248-02-24
המחיר שלנו: הצעת מחיר
24x7 FortiCare for FortiWeb VM02, 3-Year
#FC-10-VVM02-248-02-36
המחיר שלנו: הצעת מחיר