FortiGate Virtual Appliances
Consolidated Security for Virtual Environments
Via a complete end-to-end security ecosystem for the Data Center, Fortinet enables and
facilitates the enterprise’s journey through the Data Center consolidation process. The
delivery of both physical and virtual planes security appliances it offers on one side, and
the unmatched performance and security capabilities it provides on the other side, allow
the growth and evolution of the consolidating Data Center with no service degradation
or bottlenecks, no compromise on security, and with an unmatched ROI — fullfilling the
outcomes of a robust software-defined security framework.
FortiGate Virtual Appliances allow you to mitigate blind spots by implementing critical security
controls within your virtual infrastructure. They also allow you to rapidly provision security
infrastructure whenever and wherever it is needed. FortiGate virtual appliances feature all
of the security and networking services common to traditional hardware-based FortiGate
appliances. With the addition of virtual appliances from Fortinet, you can deploy a mix of
hardware and virtual appliances, operating together and managed from a common centralized
management platform.

FortiGate Virtual
Appliance Benefits
FortiGate virtual appliances offer
protection from a broad array of
threats, with support for all of the
security and networking services
offered by the FortiOS operating
system. In addition, the appliances
offer these benefits:
§§ Increased visibility within
virtualized infrastructure
§§ Rapid deployment capability
§§ Ability to manage virtual
appliances and physical
appliances from a single pane of
glass management platform
§§ Simple licensing with no
per-user fees
§§ Support for multiple



1 ESXi V5. Alpha Zone VMs can all talk to each other freely.1. V4. Purchase from AWS Marketplace. FortiGate appliances protect your infrastructure and increase visibility and control over communications within the with some of the most effective security available today by enabling virtualized infrastructure.6 SP2.1 and later FG-VM00-Xen FG-VM01-Xen FG-VM02-Xen FG-VM04-Xen FG-VM08-Xen Amazon Amazon Web Services (AWS)* — FG-VM01-Xen FG-VM02-Xen FG-VM04-Xen FG-VM08-Xen Microsoft Azure — — — FG-VM04-HV FG-VM08-HV Public Cloud Platforms Hypervisor Support varies according to FortiOS builds.x Alpha Port Group (VLAN 101) ! vSwitch Alpha 1032 VLAN trunk to L2 VDOM To L3 VDOM vSwitch Inter-ZONE Bravo 1 Port Gr ! VLAN 102{1-n} ! Bravo 2 Port Gr VLAN 103{1-n} vSwitch Bravo 1-n Inter-VM vSwitch Fabric Hypervisor Layer www. V5. Fortinet allows facing your virtualized environment.0 FG-VM00 Private Cloud Platforms VMware FG-VM01 FG-VM02 FG-VM04 FG-VM08 Citrix Xen Server V5. V6.12. creating a need for both hardware appliances appliances effectively neutralize a wide range of security threats and virtual appliances in your security strategy.DATA SHEET: FortiGate® Virtual Appliances PLATFORM Choice of Form Factor Multi-Threat Security Few organizations use 100% hardware or 100% virtual IT Using the advanced FortiOS™ operating system. V5. the edge inter-zone security. Alpha Zones NGFW/UTM Zone 1 to 2 VM • Secure Inter-VM traffic in same broadcast domain • Transparent VDOM to bridge VLANs • Inter-Zone L3 VDOM within FortiGate-VM instance • No hypervisor API dependency VM5 1t VLAN trunk to L2 VDOM M2 VM3. Please refer to appropriate release notes. V6.4.168. DEPLOYMENT NGFW/UTM FortiGate-VM NGFW/UTM Inter-Zone / Inter-VM Security All Inter-VM traffic in Bravo Zones are subject to full UTM scan through L2 VDOM. FortiManager virtual or physical appliances security features you need. FortiGate infrastructure . Supported Hypervisor VENDOR HYPERVISOR FORTIGATE-VM ESX V4. 2012. Inter-Zone traffic subject to full Next Gen Firewall and UTM scan by L3 VDOM. * Available as Pay-As-You-Go or Bring-Your-Own-License (BYOL).x Hypervisor Layer 2 VM6 VLAN 1031 FortiGate-VM oV VM1 VLAN 1021 VM7.0 and later FG-VM00-Xen FG-VM01-Xen FG-VM02-Xen FG-VM04-Xen FG-VM08-Xen Linux KVM CentOS 6.1) and later FG-VM00-KVM FG-VM01-KVM FG-VM02-KVM FG-VM04-KVM FG-VM08-KVM Microsoft Hyper-V Server 2008 R2.2. or deep within the virtual infrastructure for with hardware and virtual appliances to secure the core. 1022 Bravo1 Bravo2 Zone 1 192.1.168. allow you to easily manage and update your Fortinet security assets — hardware. Whether deployed at the edge you to build the security solution that’s right for your environment as a front-line defense.4 (qemu 0.4 VM2 Zone 2 192. V4. virtual or both — from a single pane of glass. and 2012 R2 FG-VM00-HV FG-VM01-HV FG-VM02-HV FG-VM04-HV FG-VM08-HV Open Source XenServer V3.

fortinet.DATA SHEET: FortiGate® Virtual Appliances SOFTWARE FortiOS FortiOS helps you protect your organization against advanced threats. the needs of enterprises of all sizes: team collaborates with the world’s leading threat monitoring §§ Enhanced Support — For customers who need support organizations. With support staff in the Americas. priority automated signature updates monthly. FortiOS Managment UI — FortiView and Application Control Panel §§ Robust Networking Capabilities — Optimize your network with extensive switching and routing. including advanced exchange hardware replacement. Comprised of security Europe. §§ Validated Security Intelligence — Based on FortiGuard §§ Professional Services — For customers with more complex intelligence. enhanced 170 unique zero-day vulnerabilities to date. and forensic specialists. Fortinet’s network security platform is tested and security implementations that require architecture and design validated by the world’s leading third-party testing labs and services. extended software support. engineers. as well as law enforcement agencies: §§ Real-time Updates — 24x7x365 Global Operations research security intelligence. services and more. configure and deploy your network security faster and see deep into what’s happening inside your network. granular policy control. please refer to the FortiOS data sheet available at www. scalable security and network management. distributed via Fortinet Distributed Network to all Fortinet platforms. and intuitive. high availability. please refer to http://forti. §§ Premium Services — For global or regional customers who need an assigned Technical Account Manager. totaling millions of service level agreements. the full range of Fortinet’s solutions. For more information. §§ Superior Control and Visibility — Stay in control with rich visibility over network during local business hours 3 . VB100 certified antimalware and more. operational customers SERVICES FortiGuard™ Security Services FortiCare™ Support Services FortiGuard Labs offers real-time intelligence on the threat Our FortiCare customer support team provides global technical landscape. and a range of virtual options. Middle East and Asia. WAN optimization. on-site visits and more. §§ Security Research — FortiGuard Labs have discovered over §§ Comprehensive Support — For customers who need aroundthe-clock mission critical support. users and applications with industry-leading security capabilities. For more information. sandboxing. implementation and deployment services. delivering comprehensive security updates across support for all Fortinet products. embedded WiFi controller. The feature set is consistent for both virtual and physical appliance and can be managed on a single centralized platform. For more information. In essence. FortiCare offers services to meet the threat researchers. FortiOS delivers: §§ Comprehensive Security — Control thousands of applications and stop more threats with NSS Labs Recommended IPS. other network and security vendors. escalation. It enables organization to set up policies specific to types of devices. please refer to http://forti.

