Iceman83x.. I respect your view but it implies that u don't know the other technologies. FYI, FortiOS applies Traffic Shaping on applications so it is not something new. Moreover, other UTM solutions similar thing ;)
@mamobrasco Other UTM uses IPS module to identify the applications, PAN does it in the Firewall. This increase performance and make device able to apply Safe Enablement concept, impossiblo to do with traditional UTM that uses IPS: IPS can find and kill an app (if it can) but can't apply QoS or scan for malware an application! That's, with the SP3 inspection, is the real difference! ;-)
mamobrasco is right, many other appliances have integrated LDAP. This is exciting to me because the application analyzation scheme, the all-in-one factor, granular administration and keyword tagging.
The only thing I haven't seen is protection for laptop users who bring in virtually all malware when taken home. Barracuda Networks has been doing great things with web-filtering solutions to protect such computers.
Surely the performance will be degraded once all features are enabled but the performance per functionality is published by Fortinet in the datasheets of the FGT models and that is normal. By the way, do u mean the AV performance?
I do not say that FT is the best but they have much more features against all UTM vendors.
I see that PAN firewalls do not fit into enterprise networks as the solution is still not scalable.
Iceman83x.. I respect your view but it implies that u don't know the other technologies. FYI, FortiOS applies Traffic Shaping on applications so it is not something new. Moreover, other UTM solutions similar thing ;)
mamobrasco 6 months ago
@mamobrasco Other UTM uses IPS module to identify the applications, PAN does it in the Firewall. This increase performance and make device able to apply Safe Enablement concept, impossiblo to do with traditional UTM that uses IPS: IPS can find and kill an app (if it can) but can't apply QoS or scan for malware an application! That's, with the SP3 inspection, is the real difference! ;-)
iceman83x 6 months ago
So is he talking about deep packet inspection?
dankbot420 9 months ago
Does anyone know of a competitive appliance?
mamobrasco is right, many other appliances have integrated LDAP. This is exciting to me because the application analyzation scheme, the all-in-one factor, granular administration and keyword tagging.
The only thing I haven't seen is protection for laptop users who bring in virtually all malware when taken home. Barracuda Networks has been doing great things with web-filtering solutions to protect such computers.
Also, post on support experiences...
mlauntube 9 months ago
Surely the performance will be degraded once all features are enabled but the performance per functionality is published by Fortinet in the datasheets of the FGT models and that is normal. By the way, do u mean the AV performance?
I do not say that FT is the best but they have much more features against all UTM vendors.
I see that PAN firewalls do not fit into enterprise networks as the solution is still not scalable.
mamobrasco 1 year ago
FT is slow when you switch on all modules & CHKP crawls ..
I don't say PA is the best but its better in performance and rich in feature than the others.
enayatgalsulkar 1 year ago
Interesting.. But he is saying that the other firewall in the market do not identify the applications based on the users and users groups!
That is wrong because there are firewall vendors who do this and actually have been doing so for a while.
On of these vendors is Fortinet, their UTM product FortiGate is capable of identifying the applications (1100+ Application) along with the users.
mamobrasco 1 year ago