|
Contents |
||||
|
|
||||
|
|
||||
The Fortigate 200A is a very attractive black and silver 1RU appliance. At the front there are eight Ethernet ports (four internal, two DMZ, and two WAN). There are also two USB ports, a console port, power LED, a small backlit LCD, and four buttons to navigate.
At the rear is a small fan, a power switch, and an IEC power socket. Overall the construction of the device appears sturdy and well refined.
The administrator can set the IP addresses for the internal and external interfaces. And once on the network they can point a browser at the internal interface IP address using HTTPS to access the interface.
The user interface itself is well laid out and straightforward. Key tasks are performed using the menu system on the left. There is also a shortcut menu at the top enabling the operator to access other options such as a java console session to the CLI.
The 200A includes both signature-based and anomaly based IDS features, each relatively independent of one another.
Configuration is straight forward, although there is no automated update of the attack database -- it must be downloaded separately and uploaded from the local admin machine. Custom signatures can be created to counter zero-day threats amongst other things before the master signature database is updated.
The anomaly section comes with 27 predefined rules which cover most generic denial-of-service attacks and port scans.
Traffic policies and rules can be updated with various -protection profiles" that include IPS settings and there are several pre-configured profiles that can be modified.
Reporting is comprehensive. In particular, the granularity of the log-filter configuration allows the exportation of different logs and events to various logging/reporting systems. Alternatively logs can be viewed and filtered within the system's memory to a certain extent via the Log/Report section of the menu.
This is a very well-refined and developed system that is straight forward and quite easy to use. The Fortigate 200A is certainly worthy of consideration for SMEs or larger remote office locations.
|
| ||||||||||||||||||||||||||||||||










