+ All Categories
Home > Documents > Run Your Containers Securely with Fortinet on AWS€¦ · Amazon Web Services (AWS) integration,...

Run Your Containers Securely with Fortinet on AWS€¦ · Amazon Web Services (AWS) integration,...

Date post: 16-Oct-2020
Category:
Upload: others
View: 2 times
Download: 0 times
Share this document with a friend
8
Run your containers securely with Fortinet on AWS
Transcript
Page 1: Run Your Containers Securely with Fortinet on AWS€¦ · Amazon Web Services (AWS) integration, broad protection, and ... dev_app [Y]... dev_app prod_app Worker Node 1 Worker Node

Run your containers securely with Fortinet on AWS

Table of Contents

Reliable security for container-based development 3Fortinet the complete container security solution4A suite of security options for your development needs 6Fortinet on AWS ndash security and scalability 7

3

Top-tier DevOps security organizations take security seriously They are

187 more likely to conduct security audit tracking

96 more likely to perform dependencies analysis

63 more likely to scan cloud instances for misconfigurations

45 more likely to monitor and manage code commits1

Reliable security for container-based development

Modern development organizations using DevOps have increasingly come to depend on containers When yoursquore developing at market speed the time it takes to address every possible issue and manually reconfigure security measures promises to slow development processes to a crawl

While containers accelerate software development security solutions often seem to get in the way Threats to data integrity persist whether from external sources like malware phishing and social engineering or internally via misdelivery or misconfiguration Thatrsquos why DevOps teams need security solutions that build upon the advantages of containers and work within the new microservices paradigm

Catching vulnerabilities is a challenge as only 14 of organizations have enabled full visibility into their DevOps environment from their SOCs3

Development organizations are looking for ways to address these security concerns Enter Fortinet an AWS Partner Network (APN) partner whose innovative security solution were designed expressly for the new reality of container-based development

92 of organizations have seen at least one vulnerability slip into production in the past 12 months with the typical organization experiencing three to five vulnerabilities in production in that time2

1 ldquoFortinet Container Securityrdquo Fortinet 2019

2 ldquo2019 State of DevOps Security Reportrdquo Fortinet 2019

3 ldquo2019 State of DevOps Security Reportrdquo Fortinet 2019

4

Fortinet enables a smart and holistic approach to container security with its unique three-pillar cloud security strategy Through native Amazon Web Services (AWS) integration broad protection and unified management your security solution is integrated across your entire organization

Container security solutions from Fortinet address the expanded attack surface enabling security to be integrated in the container application life cycle and allowing organizations to deliver more secure applications

Fortinet solutions get high marks from industry leaders who specialize in security assessment Recently NSS Labs awarded Fortinetrsquos Next-Generation Firewalls its sixth consecutive ldquoRecommendedrdquo rating Fortinet was also named a Leader in the 2018 Gartner Magic Quadrant for Enterprise Network Firewalls

Fortinet the complete container security solution

security-policyprod_app [X]dev_app [Y]

prod_appdev_app

Worker Node 1 Worker Node 2

13

2

Registry

4

Figure 1 Protecting application containers throughout the application life cycle

5

container-aware container-enabled

container-registrycontainer-integrated

Fortinet solutions are specifically designed to cover the four key attributes of container security

6

A suite of security options for your development needs

Fortinetrsquos broad and integrated solutions were designed to address threats so your team can concentrate on innovation and scaling fast

For container-aware security FortiGate next-generation firewalls utilize Security Fabric connectors that interface with major container orchestration systems to leverage metadata as security policy objects including native Kubernetes and AWS Elastic Kubernetes Service (EKS)

Container-enabled security comes with FortiWeb Container Edition which protects business-critical web applications and APIs from attacks that target known and unknown vulnerabilities uniquely leveraging Machine Learning to mitigate false positives and accelerate the fine tuning of policies FortiWeb is offered as a native Docker container as well as an AWS ECS container marketplace offering

For container-integrated security Fortinet has partnered with Alcide on an integrated and automated solution for continuous cloud security and with Tufin for a solution that orchestrates network security policy for Kubernetes and FortiGate-VM Firewalls

For container registry security FortiSandbox can scan container images for malware and vulnerabilities an essential component of security strategies to help combat previously unknown threats

7

Fortinet on AWSndashsecurity and scalability

Fortinet solutions on AWS go hand-in-hand with FortiGate FortiWeb and FortiSandbox and Fortinetrsquos partnered security programs natively integrated on AWS for optimal performance and scalability The AWS data center and network architecture was built to meet the requirements of the most security-sensitive organizations so Fortinetrsquos solutions are a perfect fit And when you use AWS you enjoy all the benefits of integrating with the cloud including speed agility and limitless capacity

Fortinet solutions are ready to provide security for your DevOps team and are available in AWS Marketplace Visit Fortinet in AWS Marketplace and begin securing your containers today

Copyright copy 2019 Fortinet Inc All rights reserved Fortinetreg FortiGatereg FortiCarereg and FortiGuardreg and certain other marks are registered trademarks of Fortinet Inc and other Fortinet names herein may also be registered andor common law trademarks of Fortinet All other product or company names may be trademarks of their respective owners Performance and other metrics contained herein were attained in internal lab tests under ideal conditions and actual performance and other results may vary Network variables different network environments and other conditions may affect performance results Nothing herein represents any binding commitment by Fortinet and Fortinet disclaims all warranties whether express or implied except to the extent Fortinet enters a binding written contract signed by Fortinetrsquos General Counsel with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and in such event only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet For absolute clarity any such warranty will be limited to performance in the same ideal conditions as in Fortinetrsquos internal lab tests Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable

wwwfortinetcom

Page 2: Run Your Containers Securely with Fortinet on AWS€¦ · Amazon Web Services (AWS) integration, broad protection, and ... dev_app [Y]... dev_app prod_app Worker Node 1 Worker Node

Table of Contents

Reliable security for container-based development 3Fortinet the complete container security solution4A suite of security options for your development needs 6Fortinet on AWS ndash security and scalability 7

3

Top-tier DevOps security organizations take security seriously They are

187 more likely to conduct security audit tracking

96 more likely to perform dependencies analysis

63 more likely to scan cloud instances for misconfigurations

45 more likely to monitor and manage code commits1

Reliable security for container-based development

Modern development organizations using DevOps have increasingly come to depend on containers When yoursquore developing at market speed the time it takes to address every possible issue and manually reconfigure security measures promises to slow development processes to a crawl

While containers accelerate software development security solutions often seem to get in the way Threats to data integrity persist whether from external sources like malware phishing and social engineering or internally via misdelivery or misconfiguration Thatrsquos why DevOps teams need security solutions that build upon the advantages of containers and work within the new microservices paradigm

Catching vulnerabilities is a challenge as only 14 of organizations have enabled full visibility into their DevOps environment from their SOCs3

Development organizations are looking for ways to address these security concerns Enter Fortinet an AWS Partner Network (APN) partner whose innovative security solution were designed expressly for the new reality of container-based development

92 of organizations have seen at least one vulnerability slip into production in the past 12 months with the typical organization experiencing three to five vulnerabilities in production in that time2

1 ldquoFortinet Container Securityrdquo Fortinet 2019

2 ldquo2019 State of DevOps Security Reportrdquo Fortinet 2019

3 ldquo2019 State of DevOps Security Reportrdquo Fortinet 2019

4

Fortinet enables a smart and holistic approach to container security with its unique three-pillar cloud security strategy Through native Amazon Web Services (AWS) integration broad protection and unified management your security solution is integrated across your entire organization

Container security solutions from Fortinet address the expanded attack surface enabling security to be integrated in the container application life cycle and allowing organizations to deliver more secure applications

Fortinet solutions get high marks from industry leaders who specialize in security assessment Recently NSS Labs awarded Fortinetrsquos Next-Generation Firewalls its sixth consecutive ldquoRecommendedrdquo rating Fortinet was also named a Leader in the 2018 Gartner Magic Quadrant for Enterprise Network Firewalls

Fortinet the complete container security solution

security-policyprod_app [X]dev_app [Y]

prod_appdev_app

Worker Node 1 Worker Node 2

13

2

Registry

4

Figure 1 Protecting application containers throughout the application life cycle

5

container-aware container-enabled

container-registrycontainer-integrated

Fortinet solutions are specifically designed to cover the four key attributes of container security

6

A suite of security options for your development needs

Fortinetrsquos broad and integrated solutions were designed to address threats so your team can concentrate on innovation and scaling fast

For container-aware security FortiGate next-generation firewalls utilize Security Fabric connectors that interface with major container orchestration systems to leverage metadata as security policy objects including native Kubernetes and AWS Elastic Kubernetes Service (EKS)

Container-enabled security comes with FortiWeb Container Edition which protects business-critical web applications and APIs from attacks that target known and unknown vulnerabilities uniquely leveraging Machine Learning to mitigate false positives and accelerate the fine tuning of policies FortiWeb is offered as a native Docker container as well as an AWS ECS container marketplace offering

For container-integrated security Fortinet has partnered with Alcide on an integrated and automated solution for continuous cloud security and with Tufin for a solution that orchestrates network security policy for Kubernetes and FortiGate-VM Firewalls

For container registry security FortiSandbox can scan container images for malware and vulnerabilities an essential component of security strategies to help combat previously unknown threats

7

Fortinet on AWSndashsecurity and scalability

Fortinet solutions on AWS go hand-in-hand with FortiGate FortiWeb and FortiSandbox and Fortinetrsquos partnered security programs natively integrated on AWS for optimal performance and scalability The AWS data center and network architecture was built to meet the requirements of the most security-sensitive organizations so Fortinetrsquos solutions are a perfect fit And when you use AWS you enjoy all the benefits of integrating with the cloud including speed agility and limitless capacity

Fortinet solutions are ready to provide security for your DevOps team and are available in AWS Marketplace Visit Fortinet in AWS Marketplace and begin securing your containers today

Copyright copy 2019 Fortinet Inc All rights reserved Fortinetreg FortiGatereg FortiCarereg and FortiGuardreg and certain other marks are registered trademarks of Fortinet Inc and other Fortinet names herein may also be registered andor common law trademarks of Fortinet All other product or company names may be trademarks of their respective owners Performance and other metrics contained herein were attained in internal lab tests under ideal conditions and actual performance and other results may vary Network variables different network environments and other conditions may affect performance results Nothing herein represents any binding commitment by Fortinet and Fortinet disclaims all warranties whether express or implied except to the extent Fortinet enters a binding written contract signed by Fortinetrsquos General Counsel with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and in such event only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet For absolute clarity any such warranty will be limited to performance in the same ideal conditions as in Fortinetrsquos internal lab tests Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable

wwwfortinetcom

Page 3: Run Your Containers Securely with Fortinet on AWS€¦ · Amazon Web Services (AWS) integration, broad protection, and ... dev_app [Y]... dev_app prod_app Worker Node 1 Worker Node

3

Top-tier DevOps security organizations take security seriously They are

187 more likely to conduct security audit tracking

96 more likely to perform dependencies analysis

63 more likely to scan cloud instances for misconfigurations

45 more likely to monitor and manage code commits1

Reliable security for container-based development

Modern development organizations using DevOps have increasingly come to depend on containers When yoursquore developing at market speed the time it takes to address every possible issue and manually reconfigure security measures promises to slow development processes to a crawl

While containers accelerate software development security solutions often seem to get in the way Threats to data integrity persist whether from external sources like malware phishing and social engineering or internally via misdelivery or misconfiguration Thatrsquos why DevOps teams need security solutions that build upon the advantages of containers and work within the new microservices paradigm

Catching vulnerabilities is a challenge as only 14 of organizations have enabled full visibility into their DevOps environment from their SOCs3

Development organizations are looking for ways to address these security concerns Enter Fortinet an AWS Partner Network (APN) partner whose innovative security solution were designed expressly for the new reality of container-based development

92 of organizations have seen at least one vulnerability slip into production in the past 12 months with the typical organization experiencing three to five vulnerabilities in production in that time2

1 ldquoFortinet Container Securityrdquo Fortinet 2019

2 ldquo2019 State of DevOps Security Reportrdquo Fortinet 2019

3 ldquo2019 State of DevOps Security Reportrdquo Fortinet 2019

4

Fortinet enables a smart and holistic approach to container security with its unique three-pillar cloud security strategy Through native Amazon Web Services (AWS) integration broad protection and unified management your security solution is integrated across your entire organization

Container security solutions from Fortinet address the expanded attack surface enabling security to be integrated in the container application life cycle and allowing organizations to deliver more secure applications

Fortinet solutions get high marks from industry leaders who specialize in security assessment Recently NSS Labs awarded Fortinetrsquos Next-Generation Firewalls its sixth consecutive ldquoRecommendedrdquo rating Fortinet was also named a Leader in the 2018 Gartner Magic Quadrant for Enterprise Network Firewalls

Fortinet the complete container security solution

security-policyprod_app [X]dev_app [Y]

prod_appdev_app

Worker Node 1 Worker Node 2

13

2

Registry

4

Figure 1 Protecting application containers throughout the application life cycle

5

container-aware container-enabled

container-registrycontainer-integrated

Fortinet solutions are specifically designed to cover the four key attributes of container security

6

A suite of security options for your development needs

Fortinetrsquos broad and integrated solutions were designed to address threats so your team can concentrate on innovation and scaling fast

For container-aware security FortiGate next-generation firewalls utilize Security Fabric connectors that interface with major container orchestration systems to leverage metadata as security policy objects including native Kubernetes and AWS Elastic Kubernetes Service (EKS)

Container-enabled security comes with FortiWeb Container Edition which protects business-critical web applications and APIs from attacks that target known and unknown vulnerabilities uniquely leveraging Machine Learning to mitigate false positives and accelerate the fine tuning of policies FortiWeb is offered as a native Docker container as well as an AWS ECS container marketplace offering

For container-integrated security Fortinet has partnered with Alcide on an integrated and automated solution for continuous cloud security and with Tufin for a solution that orchestrates network security policy for Kubernetes and FortiGate-VM Firewalls

For container registry security FortiSandbox can scan container images for malware and vulnerabilities an essential component of security strategies to help combat previously unknown threats

7

Fortinet on AWSndashsecurity and scalability

Fortinet solutions on AWS go hand-in-hand with FortiGate FortiWeb and FortiSandbox and Fortinetrsquos partnered security programs natively integrated on AWS for optimal performance and scalability The AWS data center and network architecture was built to meet the requirements of the most security-sensitive organizations so Fortinetrsquos solutions are a perfect fit And when you use AWS you enjoy all the benefits of integrating with the cloud including speed agility and limitless capacity

Fortinet solutions are ready to provide security for your DevOps team and are available in AWS Marketplace Visit Fortinet in AWS Marketplace and begin securing your containers today

Copyright copy 2019 Fortinet Inc All rights reserved Fortinetreg FortiGatereg FortiCarereg and FortiGuardreg and certain other marks are registered trademarks of Fortinet Inc and other Fortinet names herein may also be registered andor common law trademarks of Fortinet All other product or company names may be trademarks of their respective owners Performance and other metrics contained herein were attained in internal lab tests under ideal conditions and actual performance and other results may vary Network variables different network environments and other conditions may affect performance results Nothing herein represents any binding commitment by Fortinet and Fortinet disclaims all warranties whether express or implied except to the extent Fortinet enters a binding written contract signed by Fortinetrsquos General Counsel with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and in such event only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet For absolute clarity any such warranty will be limited to performance in the same ideal conditions as in Fortinetrsquos internal lab tests Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable

wwwfortinetcom

Page 4: Run Your Containers Securely with Fortinet on AWS€¦ · Amazon Web Services (AWS) integration, broad protection, and ... dev_app [Y]... dev_app prod_app Worker Node 1 Worker Node

4

Fortinet enables a smart and holistic approach to container security with its unique three-pillar cloud security strategy Through native Amazon Web Services (AWS) integration broad protection and unified management your security solution is integrated across your entire organization

Container security solutions from Fortinet address the expanded attack surface enabling security to be integrated in the container application life cycle and allowing organizations to deliver more secure applications

Fortinet solutions get high marks from industry leaders who specialize in security assessment Recently NSS Labs awarded Fortinetrsquos Next-Generation Firewalls its sixth consecutive ldquoRecommendedrdquo rating Fortinet was also named a Leader in the 2018 Gartner Magic Quadrant for Enterprise Network Firewalls

Fortinet the complete container security solution

security-policyprod_app [X]dev_app [Y]

prod_appdev_app

Worker Node 1 Worker Node 2

13

2

Registry

4

Figure 1 Protecting application containers throughout the application life cycle

5

container-aware container-enabled

container-registrycontainer-integrated

Fortinet solutions are specifically designed to cover the four key attributes of container security

6

A suite of security options for your development needs

Fortinetrsquos broad and integrated solutions were designed to address threats so your team can concentrate on innovation and scaling fast

For container-aware security FortiGate next-generation firewalls utilize Security Fabric connectors that interface with major container orchestration systems to leverage metadata as security policy objects including native Kubernetes and AWS Elastic Kubernetes Service (EKS)

Container-enabled security comes with FortiWeb Container Edition which protects business-critical web applications and APIs from attacks that target known and unknown vulnerabilities uniquely leveraging Machine Learning to mitigate false positives and accelerate the fine tuning of policies FortiWeb is offered as a native Docker container as well as an AWS ECS container marketplace offering

For container-integrated security Fortinet has partnered with Alcide on an integrated and automated solution for continuous cloud security and with Tufin for a solution that orchestrates network security policy for Kubernetes and FortiGate-VM Firewalls

For container registry security FortiSandbox can scan container images for malware and vulnerabilities an essential component of security strategies to help combat previously unknown threats

7

Fortinet on AWSndashsecurity and scalability

Fortinet solutions on AWS go hand-in-hand with FortiGate FortiWeb and FortiSandbox and Fortinetrsquos partnered security programs natively integrated on AWS for optimal performance and scalability The AWS data center and network architecture was built to meet the requirements of the most security-sensitive organizations so Fortinetrsquos solutions are a perfect fit And when you use AWS you enjoy all the benefits of integrating with the cloud including speed agility and limitless capacity

Fortinet solutions are ready to provide security for your DevOps team and are available in AWS Marketplace Visit Fortinet in AWS Marketplace and begin securing your containers today

Copyright copy 2019 Fortinet Inc All rights reserved Fortinetreg FortiGatereg FortiCarereg and FortiGuardreg and certain other marks are registered trademarks of Fortinet Inc and other Fortinet names herein may also be registered andor common law trademarks of Fortinet All other product or company names may be trademarks of their respective owners Performance and other metrics contained herein were attained in internal lab tests under ideal conditions and actual performance and other results may vary Network variables different network environments and other conditions may affect performance results Nothing herein represents any binding commitment by Fortinet and Fortinet disclaims all warranties whether express or implied except to the extent Fortinet enters a binding written contract signed by Fortinetrsquos General Counsel with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and in such event only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet For absolute clarity any such warranty will be limited to performance in the same ideal conditions as in Fortinetrsquos internal lab tests Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable

wwwfortinetcom

Page 5: Run Your Containers Securely with Fortinet on AWS€¦ · Amazon Web Services (AWS) integration, broad protection, and ... dev_app [Y]... dev_app prod_app Worker Node 1 Worker Node

5

container-aware container-enabled

container-registrycontainer-integrated

Fortinet solutions are specifically designed to cover the four key attributes of container security

6

A suite of security options for your development needs

Fortinetrsquos broad and integrated solutions were designed to address threats so your team can concentrate on innovation and scaling fast

For container-aware security FortiGate next-generation firewalls utilize Security Fabric connectors that interface with major container orchestration systems to leverage metadata as security policy objects including native Kubernetes and AWS Elastic Kubernetes Service (EKS)

Container-enabled security comes with FortiWeb Container Edition which protects business-critical web applications and APIs from attacks that target known and unknown vulnerabilities uniquely leveraging Machine Learning to mitigate false positives and accelerate the fine tuning of policies FortiWeb is offered as a native Docker container as well as an AWS ECS container marketplace offering

For container-integrated security Fortinet has partnered with Alcide on an integrated and automated solution for continuous cloud security and with Tufin for a solution that orchestrates network security policy for Kubernetes and FortiGate-VM Firewalls

For container registry security FortiSandbox can scan container images for malware and vulnerabilities an essential component of security strategies to help combat previously unknown threats

7

Fortinet on AWSndashsecurity and scalability

Fortinet solutions on AWS go hand-in-hand with FortiGate FortiWeb and FortiSandbox and Fortinetrsquos partnered security programs natively integrated on AWS for optimal performance and scalability The AWS data center and network architecture was built to meet the requirements of the most security-sensitive organizations so Fortinetrsquos solutions are a perfect fit And when you use AWS you enjoy all the benefits of integrating with the cloud including speed agility and limitless capacity

Fortinet solutions are ready to provide security for your DevOps team and are available in AWS Marketplace Visit Fortinet in AWS Marketplace and begin securing your containers today

Copyright copy 2019 Fortinet Inc All rights reserved Fortinetreg FortiGatereg FortiCarereg and FortiGuardreg and certain other marks are registered trademarks of Fortinet Inc and other Fortinet names herein may also be registered andor common law trademarks of Fortinet All other product or company names may be trademarks of their respective owners Performance and other metrics contained herein were attained in internal lab tests under ideal conditions and actual performance and other results may vary Network variables different network environments and other conditions may affect performance results Nothing herein represents any binding commitment by Fortinet and Fortinet disclaims all warranties whether express or implied except to the extent Fortinet enters a binding written contract signed by Fortinetrsquos General Counsel with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and in such event only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet For absolute clarity any such warranty will be limited to performance in the same ideal conditions as in Fortinetrsquos internal lab tests Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable

wwwfortinetcom

Page 6: Run Your Containers Securely with Fortinet on AWS€¦ · Amazon Web Services (AWS) integration, broad protection, and ... dev_app [Y]... dev_app prod_app Worker Node 1 Worker Node

6

A suite of security options for your development needs

Fortinetrsquos broad and integrated solutions were designed to address threats so your team can concentrate on innovation and scaling fast

For container-aware security FortiGate next-generation firewalls utilize Security Fabric connectors that interface with major container orchestration systems to leverage metadata as security policy objects including native Kubernetes and AWS Elastic Kubernetes Service (EKS)

Container-enabled security comes with FortiWeb Container Edition which protects business-critical web applications and APIs from attacks that target known and unknown vulnerabilities uniquely leveraging Machine Learning to mitigate false positives and accelerate the fine tuning of policies FortiWeb is offered as a native Docker container as well as an AWS ECS container marketplace offering

For container-integrated security Fortinet has partnered with Alcide on an integrated and automated solution for continuous cloud security and with Tufin for a solution that orchestrates network security policy for Kubernetes and FortiGate-VM Firewalls

For container registry security FortiSandbox can scan container images for malware and vulnerabilities an essential component of security strategies to help combat previously unknown threats

7

Fortinet on AWSndashsecurity and scalability

Fortinet solutions on AWS go hand-in-hand with FortiGate FortiWeb and FortiSandbox and Fortinetrsquos partnered security programs natively integrated on AWS for optimal performance and scalability The AWS data center and network architecture was built to meet the requirements of the most security-sensitive organizations so Fortinetrsquos solutions are a perfect fit And when you use AWS you enjoy all the benefits of integrating with the cloud including speed agility and limitless capacity

Fortinet solutions are ready to provide security for your DevOps team and are available in AWS Marketplace Visit Fortinet in AWS Marketplace and begin securing your containers today

Copyright copy 2019 Fortinet Inc All rights reserved Fortinetreg FortiGatereg FortiCarereg and FortiGuardreg and certain other marks are registered trademarks of Fortinet Inc and other Fortinet names herein may also be registered andor common law trademarks of Fortinet All other product or company names may be trademarks of their respective owners Performance and other metrics contained herein were attained in internal lab tests under ideal conditions and actual performance and other results may vary Network variables different network environments and other conditions may affect performance results Nothing herein represents any binding commitment by Fortinet and Fortinet disclaims all warranties whether express or implied except to the extent Fortinet enters a binding written contract signed by Fortinetrsquos General Counsel with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and in such event only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet For absolute clarity any such warranty will be limited to performance in the same ideal conditions as in Fortinetrsquos internal lab tests Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable

wwwfortinetcom

Page 7: Run Your Containers Securely with Fortinet on AWS€¦ · Amazon Web Services (AWS) integration, broad protection, and ... dev_app [Y]... dev_app prod_app Worker Node 1 Worker Node

7

Fortinet on AWSndashsecurity and scalability

Fortinet solutions on AWS go hand-in-hand with FortiGate FortiWeb and FortiSandbox and Fortinetrsquos partnered security programs natively integrated on AWS for optimal performance and scalability The AWS data center and network architecture was built to meet the requirements of the most security-sensitive organizations so Fortinetrsquos solutions are a perfect fit And when you use AWS you enjoy all the benefits of integrating with the cloud including speed agility and limitless capacity

Fortinet solutions are ready to provide security for your DevOps team and are available in AWS Marketplace Visit Fortinet in AWS Marketplace and begin securing your containers today

Copyright copy 2019 Fortinet Inc All rights reserved Fortinetreg FortiGatereg FortiCarereg and FortiGuardreg and certain other marks are registered trademarks of Fortinet Inc and other Fortinet names herein may also be registered andor common law trademarks of Fortinet All other product or company names may be trademarks of their respective owners Performance and other metrics contained herein were attained in internal lab tests under ideal conditions and actual performance and other results may vary Network variables different network environments and other conditions may affect performance results Nothing herein represents any binding commitment by Fortinet and Fortinet disclaims all warranties whether express or implied except to the extent Fortinet enters a binding written contract signed by Fortinetrsquos General Counsel with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and in such event only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet For absolute clarity any such warranty will be limited to performance in the same ideal conditions as in Fortinetrsquos internal lab tests Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable

wwwfortinetcom

Page 8: Run Your Containers Securely with Fortinet on AWS€¦ · Amazon Web Services (AWS) integration, broad protection, and ... dev_app [Y]... dev_app prod_app Worker Node 1 Worker Node

Copyright copy 2019 Fortinet Inc All rights reserved Fortinetreg FortiGatereg FortiCarereg and FortiGuardreg and certain other marks are registered trademarks of Fortinet Inc and other Fortinet names herein may also be registered andor common law trademarks of Fortinet All other product or company names may be trademarks of their respective owners Performance and other metrics contained herein were attained in internal lab tests under ideal conditions and actual performance and other results may vary Network variables different network environments and other conditions may affect performance results Nothing herein represents any binding commitment by Fortinet and Fortinet disclaims all warranties whether express or implied except to the extent Fortinet enters a binding written contract signed by Fortinetrsquos General Counsel with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and in such event only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet For absolute clarity any such warranty will be limited to performance in the same ideal conditions as in Fortinetrsquos internal lab tests Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable Fortinet disclaims in full any covenants representations and guarantees pursuant hereto whether express or implied Fortinet reserves the right to change modify transfer or otherwise revise this publication without notice and the most current version of the publication shall be applicable

wwwfortinetcom


Recommended