A leading global supplier of engineered materials company faced challenges in enhancing network security within their AWS cloud environment. They turned to Fortinet Cloud Consulting Services for strategic AWS cloud network security design and SDWAN architecture. This collaboration with consulting experts signified a pivotal moment, culminating in the creation of a meticulously planned solution tailored to their unique requirements, while ensuring top-tier security and operational efficiency.
Expertise in Selecting the Right Cloud Architecture
Fortinet Cloud Consulting Services team initiated a detailed consultation process, expertly crafting an architecture that flawlessly incorporated the FortiGate Next Generation Firewall into the customer's network Security Virtual Private Cloud (VPC). This deployment emphasized scalability, reliability, and robustness, guaranteeing a seamless shift from the old architecture to the new one.
The architecture was designed to connect the customer's VMware workloads running both on-premises and in VMware Cloud (VMC) infrastructure with AWS services, ensuring seamless integration and optimized performance. This network design was critical in enabling secure and efficient communication across on-premises, VMC, and AWS environments, effectively addressing key operational requirements.
A notable aspect of this collaboration was the comprehensive evaluation of diverse architectural designs. The Fortinet consultants outlined multiple options, highlighting their unique benefits and potential challenges. This in-depth analysis enabled the customer to make informed decisions, ensuring their infrastructure not only satisfied current needs but was also adaptable for future advancements, facilitating a smooth migration.
Expertise in Selecting the Right Cloud Architecture
Fortinet cloud consulting services team initiated a detailed consultation process, expertly crafting an architecture that flawlessly incorporated the FortiGate Next Generation Firewall into the customer's network Security Virtual Private Cloud (VPC). This deployment emphasized scalability, reliability, and robustness, guaranteeing a seamless shift from the old architecture to the new one. More than just a migration blueprint, this proposed architecture signified a transformative approach to their AWS cloud environment.
A notable aspect of this collaboration was the comprehensive evaluation of diverse architectural designs. The Fortinet consultants outlined multiple options, highlighting their unique benefits and potential challenges. This in-depth analysis enabled the customer to make informed decisions, ensuring their infrastructure not only satisfied current needs but was also adaptable for future advancements, facilitating a smooth migration.
Centralized Firewall Policy Management and Full Visibility of Network Traffic
Further enhancing the security solution, Fortinet Cloud Consulting Service also facilitated the deployment of a centralized firewall policy management through FortiManager. This integration allowed for streamlined and consistent policy administration across the customer's entire network landscape, significantly simplifying the management of security policies.
Additionally, with the integration of FortiAnalyzer, the customer gained full visibility into network traffic. This tool provided comprehensive logging, analysis, and reporting capabilities, enabling the customer to monitor, understand, and respond to network activities effectively. These additions were crucial in achieving a holistic security stance, offering the customer an unparalleled level of control and insight into their network security.
A pivotal aspect of the Fortinet solution was the integration of FortiGate-VMs with SD-WAN and Transit Gateway, which was instrumental in achieving connectivity and enabling easy migration to more than 50 remote branches. The customer also enabled public-facing workloads fronted by AWS Application Load Balancer, private workloads without an Elastic IP that still needed to access the Internet, inter-VPC flows, and traffic between their on-premise data center and AWS. All these flows are now inspected by the FortiGate for compliance with business policies, regardless of where the application is running, whether on AWS or VMC. This setup not only enhanced the security posture but also improved network security, offering a scalable and resilient architecture that could adapt to the evolving demands of the digital landscape. The figure below shows the architectural implementation.
Furthermore, the Fortinet Cloud Consulting Services team took a hands-on approach to ensure a smooth transition. They crafted all necessary deployment scripts, which streamlined the migration process and minimized potential disruptions. Recognizing the importance of ongoing knowledge and self-sufficiency, Fortinet’s experts provided comprehensive training on all components of the solution. This educational effort ensured that the customer's engineering staff were not just passive recipients of a new system but active participants in its operation and future development.
Any reason why choosing Active-Passive design vs Standalone Units with GWLB. I see more advantages in terms of throughput whether moving into GWLB design.
Thx!!
Sometimes you need features that are not possible with GWLB deployments, such as VPN, SD-WAN, etc. In those cases you may choose Active-Passive design.
Welcome to your new Fortinet Community!
You'll find your previous forum posts under "Forums"
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.