Hi there. First time posting there, so I've not much experience with fortinet i mean its first time I'm planning to use fortinet because of my work.I want to know which model will be better to use in this situation. So as you can see on attached picture it's the diagram of network. right now there is only a mikrotik router. Main thing for this diagram is i use linux server for DB and on windows server there is class 5 softswitch for VOIP. right now on mikrotik there are just several ports opened UDP ports 50000-60000 and also a few SIP ports 5060,5061 and a few more also I've 1 IPsec VPN on it. As i've said i want to add fortinet and looking for a hardware model which can i use. also about router should i keep that mikrotik or can i just put it in trash and leave only fortinet ? also do i need any license for that firewall? I've 2 uplinks both 100/100MB bandwidth.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
May I ask, if it's a part of office setup or you have this in home ?
It's for testing for a few month after all the setups i will build on server for VOIP this thing will move to datacenter. But still I'll need a firewall
Hi Rolo,
Yes!, you can use the FortiGate as a router
The license defines the characteristics you are going to use, see https://www.fortinet.com/content/dam/fortinet/assets/data-sheets/FortiGuard_Security_Services.pdf
In addition to the physical characteristics (see https://www.fortinet.com/content/dam/fortinet/assets/data-sheets/Fortinet_Product_Matrix.pdf ), it is advisable to size the FGT based on the number of users you have and the feautures you want.
-dwb
As I've said this server will be for just VOIP so there will be only a 2 VM and i will need 1 VPN i guess it will be a IP Sec.
On a surface the setup is not very demanding, assuming you looked at the datasheet https://www.fortinet.com/content/dam/fortinet/assets/data-sheets/Fortinet_Product_Matrix.pdf
I'd say FGT 60E or 80E would be enough for 200 Mb of NATed traffic, few IPSec VPNs, no URL/AV/IPS filtering ...
And yes, Fortigate is very capable as a router, no need to keep the mikrotik.
Since you are already runnig virtualization there: there is also a FortiGate as VM for various Virtualizers available...
Just wanted to add that.
--
"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1731 | |
1099 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.