Fortinet adds new security, SD-WAN, branch, and zero-trust capabilities to FortiOS software. Credit: iStock Fortinet has made available a new release of its core FortiOS software that includes features the vendor says will help enterprises more tightly meld security and networking controls. FortiOS 7.2, has 300 new features including AI support to help stop network threats more quickly, sandboxing to help fight ransomware threats, and improved SD-WAN, branch, and edge orchestration. FortiOS is the vendor’s operating system for the FortiGate family of hardware and virtual components. FortiOS implements Fortinet Security Fabric and includes network security such as firewalling, access control, and authentication in addition to SD-WAN, switching, and wireless services. “What we are addressing with FortiOS 7.2 is the convergence of networking and security as customers are running very fast get their digital networks running,” said John Maddison, Fortinet executive vice president of products and CMO. “This digital convergence creates a lot of new network edges—the LAN edge, edge cloud, and now a 5G edge. Networking and security can no longer be treated as separate strategies and that’s the main problem we are addressing for customers.” On the security front, Fortinet is introducing AI and ML-based FortiGuard security services that are based on telemetry information gleaned from its network, application. and security systems across the globe. One new service, Inline Sandbox, goes beyond the traditional detection sandbox capability where admins had to painstakingly look for malicious traffic to put into the sandbox. It uses the gathered intelligence to let customers, in real-time to stop both known and unknown malware, with minimal impact on operations, Maddison said. “The idea is that organizations can spot and stop and prevent problems as quickly as possible.” Another new service, Advanced Device Protection, lets the Fortinet OS automatically discover and segment OT and IoT devices based on their unique network features. The service also maintains asset inventory and uses pattern matching to enforce appropriate policies and automate remediation if needed, Maddison said. “We’re seeing a lot of activity around attacks on operational technology companies so this new service lets OT organizations get outbreak information and more quickly stop it from causing problems,” he said. This service is offered on Fortinet NGFW and through integration with FortiNAC network access control software that can orchestrate automatic responses to networking issues. Fortinet NGFW also gets a cloud access security broker (CASB) to bring inline zero trust network access traffic inspection to the service. A new SOC-as-a-Service can offload tier one security analysis, such as monitoring event logs or suspicious traffic, to Fortinet analysts to lessen the burden on security admins, Maddison said. On the networking upgrades, Fortinet has added enhanced analytics support to its SD-WAN service that can measure the performance of connected voice and video applications. FortiOS 7.2 also adds automated deployment and orchestration features to make setting up, securing and managing branch networks simpler. New onboarding features support discovery of devices to enable the implementation of least-privileged access at the LAN edge, Maddison said. In its November “MarketScape: Worldwide SD-WAN Infrastructure 2021 Vendor Assessment,” IDC wrote that Fortinet is known for having a strongly integrated network and security portfolio. Fortinet’s Secure SD-WAN consolidates SD-WAN, NGFW, advanced routing, and [Zero Trust network access] proxy functions in its FortiGate appliance. Fortinet also offers LAN and WLAN products and has s built a channel-partner strategy that includes strong relationships with communications service providers, as well as managed SPs and VARs. On the challenges side, Fortinet is primarily a security vendor and may need to work harder with customers that are looking to work with a vendor with a stronger heritage in routing and networking, IDC stated. While Fortinet offers integration with third-party security tools, its primary security solutions are offered by Fortinet itself; this may be a limitation to customers that want to use Fortinet for SD-WAN but integrate it with third-party security tools. Related content brandpost Sponsored by Zscaler NYC Department of Education builds the pipeline for future cybersecurity professionals NYC Department of Education's innovative programs empower students through hands-on experience and partnerships in cybersecurity, paving the way for diverse career pathways and long-term success in the digital workforce. By Demond Waters, CISO, and Anthony Dixon, Director of Cybersecurity Engineering at the New York City (NYC) Department of Education (DOE) Oct 21, 2024 10 mins Security brandpost Sponsored by Zscaler Are Your Firewalls and VPNs the Weakest Link in Your Security Stack? In an era when traditional network perimeters no longer exist, it’s time to adopt the Zero Trust mantra, "never trust, always verify.” By Zscaler Oct 21, 2024 9 mins Security brandpost Sponsored by Zscaler 6 key mobile and IoT/OT attack trend findings Zscaler ThreatLabz analysis shows more than 100% growth in spyware, much of which can bypass multifactor authentication, and 45% growth in IoT attacks. By Will Seaton, Viral Gandhi, Yesenia Barajas Oct 18, 2024 6 mins Security news Admins warned to update Palo Alto Networks Expedition tool immediately Six holes in the configuration migration tool could allow theft of cleartext passwords and more. By Howard Solomon Oct 11, 2024 1 min Network Security Security PODCASTS VIDEOS RESOURCES EVENTS NEWSLETTERS Newsletter Promo Module Test Description for newsletter promo module. Please enter a valid email address Subscribe