Main Nav

Sorry for the cross posting.  Normally try to avoid it.  I posted on Security and there wasn’t much of a response.  So I thought I might try here. 

 

Anyone have any experience and willing to chat via email or phone?  I can summarize if there is any interest. 

 

I’d love to know how long you’ve used them, bandwidth and population sizes, how you are utilizing the box, what protections you have active, if you are using Application based rules, etc.  Good things, not so good things. 

 

Thanks.

Chris

 

Chris Davis

CIS Security Manager

The Principia

********** Participation and subscription information for this EDUCAUSE Constituent Group discussion list can be found at http://www.educause.edu/groups/.

Comments

The one question you got on other lists was are you locked on Fortinet... or looking for a solution?  Perhaps your vendor choice is limiting your response rate?

On 4/13/2012 12:07 PM, Chris Davis wrote:

Sorry for the cross posting.  Normally try to avoid it.  I posted on Security and there wasn’t much of a response.  So I thought I might try here. 

 

Anyone have any experience and willing to chat via email or phone?  I can summarize if there is any interest. 

 

I’d love to know how long you’ve used them, bandwidth and population sizes, how you are utilizing the box, what protections you have active, if you are using Application based rules, etc.  Good things, not so good things. 

 

Thanks.

Chris

 

Chris Davis

CIS Security Manager

The Principia

********** Participation and subscription information for this EDUCAUSE Constituent Group discussion list can be found at http://www.educause.edu/groups/.

********** Participation and subscription information for this EDUCAUSE Constituent Group discussion list can be found at http://www.educause.edu/groups/.

Dave.  Thanks.  I know it was a very pointed question.  Didn’t mean to offend and I wasn’t putting down the Security list, far from it.  I’ve done a ton of research in the archives.  Most of the entries seemed to point to Palo Alto.    

 

I have looked at a number of solutions, and while I’d like to buy a Palo Alto firewall, my bandwidth/firewall needs fall into an area between an affordable Palo Alto solution, and a not affordable solution.  I just can’t manage to make the numbers work.  So I am looking for specific information on a solution that is affordable to me.  I would like to chat with some folks using the Fortinet product for some objective input.  And if no one responds, that’s information in and of itself.  :)

 

These lists have been a gold mine of data on a number of subjects for me lately. 

 

Regards.

Chris

 

Chris Davis

CIS Security Manager

The Principia

********** Participation and subscription information for this EDUCAUSE Constituent Group discussion list can be found at http://www.educause.edu/groups/.

Chris,

We use fortinet products extensively in our network and have for over 5 years. Contact me off list with your questions and I'll be happy to try and answer them


James Kennon
Network Engineer
Georgia State University
Jkennon@gsu.edu


From: Chris Davis <Chris.Davis@PRIN.EDU>
Reply-To: The EDUCAUSE Network Management Constituent Group Listserv <NETMAN@LISTSERV.EDUCAUSE.EDU>
Date: Fri, 13 Apr 2012 16:27:42 +0000
To: The EDUCAUSE Network Management Constituent Group Listserv <NETMAN@LISTSERV.EDUCAUSE.EDU>
Subject: Re: [NETMAN] Anyone have any experience with Fortinet Firewalls?

Dave.  Thanks.  I know it was a very pointed question.  Didn’t mean to offend and I wasn’t putting down the Security list, far from it.  I’ve done a ton of research in the archives.  Most of the entries seemed to point to Palo Alto.    

 

I have looked at a number of solutions, and while I’d like to buy a Palo Alto firewall, my bandwidth/firewall needs fall into an area between an affordable Palo Alto solution, and a not affordable solution.  I just can’t manage to make the numbers work.  So I am looking for specific information on a solution that is affordable to me.  I would like to chat with some folks using the Fortinet product for some objective input.  And if no one responds, that’s information in and of itself.  :)

 

These lists have been a gold mine of data on a number of subjects for me lately. 

 

Regards.

Chris

 

Chris Davis

CIS Security Manager

The Principia

********** Participation and subscription information for this EDUCAUSE Constituent Group discussion list can be found at http://www.educause.edu/groups/.

********** Participation and subscription information for this EDUCAUSE Constituent Group discussion list can be found at http://www.educause.edu/groups/.

Hello Chris,

We have two Fortinet firewalls in place that were installed last March.  You can contact Chad Astin, our Network Admin, for his experiences.

He is at 478-757-2474.

Thanks,

 

Kevin Ulshafer
Director of Computer and Information Resources  & CIO

Wesleyan College
4760 Forsyth Road
Macon, Georgia 31210
478-757-5125


Confidentiality Notice: This e-mail message, including any attachments, is for the sole use of the intended recipient and may contain confidential and privileged information. Any unauthorized review, use, disclosure, or distribution is prohibited. If you are not the intended recipient, please contact the sender by reply e-mail and destroy all copies of the original message.

 

Hi Chris,

I used to run Fortinet here, I had a pair of 800F's in high availability.  About 2 years ago we moved to a Palo Alto solution.  The Fortinet unit couldn't keep up with our bandwidth demands, even though we were well within the rated capacity.  Please contact me directly if you are interested in details.

I'd seriously consider the whole package, the Palo Alto solution includes a lot of extra features and may allow you to consolidate functionality from multiple devices in to one.  I'm using it as an Internet router, IDS/IPS, Antivirus scanning, Captive Portal server, in addition to enforcing firewall rules.

Best,
Matt

Chris,

                We have two 500A Fortinet firewalls. We currently have a 60 MBPs connection and the systems handle our network load fine, the only issues that we run into (seems like once a year) is the automatic pushes of the Antivirus definitions are corrupted which disallows all traffic.

 

Regards,

Jesse

 

Hi Matt,

Could you describe your environment?  I'm interested in available bandwidth, bandwidth utilization, number users/sessions, what services were enabled, and any other information you can provide. 

I am concerned about your statement regarding the device not keeping up even though it was well within the specs.

I am also waying PAN and Fortinet to replace a firewall, IDP, and wan load balancer.

Thanks,

Brett 

Hi Jesse,

Would you be willing to describe your environment?  I'm interested in users/sessions, bandwidth utilization, etc.

I'm also interested in what services you are using on your Fortinet devices.

Any information you can provide would be greatly appreciated.

Thanks in advance,

Brett

Close
Close


EDUCAUSE Connect
View dates and locations

Events for all Levels and Interests

Whether you're looking for a conference to attend face-to-face to connect with peers, or for an online event for team professional development, see what's upcoming.

Close

EDUCAUSE Institute
Leadership/Management Programs
Explore More

Career Center


Leadership and Management Programs

EDUCAUSE Institute
Project Management

 

 

Jump Start Your Career Growth

Explore EDUCAUSE professional development opportunities that match your career aspirations and desired level of time investment through our interactive online guide.

 

Close
EDUCAUSE organizes its efforts around three IT Focus Areas

 

 

Join These Programs If Your Focus Is

Close

Get on the Higher Ed IT Map

Employees of EDUCAUSE member institutions and organizations are invited to create individual profiles.
 

 

Close

2014 Strategic Priorities

  • Building the Profession
  • IT as a Game Changer
  • Foundations


Learn More >

Uncommon Thinking for the Common Good™

EDUCAUSE is the foremost community of higher education IT leaders and professionals.