Sorry-dette produktet er ikke lenger tilgjengelig

Fortinet FortiSIEM FSM-500F - COLLECTOR - sikkerhetsapparat - 1GbE - 1U - rackmonterbar

Tilgjengelighet: Ikke på lager
Sku: FSM-500F
146 928,00 kr eksl mva
Send til
*
*
Fraktmetode
Navn
Estimert leveringsdato
Pris
Ingen fraktalternativer
Beskrivelse

Today's digital business is increasingly driven on IoT, cloud services and more to stay closer to customers than ever. This reliance makes uptime critical to growth and profitability. As such, an end user doesn't care if their application service problems are performance or security-related.

Unified NOC and SOC analytics

Fortinet has developed an architecture that enables unified data collection and analytics from diverse information sources including logs, performance metrics, SNMP Traps, security alerts and configuration changes. FortiSIEM essentially takes the analytics traditionally monitored in separate silos from - SOC and NOC - and brings that data together for a more holistic view of the security and availability of the business. Every piece of information is converted into an event which is first parsed and then fed into an event-based analytics engine for monitoring real-time searches, rules, dashboards and ad-hoc queries.

Distributed real-time event correlation

Distributed event correlation is a difficult problem, as multiple nodes have to share their partial states in real time to trigger a rule. While many SIEM vendors have distributed data collection and distributed search capabilities, Fortinet is the only vendor with a distributed real-time event correlation engine. Complex event patterns can be detected in real time. This patented algorithm enables FortiSIEM to handle a large number of rules in real time at high event rates for accelerated detection timeframes.

Real-Time, Automated Infrastructure Discovery and Application Discovery Engine (CMDB)

Rapid problem resolution requires infrastructure context. Most log analysis and SIEM vendors require administrators to provide the context manually, which quickly becomes stale, and is highly prone to human error. Fortinet has developed an intelligent infrastructure and application discovery engine that is able to discover and map the topology of both physical and virtual infrastructure, on-premises and in public/private clouds, simply using credentials without any prior knowledge of what the devices or applications are. An up-to-date CMDB (Centralized Management Database) enables sophisticated context aware event analytics using CMDB Objects in search conditions.

Dynamic user identity mapping

Crucial context for log analysis is connecting network identity (IP address, MAC Address) to user identity (log name, full name, organization role). This information is constantly changing as users obtain new addresses via DHCP or VPN. Fortinet has developed a dynamic user identity mapping methodology. Users and their roles are discovered from on-premises or Cloud SSO repositories. Network identity is identified from important network events. Then geo-identity is added to form a dynamic user identity audit trail. This makes it possible to create policies or perform investigations based on user identity instead of IP addresses - allowing for rapid problem resolution.

Flexible and fast custom log parsing framework

Effective log parsing requires custom scripts but those can be slow to execute, especially for high volume logs like Active Directory, firewall logs, etc. Compiled code on the other hand, is fast to execute but is not flexible since it needs new software releases. Fortinet has developed an XML-based event parsing language that is functional like high level programming languages and easy to modify yet can be compiled during run-time to be highly efficient. All FortiSIEM parsers go beyond most competitors' offerings using this patented solution and can be parsed at beyond 10K EPS per node.

Business services dashboard - transforms system to service views

Traditionally, SIEMS monitor individual components - servers, applications, databases and so forth - but what most organizations really care about is the services those systems power. FortiSIEM now offers the ability to associate individual components with the end user experience that they deliver together providing a powerful view into the true availability of the business.

Generelt
EnhetstypeSikkerhetsapparat
Høyde (Stativenheter)1U
Bredde43.7 cm
Dybde50.3 cm
Høyde4.3 cm
Vekt14 kg
Prosessor / Minne / Lager
Installerte prosessorer1 x Intel Xeon E3-1225V3 3.2 GHz
RAM16 GB DDR3 SDRAM
Harddisk3 TB x 1
Nettverkstilknytning
ProduktformfaktorRackmonterbar
OverføringsteknologiKablet
DatakjedeprotokollGigabit Ethernet
KapasitetHendelseslogginger per sekund: 5000
EgenskaperVPN-støtte, LDAP støtte, MAC-adressefiltrering, IP-adressefiltrering, sFlow, NetFlow, SNMP-felle, SNMP-støtte, Cisco IOS IP Service-Level Agreements (IPSLA), Network-Based Application Recognition (NBAR), nettverksanalytikk i sanntid, skyskalaarkitektur, Self Learning Asset Inventory (CMDB), MSP/MSSP Ready, Unified NOC and SOC Analytics, Dynamic User Identity Mapping, Performance Monitoring, Availability Monitoring, Notification and Incident Management, Powerful and Scalable Analytics
Autentifikasjons MetodeActive Directory
Ekspansjon / Tilkoplinger
Grensesnitt4 x 1000Base-T - RJ-45
1 x konsoll - DB-9
2 x USB 2.0 - Type A
2 x USB 3.0 - Type A
Diverse
Tilpassede standarderPCI DSS, HIPAA, SOX, FISMA
Strømforsyning
Påkrevd nettspenningAC 120/230 V (50 - 60 Hz)
Miljøparametere
Min. driftstemperatur10 °C
Maks. Driftstemperatur35 °C
Driftsfuktighet8 - 90 % (ikke-kondenserende)