Product Description
Fortinet FortiDDoS 2000E Network Security/Firewall Appliance - 10GBase-X, 1000Base-X, 100GBase-X, 40GBase-X - 100 Gigabit Ethernet - 28 Total Expansion Slots - 2U - Rack-mountable & 2PAIRX40GE QSFP+ OR 100GE
Distributed Denial of Service (DDoS) attacks remain a top threat to IT security and have evolved in almost every way to do what they do best: shut down access to your vital online services.Unlike intrusion and malware attacks, DDoS attackers have learned that they don't need to attack only end-point servers to shut you down. They attack any IP address that routes to your network: unused IPs, Inter-router-link public IPs or Firewall/Proxy/WiFi Gateway public IPs.
Cloud-based CDN and DNS-based cloud mitigation cannot protect you from these attacks. What is the impact to your business if your users cannot reach cloud services because your firewall or demarc router public IP is being DDoSed? Your CDN-based web servers may be up but your business is down!
Sophisticated multi-vector and multi-layer DDoS attacks use direct and reflected packets where the spoofed, randomized source IPs are impossible to ACL. These attacks are increasingly common as Mirai-style code has morphed into many variants and has been commercialized by providers of "stresser" sites. Anyone can call down large attacks for a few dollars.
To combat these attacks, you need a solution that dynamically protects a large attack surface.
Powered by SPU - A Different and Better Approach to DDoS Attack Mitigation
Only Fortinet FortiDDoS appliances use Machine Learning detection methods in dedicated, custom-silicon Security Processing Units (SPUs) to deliver the most advanced and fastest DDoS attack mitigation on the market today, without the performance compromises of multi-CPU or CPU/ASIC hybrid systems. The TP2 and TP3 SPU Traffic Processors inspect 100% of both inbound and outbound Layer 3, 4 and 7 packets, resulting in the fastest and most accurate detection and mitigation, and the lowest latency in the industry.
FortiDDoS uses 100% machine learning, behavior-based methods to identify threats. Instead of requiring predefined signatures to identify attack patterns, FortiDDoS uses its massively-parallel computing architecture to build an adaptive baseline of normal activity from huNDReds-of-thousands of parameters and then monitors traffic against that baseline. Should an attack begin, FortiDDoS sees this as abnormal and immediately takes action to mitigate it.
The Power of SPUs - Flexible, Autonomous Defenses
FortiDDoS protects you from known and "zero-day" attacks without creating local or downloading subscription signatures for mitigation. Other vendors try to conserve CPU real-time by inspecting a relatively small number of parameters at a low sample rate, unless and until an explicit signature is created. FortiDDoS' massively parallel SPU Traffic Processors sample 100% of even the smallest packets, for over 230,000 parameters for each Protection Profile. This allows FortiDDoS to operate completely autonomously, finding some attacks on the FIRST packet and all attacks within 2 seconds - broader and faster mitigation than any other vendor or method. There is no need to adjust settings, read pcaps or add regex-style manual signatures or ACLs in the middle of attacks. While attacks are being mitigated, FortiDDoS continues to monitor all other parameters to instantly react to added or changed vectors.
Features
- 100% hardware-based Layer 3, 4 and 7 DDoS attack identification and mitigation, simultaneously monitors huNDReds of thousands of parameters - a massively-parallel computing architecture
- 100% Machine Learning DDoS detection
- Completely invisible to attackers with no IP and no MAC addresses in the data path. FortiDDoS is not a routing or terminating Layer 3 device.
- Continuous threat evaluation to minimize false positive detections
- Advanced DNS DDoS mitigation on most models
- MSSP Portal for customer resale
- Central Manager
- Hybrid On-premise/Cloud mitigation available with Open Signaling
Other Details
(Manufacturer Standard Warranty) - Not Clear what product you need, or can't find your specific product/service part number? Call us +1 888 988 5472 | Fax: +1 888 920 3445. You can also use the quote request pageProduct Videos
Custom Field
Product Type Network Security/Firewall Appliance
Firewall Protection Supported Distributed Denial of Service (DDoS)
Firewall Protection Supported Threat Protection
Firewall Protection Supported DNS Request Flood
Firewall Protection Supported Packet Inspection
Manufacturer Part Number FDD-2000E
Weight (Approximate) 44 lb
Form Factor Rack-mountable
Manufacturer Fortinet, Inc
Product Model 2000E
Product Name FortiDDoS 2000E Network Security/Firewall Appliance
Product Line FortiDDoS
Brand Name Fortinet
Expansion Slot Type SFP (mini-GBIC)
Expansion Slot Type SFP+
Expansion Slot Type QSFP+
Expansion Slot Type QSFP28
Height 3.5"
Width 17.2"
Depth 22.1"
Manageable Yes
Network Standard 10GBase-X
Network Standard 1000Base-X
Network Standard 100GBase-X
Network Standard 40GBase-X
Compatible Rack Unit 2U
Ethernet Technology 100 Gigabit Ethernet
Number of Total Expansion Slots 28
Number of SFP+ Slots 16
Note Images may not be exact, please check specifications.
Required A Volume Purchase Contact us for a volume pricing | volumeorders@hssl.us