FortiGate CNF instance
Each FortiGate CNF instance is a customer-dedicated, Fortinet-owned and managed VPC that spans across multiple availability zones in a single region.
Each FortiGate CNF instance is made up of the following components:
-
An autoscaling group of FortiOS-based EC2 instances dedicated to the customer.
-
An AWS Gateway Load Balancer (GWLB) that resides inside this dedicated VPC that is attached to GWLB endpoints (GWLBe) in the your protected VPCs. These VPCs can be in different AWS accounts in the same region.
The FortiGate CNF instance is responsible for data security processing and address resolution as necessary to protect your attached VPCs.
You can manage CNF instance security policies through the FortiGate CNF console or FortiManager.
You can deploy CNF instances through the FortiGate CNF console or AWS Firewall Manager.