Fortinet white logo
Fortinet white logo
7.6.0

SMB and branch offices

SMB and branch offices

This architecture describes a business with assets to protect. Employees are subject to the well-defined Acceptable Use Policy that primarily is focused on protection, ensuring a secure digital workspace while also enhancing employee’s productivity. To achieve this, content filtering plays a crucial role not only in safeguarding business resources but also in minimizing distractions. By restricting access to non-productive or unauthorized websites, organizations can reduce time-wasting browsing and optimize bandwidth usage, ensuring that network resources are used efficiently and securely.

Some key architecture definitions and qualifications include:

  • One security appliance

    • The use of a NGFW is highly prioritized to deliver a comprehensive solution that scales and is cost effective.

  • Remote workers

    • As hybrid and remote workers are becoming ubiquitous in most industries, companies are tasked with providing a Work From Home experience that mirrors that of in-office.

  • Enterprise feature integration

    • FortiGate may function as a standalone security appliance, but can also integrate with a myriad of business applications and services to provide additional capabilities such as:

      • User authentication (LDAP, RADIUS, PKI, etc.)

      • Department or site-specific security profiles

      • Change control using FortiManager and enforcing policy change summary

  • Logging

    • Centralized can potentially compare and contrast between branches if applicable

    • Can evaluate trends (baseline to qualify abnormal)

    • Forensics post-breach

    • Compliance requirements

    Note

    It is important to note that SMB and branch architectures may find benefits from implementing content filtering too. As opposed to meeting compliance requirements for safeguarding internet access for minors, content filtering in a professional workplace is typically implemented to reduce excessive time wasting and maintain internet access equality for the employees in accordance with the company’s internet acceptable use policy.

SMB and branch offices

SMB and branch offices

This architecture describes a business with assets to protect. Employees are subject to the well-defined Acceptable Use Policy that primarily is focused on protection, ensuring a secure digital workspace while also enhancing employee’s productivity. To achieve this, content filtering plays a crucial role not only in safeguarding business resources but also in minimizing distractions. By restricting access to non-productive or unauthorized websites, organizations can reduce time-wasting browsing and optimize bandwidth usage, ensuring that network resources are used efficiently and securely.

Some key architecture definitions and qualifications include:

  • One security appliance

    • The use of a NGFW is highly prioritized to deliver a comprehensive solution that scales and is cost effective.

  • Remote workers

    • As hybrid and remote workers are becoming ubiquitous in most industries, companies are tasked with providing a Work From Home experience that mirrors that of in-office.

  • Enterprise feature integration

    • FortiGate may function as a standalone security appliance, but can also integrate with a myriad of business applications and services to provide additional capabilities such as:

      • User authentication (LDAP, RADIUS, PKI, etc.)

      • Department or site-specific security profiles

      • Change control using FortiManager and enforcing policy change summary

  • Logging

    • Centralized can potentially compare and contrast between branches if applicable

    • Can evaluate trends (baseline to qualify abnormal)

    • Forensics post-breach

    • Compliance requirements

    Note

    It is important to note that SMB and branch architectures may find benefits from implementing content filtering too. As opposed to meeting compliance requirements for safeguarding internet access for minors, content filtering in a professional workplace is typically implemented to reduce excessive time wasting and maintain internet access equality for the employees in accordance with the company’s internet acceptable use policy.