Fortimail: Threat Prevention
Fortimail: Threat Prevention
Fortimail: Threat Prevention
DATA SHEET
FortiMail™
FEATURES
Multi-layered Antispam checks. Finally, message structure and content are analyzed
More than a dozen sender, protocol and content inspection based on digital signature, keywords in context, image analysis,
techniques shields networks and users from unwanted bulk embedded URIs and more advanced techniques such as behavior
email. It starts with assessing IP, domain and other reputations analysis and spam outbreak protection. Working together, these
and continues with various validation methods such as bounce, techniques consistently identify and block 99.98% of spam in
authentication and recipient verification as well as DKIM and SPF real-world conditions.
Powerful Antimalware
Combining multiple static with dynamic technologies
which include signature, heuristic and behavioral
techniques along with optional virus outbreak prevention
and sandboxing, FortiMail protects against a wide range
of constantly evolving threats such as ransomware and
targeted attacks.
2 www.fortinet.com
FortiMail™
FEATURES
DEPLOYMENT
Choose from three modes of deployment — Transparent, Gateway, or Server mode – to meet your specific email security requirements,
while minimizing infrastructure changes and service disruptions:
Gateway Mode: Provides inbound and outbound proxy mail Deploy on-site or in the cloud
transfer agent (MTA) services for existing email gateways. A simple
DNS MX record change redirects email to FortiMail for antispam
and antivirus scanning. The FortiMail device receives messages,
scans for viruses and spam, then relays email to its destination
email server for delivery.
Transparent Mode: Each network interface includes a proxy Onsite deployment along side mail server
that receives and relays email. Each proxy can intercept SMTP
sessions even though the destination IP address is not the FortiMail
appliance. FortiMail scans for viruses and spam, then transmits
email to the destination email server for delivery. This eliminates
the need to change the DNS MX record, or to change the existing
email server network configuration.
Server Mode: The FortiMail device acts as a stand-alone Full mail server and groupware functionality
messaging server with full SMTP email server functionality, including in addition to AS
IBE allows FortiMail to deliver confidential and regulated email securely — without requiring additional hardware, software user provisioning,
or extra license fees. Use IBE to eliminate paper-based communications and reduce costs.
3
FortiMail™
FEATURES SUMMARY
4 www.fortinet.com
FortiMail™
SPECIFICATIONS
5
FortiMail™
SPECIFICATIONS
6 www.fortinet.com
FortiMail™
SPECIFICATIONS
TECHNICAL SPECIFICATIONS FOR VM00 VM01 VM02 VM04 VM08 VM16 VM32
FORTIMAIL VIRTUAL APPLIANCES
Recommended Deployment Scenarios
Demo, testing, training Small businesses, Small to midsized Mid to large Large enterprise Large enterprise Large enterprise
and small enterprise branch offices, and organizations with up enterprise with up
use with fewer than organizations with to 1000 users* to 3000 users*
100 users* fewer than 400 users*
Technical Specifications
Hypervisors Supported VMware ESXi 5.0/5.1/5.5/6.0/6.5, Citrix XenServer 5.6 SP2/6.0 or later,
Microsoft Hyper-V 2008 R2/2012/2012 R2, KVM (qemu 0.12.1), AWS (Amazon Web Services), Microsoft Azure ****
Maximum Virtual CPUs Supported 1 1 2 4 8 16 32
Virtual NICs Required (Minimum/Maximum) 1/4 1/4 1/4 1/6 1/6 1/6 1/6
Virtual Machine Storage Required 50 GB / 1 TB 50 GB / 1 TB 50 GB / 2 TB 50 GB / 4 TB 50 GB / 8 TB 50 GB / 12 TB 50 GB / 24 TB
(Minimum/Maximum)
Virtual Machine Memory Required 1 GB / 2 GB 1 GB / 4 GB 1 GB / 8 GB 1 GB / 16 GB 1 GB / 16 GB 1 GB / 128 GB 1 GB / 128 GB
(Minimum/Maximum)
Performance (Messages/Hour) [Without queuing based on 100 KB message size] **
Email Routing 3.6 K 34 K 67 K 306 K 675 K 875 K 1.2 M
FortiGuard Antispam 3.1 K 30 K 54 K 279 K 630 K 817 K 1.1 M
FortiGuard Antispam + Antivirus 2.7 K 26 K 52 K 225 K 585 K 758 K 1.0 M
System Specifications
Configured Domains *** 2 20 100 800 2,000 2,000 2,000
Recipient-Based Policies (Domain / System) 15 /30 60 /300 400 / 1,500 800 / 3,000 1,500 / 7,500 1,500 / 7,500 1,500 / 7,500
— Incoming or Outgoing
Server Mode Mailboxes 50 150 400 1,500 3,000 3,000 3,000
Antispam, Antivirus, Authentication, and 10 / 15 50 / 60 50 / 200 50 / 400 50 / 400 50 / 600 50 / 600
Content Profiles (per Domain / per System)
**** Recommended sizing for Gateway and Transparent deployments. For Server Mode, see Server Mode Mailbox metric. If unsure, please validate the model selection by checking the peak mail flow rates and average message size detail with a FortiMail specialist.
**** Hardware dependent. Indicative figures based on multiple VMs running on a shared system.
**** Configured domains is the total number of email domains that can be configured on the appliance. Domain Associations can be used to enable additional domains which share configuration with the primary domain to which they are assigned.
**** Transparent mode deployment is not fully supported onMicrosoft HyperV and cloud hypervisors due to limitations in the available network configurations.
7
FortiMail™
ORDER INFORMATION
GLOBAL HEADQUARTERS EMEA SALES OFFICE APAC SALES OFFICE LATIN AMERICA SALES OFFICE
Fortinet Inc. 905 rue Albert Einstein 300 Beach Road 20-01 Sawgrass Lakes Center
899 KIFER ROAD 06560 Valbonne The Concourse 13450 W. Sunrise Blvd., Suite 430
Sunnyvale, CA 94086 France Singapore 199555 Sunrise, FL 33323
United States Tel: +33.4.8987.0500 Tel: +65.6395.2788 United States
Tel: +1.408.235.7700 Tel: +1.954.368.9990
www.fortinet.com/sales
Copyright© 2017 Fortinet, Inc. All rights reserved. Fortinet®, FortiGate®, FortiCare® and FortiGuard®, and certain other marks are registered trademarks of Fortinet, Inc., in the U.S. and other jurisdictions, and other Fortinet names herein may also be registered and/or common law trademarks of Fortinet. All other
product or company names may be trademarks of their respective owners. Performance and other metrics contained herein were attained in internal lab tests under ideal conditions, and actual performance and other results may vary. Network variables, different network environments and other conditions may affect
performance results. Nothing herein represents any binding commitment by Fortinet, and Fortinet disclaims all warranties, whether express or implied, except to the extent Fortinet enters a binding written contract, signed by Fortinet’s General Counsel, with a purchaser that expressly warrants that the identified product
will perform according to certain expressly-identified performance metrics and, in such event, only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet. For absolute clarity, any such warranty will be limited to performance in the same ideal conditions as in
Fortinet’s internal lab tests. In no event does Fortinet make any commitment related to future deliverables, features or development, and circumstances may change such that any forward-looking statements herein are not accurate. Fortinet disclaims in full any covenants, representations, and guarantees pursuant
hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise revise this publication without notice, and the most current version of the publication shall be applicable.
FST-PROD-DS-ML FML-DAT-R37-201708