FortiAnalyzer 800G Datasheet
FortiAnalyzer 800G Datasheet
FortiAnalyzer 800G Datasheet
FortiAnalyzer™
Security Fabric Network Analytics
Highlights
n Centralized network
monitoring and visibility
n Advanced threat and
vulnerability detection
with event and log data Analytics, Reports, and Compliance Across the Security Fabric
correlation
n Augmented NOC/SOC FortiAnalyzer is a powerful log management, analytics, and reporting
operations for real-time
response, analytics, and platform that provides organizations with a single console to manage,
reporting
automate, orchestrate, and respond, enabling simplified security
n Automation to save
time, reduce errors, and operations, proactive identification and remediation of risks, and
improve efficiency
n Multi-tenancy solution complete visibility of the entire attack landscape.
with quota management
n Administrative domains Integrated with the Fortinet Security Fabric, FortiAnalyzer enables
for operational
effectiveness and Network and Security Operations Teams with real-time detection
compliance
capabilities, centralized security analytics and end-to-end security
n 70+ reports and 2000+
ready-to-use datasets, posture awareness to help analysts identify advanced persistent
charts, and macros
threats (APTs) and mitigate risks before a breach can occur.
1
FortiAnalyzer™ - Security Fabric Network Analytics and Automation Data Sheet
Capabilities
Security teams can monitor and manage alerts and event logs from Fortinet devices, with
events processed and correlated in a format that analysts can easily understand. Investigate
suspicious traffic patterns and search using filters in predefined or custom event handlers to
generate real-time notifications and monitoring for NOC and SOC operations, SD-WAN, SSL
VPN, wireless, Shadow IT, IPS, network recon, FortiClient, and more.
The Incidents component enables analysts to manage incident handling and life cycle, with
incidents generated by events that show affected assets, endpoints, users and timelines.
Fabric Automation
• FortiView Monitors and Views provide deep insights with context and meaning of network
activity, risks, vulnerabilities, attack attempts, indicators of compromise and anomalies,
sanctioned and unsanctioned user activity.
• Log View enables analysts to expand their investigation and utilize search filters on
managed device logs, drill down on logs, with custom views and log groups, including a
SIEM database with normalized logs for Fortinet devices in Fabric ADOMs.
• Reports provide comprehensive analysis of your Security Posture, including reports for
Operational Technology (OT), security rating, security rating for PCI, Secure SD-WAN, VPN,
FortiNDR network anomaly detection, cyber threat assessments, 360 Security Reviews,
situational awareness, compliance, auditing, and more.
2
FortiAnalyzer™ - Security Fabric Network Analytics and Automation Data Sheet
Capabilities
3
FortiAnalyzer™ - Security Fabric Network Analytics and Automation Data Sheet
• OT Security Service provides security teams with advanced OT analytics, risk and
compliance reports, OT event handlers, and use-case correlation rules.
• Security Rating and Compliance Service helps security teams design, implement, and
maintain their security posture, and provides actionable configuration recommendations as
well as key performance and risk indicators.
4
FortiAnalyzer™ - Security Fabric Network Analytics and Automation Data Sheet
Capabilities
Deployments
Deploying FortiAnalyzer
FortiAnalyzer can be deployed as a physical hardware appliance, virtual machine (VM) and
virtual machine subscription (VM-S), as well as private or public cloud instance, with scalability,
redundancy and backup, and high availability capabilities.
Network operations teams can deploy multiple FortiAnalyzers in Collector and Analyzer modes
to work together to improve the overall performance of log receiving and processing increased
log volumes, providing log storage and redundancy, and rapid delivery of critical network and
threat information.
FortiAnalyzer Fabric
FortiAnalyzer Fabric allows SOC Administrators to configure two operation modes - Supervisor
and Member. This allows viewing of member devices, ADOMs and authorized logging devices,
as well as incidents and events created on members. Admins get access to Reports and
FortiView across all member FortiAnalyzers, and can perform global search in Log View of logs
collected across FortiAnalyzer Fabric members with pre-defined device filters and log drill
down for each Member and Member ADOMs and support for .
Cloud Services
FortiAnalyzer Cloud
FortiAnalyzer Cloud offers customers a PaaS-based delivery option for automation-driven, single pane analytics, providing
log management, analytics, and reporting for Fortinet NGFW and SD-WAN with an easily accessible cloud-based solution.
FortiAnalyzer Cloud delivers reliable real-time insights into network activity with extensive reporting and monitoring for clear,
consistent visibility of an organization’s security posture. Customers can easily access their FortiAnalyzer Cloud from their
FortiCloud single sign-on portal.
Virtual Offerings
FortiAnalyzer VM Subscription
The FortiAnalyzer VM Subscription license model consolidates into one single SKU: VM product SKU, FortiCare Support SKU,
FortiGuard IOC and Outbreak Detection Service, Security Automation services, to simplify the product purchase, upgrade,
and renewal. FortiAnalyzer-VM S provides organizations with centralized security event analysis, forensic research, reporting,
content archiving, data mining, malicious file quarantining, and vulnerability assessment. Centralized collection, correlation, and
analysis of geographically and chronologically diverse security data from Fortinet and third party devices deliver a simplified,
consolidated view of your security posture.
The FortiAnalyzer-VM S series SKUs come in stackable 5, 50, and 500 GB/ day logs licenses, so that multiple units of this SKU
can be purchased together providing organizations with the ability and cost-efficiencies to scale and meet their logging needs.
FortiAnalyzer VM
Fortinet offers the FortiAnalyzer-VM licensing in a stackable perpetual license model with a-la-carte technical support and
subscription services.
This software-based version of the FortiAnalyzer hardware appliance is designed to run on many virtualization platforms, which
allows you to expand your virtual solution as your environment expands.
Hypervisor Support Up-to-date hypervisor support can be found in the release note for each FortiAnalyzer version.
Visit https://docs.fortinet.com/product/fortianalyzer/ and find the Release Information at the bottom section.
Go to “Product Integration and Support” -> “FortiAnalyzer [version] support” -> “Virtualization”
6
FortiAnalyzer™ - Security Fabric Network Analytics and Automation Data Sheet
Specifications
Options
FortiGuard IOC and Outbreak Detection
✓⃝ ✓⃝ ✓⃝
Service
Security Automation Service ✓⃝ ✓⃝ ✓⃝
Enterprise Bundle ✓⃝ ✓⃝ ✓⃝
Hardware Bundle ✓⃝ ✓⃝ ✓⃝
OT Security Service ✓⃝ ✓⃝ ✓⃝
Hardware Specifications
Form Factor (supports EIA/non-EIA Desktop 1 RU Rackmount 1 RU Rackmount
standards)
Total Interfaces 2 x RJ45 GE 4 x RJ45 GE 4 x RJ45 GE, 2 x SFP
Storage Capacity 4TB (2x 2TB) 8 TB (2 x 4 TB) 16 TB (4 x 4 TB)
Dimensions
Height x Width x Length (inches) 9.5 x 3.5 x 8 1.73 x 17.24 x 16.38 1.73 x 17.32 x 21.65
Height x Width x Length (cm) 24.1 x 8.9 x 20.55 4.4 x 43.8 x 41.6 4.4 x 44.0 x 55.0
Weight 9.35 lbs (4.24 kg) 22.5 lbs (10.2 kg) 25.75 lbs (11.68 kg)
Environment
AC Power Supply 100–240V AC, 50–60 Hz 100–240V AC, 60–50 Hz 100–240V AC, 50–60 Hz
Power Consumption (Average / Maximum) 36 W / 43 W 90.1 W / 99 W 134 W / 174.2 W
Heat Dissipation 147.4 BTU/h 337.8 BTU/h 594.4 BTU/h
Operating Temperature 32°–104° F (0°–40° C) 32°–104° F (0°–40° C) 32°–104° F (0°–40° C)
Storage Temperature -4°–167° F (-20°–75° C) -13°–167° F (-25°–75° C) -4°–167° F (-20°–75° C)
Humidity 5% to 95% non-condensing 20% to 90% non-condensing 5% to 95% non-condensing
Forced Airflow Front to Back Front to Back Front to Back
Compliance
FCC Part 15 Class A, RCM, VCCI, CE, UL/ FCC Part 15 Class A, RCM, VCCI, CE, BSMI, FCC Part 15 Class A, RCM, VCCI, CE, UL/
Safety Certifications
cUL, CB KC, UL/cUL, CB, GOST cUL, CB
* Sustained Rate - maximum constant log message rate that the FAZ platform can maintain for minimum 48 hours without SQL database and system performance degradation.
** The maximum number of days if receiving logs continuously at the sustained analytics log rate. This number can increase if the average log rate is lower.
*** Gen2 refers to hardware that has been upgraded since initial release.
7
FortiAnalyzer™ - Security Fabric Network Analytics and Automation Data Sheet
Specifications
Options
FortiGuard IOC and Outbreak Detection
✓⃝ ✓⃝ ✓⃝
Service
Security Automation Service ✓⃝ ✓⃝ ✓⃝
Enterprise Bundle ✓⃝ ✓⃝ ✓⃝
Hardware Bundle ✓⃝ ✓⃝ ✓⃝
OT Security Service ✓⃝ ✓⃝ ✓⃝
Hardware Specifications
Form Factor (supports EIA/non-EIA 2 RU Rackmount 3 RU Rackmount 4 RU Rackmount
standards)
Total Interfaces 2 x 10GbE RJ45, 2 x 10GbE SFP+ 2 x GE RJ45, 2x 25GE SFP28 2x 10GE RJ-45 + 2x 25GE SFP28
Storage Capacity 32 TB (8 x 4 TB) 64 TB (16 x 4TB) 240TB (60 x 4TB) 3.5” HDD + 19.2TB (6x
3.2TB) NVMe SSD
Usable Storage (After RAID) 24 TB 56 TB 224 TB
Dimensions
Height x Width x Length (inches) 3.5 x 17.2 x 25.6 5.2 x 17.2 x 25.5 7.0 x 17.2 x 30.2
Height x Width x Length (cm) 8.9 x 43.7 x 65.0 13.0 x 44.0 x 65.0 17.8 x 43.7 x 76.7
Weight 34 lbs (15.42 kg) 66.5 lbs (30.15 kg) 118 lbs (53.5 kg)
Environment
AC Power Supply 100–240V AC, 50–60 Hz 100-127V~/10A, 200-240V~/5A 2000W AC****
Power Consumption (Average / Maximum) 192.5 W / 275 W 385 W / 500 W 850 W / 1423.4 W
Heat Dissipation 920 BTU/h 1350 BTU/h 4858 BTU/h
Operating Temperature 50°–95°F (10°–35°C) 32°-104°F (0°-40°C) 50°–95°F (10°–35°C)
Storage Temperature -40°–140°F (-40°–60°C) -4°-167°F (-20°-75°C) -40°–158°F (-40°–70°C)
Humidity 8% to 90% non-condensing 5% to 95% (non-condensing) 8% to 90% (non-condensing)
Forced Airflow Front to Back Front to Back Front to Back
Compliance
FCC Part 15 Class A, RCM, VCCI, CE, UL/ FCC Part 15 Class A, RCM, VCCI, CE, UL/ FCC Part 15 Class A, RCM, VCCI, CE, UL/
Safety Certifications
cUL, CB cUL, CB cUL, CB
* Sustained Rate - maximum constant log message rate that the FAZ platform can maintain for minimum 48 hours without SQL database and system performance degradation.
** is the max number of days if receiving logs continuously at the sustained analytics log rate. This number can increase if the average log rate is lower.
*** Gen2 refers to hardware that has been upgraded since initial release.
****3700G must connect to a 200V - 240V power source.
8
FortiAnalyzer™ - Security Fabric Network Analytics and Automation Data Sheet
Ordering Information
9
Fortinet Corporate Social Responsibility Policy
Fortinet is committed to driving progress and sustainability for all through cybersecurity, with
respect for human rights and ethical business practices, making possible a digital world you
can always trust. You represent and warrant to Fortinet that you will not use Fortinet’s products
and services to engage in, or support in any way, violations or abuses of human rights, including
those involving illegal censorship, surveillance, detention, or excessive use of force. Users of
Fortinet products are required to comply with the Fortinet EULA and report any suspected
violations of the EULA via the procedures outlined in the Fortinet Whistleblower Policy.
www.fortinet.com
Copyright © 2023 Fortinet, Inc. All rights reserved. Fortinet®, FortiGate®, FortiCare® and FortiGuard®, and certain other marks are registered trademarks of Fortinet, Inc., and other Fortinet names herein may also be registered and/or common law trademarks of Fortinet. All other product
or company names may be trademarks of their respective owners. Performance and other metrics contained herein were attained in internal lab tests under ideal conditions, and actual performance and other results may vary. Network variables, different network environments and other
conditions may affect performance results. Nothing herein represents any binding commitment by Fortinet, and Fortinet disclaims all warranties, whether express or implied, except to the extent Fortinet enters a binding written contract, signed by Fortinet’s General Counsel, with a purchaser
that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and, in such event, only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet. For absolute clarity, any
such warranty will be limited to performance in the same ideal conditions as in Fortinet’s internal lab tests. Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise
revise this publication without notice, and the most current version of the publication shall be applicable.
FAZ-DAT-R79-20230825