0% found this document useful (0 votes)
36 views8 pages

Fort I Analyzer

Uploaded by

abccreation77
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
36 views8 pages

Fort I Analyzer

Uploaded by

abccreation77
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as PDF, TXT or read online on Scribd
You are on page 1/ 8

DATA SHEET

FortiAnalyzer
Available in:

Appliance Virtual Cloud


Machine

FortiAnalyzer is a powerful log management, analytics, and Key Features


reporting platform, providing organizations with single-pane n Security Fabric Analytics with
orchestration, automation, and response for simplified security event correlation and real-time
operations, proactive identification and remediation of risks, detection across all logs, with
Indicators of Compromise
and complete visibility of the entire attack surface. (IOC) service and detection of
advanced threats
Integrated with the Fortinet Security Fabric, advanced threat
Fortinet Security Fabric
detection capabilities, centralized security analytics, and n

integration with FortiGate


complete end-to-end security posture awareness and control NGFWs, FortiClient,
helps security teams identify and eliminate threats before a FortiSandbox, FortiWeb,
breach can occur. FortiMail, and others for
deeper visibility and critical
network insights
n Enterprise-grade high
availability to automatically
back-up FortiAnalyzer
databases (up to four node
cluster), which can be
geographically dispersed for
disaster recovery
n Security Automation to reduce
complexity, leveraging REST
API, scripts, connectors,
and automation stitches to
expedite security response
and reduce time-to-detect
n Multi-Tenancy solution with
Orchestrate security tools, people, and process for streamlined execution of
quota management, leveraging
tasks and workflows, incident analysis and response, and rapidly expedite threat
(ADOMs) to separate customer
detection, case creation and investigation, and mitigation and response.
data and manage domains for
Automate workflows and trigger actions with fabric connectors, playbooks, and operational effectiveness and
event handlers to accelerate your network security team’s ability to respond to compliance
critical alerts and events, plus service level agreement (SLA) for regulation and n Flexible deployment options
compliance.
as appliance, VM, hosted, or
Respond in real-time to network security attacks, vulnerabilities, and warnings of public cloud. Use AWS, Azure,
potential compromises, with threat intelligence, event correlation, monitoring, alerts or Google for cloud secondary
and reporting for immediate tactical response and remediation. archival storage

1
DATA SHEET | FortiAnalyzer

FEATURE HIGHLIGHTS
Incident Detection and Response

Centralized NOC/SOC Visibility for the Attack Surface


The FortiSOC view helps teams in the security operations
center (SOC) and network operations center (NOC) protect
networks with access to real-time log and threat data in the
form of actionable views with deep drill-down capabilities,
notifications and reports, and predefined or customized
dashboards for single-pane visibility and awareness. Analysts
can utilize FortiAnalyzer workflow automation for simplified
orchestration of security operations, management of threats
and vulnerabilities, responding to security incidents, or
investigate proactively by looking for anomalies and threats in Integrate with FortiSOAR for further incident investigation
SIEM normalized logs in the Threat Hunting view. and threat eradication including support to export incident
data to FortiSOAR through the FortiAnalyzer fabric connector
(enabled on FortiSOAR with API admin setup).

Playbook Automation
FortiAnalyzer Playbooks boost an organization’s security
team’s abilities to simplify investigation efforts through
automated incident response, freeing up resources and
allowing analysts to focus on tasks that are more critical.

Out-of-the-box playbook templates enable SOC analysts to


quickly customize their use cases, including playbooks for
investigation of compromised hosts, infections and critical
incidents, data enrichment for Fabric View Assets & Identity
views, blocking of malware, C&C IPs, and more. Security
teams can define custom processes, edit playbooks and tasks
Event Management in the visual playbook editor, utilize the Playbook monitor to
review task execution details, import or export playbooks, and
FortiAnalyzer Event Monitor enables security teams to
use built-in connectors for allowing playbooks to interact with
monitor and manage alerts and events from logs. Events are
other Security Fabric devices like FortiOS and EMS. The new
processed and correlated in an easily readable format that
connector health check provides an indicator for verifying
analysts can understand for immediate response. Analysts
that connectors are always up and working.
can use the Event Monitor for investigative searches into
alerts and use the predefined or custom event handlers for
NOC and SOC, with customizable filters to generate real- Security Services
time notifications for around-the-clock monitoring, including Include the FortiSOC subscription to enable further
handlers for SD-WAN, VPN SSL, wireless, network operations, automation for incident response with enhanced alert
FortiClient, and more. monitoring and escalation, built-in incident management
workflows, connectors, and many more FortiSOC playbooks.
Incident Management
The FortiGuard Indicators of Compromise subscription
The Incidents component in FortiSOC enables security empowers security teams with forensic data from 500,000
operations teams to manage incident handling and life cycle IOCs daily, used in combination with FortiAnalyzer analytics
with incidents created from events to show affected assets, to identify suspicious usage and artifacts observed on
endpoints, and users. Analysts can assign incidents, view and the network or in an operations system, that have been
drill down on event details, incident timelines, add analysis determined with high confidence to be malicious infections or
comments, attach reports and artifacts, and review playbook intrusions, and historical rescan of logs for threat hunting.
execution details for complete audit history.

2 2
DATA SHEET | FortiAnalyzer

FEATURE HIGHLIGHTS
The Shadow IT monitoring service provides continuous Assets and Identity
monitoring usage of unapproved devices and resources, and FortiAnalyzer Fabric View with Asset and Identity monitoring
unsanctioned accounts and unauthorized use of SaaS and provides full SOC visibility of users and devices, including
IaaS, API integration, third party apps, and rogue users using analytics of the attack surface and enables analysts to view
personal accounts for managing company assets. and manage detailed UEBA information collected from logs
The FortiGuard Outbreak alert service provides an automatic and fabric devices, with filters and custom views for refining
download of content packages with resources for detecting results.
the latest malware and threats, including views for summary The Assets & Identity views provide security teams with
of outbreaks, kill chain mapping for how the malware elevated visibility into an organization’s endpoints and users
works. FortiGate coverage explains what FortiGate NGFW with correlated user and device information, vulnerability
components and services will block the threats, and Fabric detections, and EMS tagging and asset classifications through
Coverage for leveraging the full Fabric security protection. telemetry with EMS, NAC, and Fortinet Fabric Agent.

FortiView is a comprehensive monitoring solution that


provides multilevel views and summaries of real-time critical
alerts and information such as top threats and IOCs to your
network including Botnet and C&C, top sources/destinations
of network traffic, top applications, websites and SaaS, VPN
and System information, and other Fabric device intelligence.

Monitors view provides operations teams with customizable


NOC and SOC dashboards and widgets designed for display
across multiple screens in the Operations Center. Monitor
events in real-time through the pre-defined dashboard
views for SD-WAN, VPN, Wi-Fi, Incoming/Outgoing Traffic,
Applications and Websites, FortiSandbox Detections,
Endpoint Vulnerabilities, Software Inventory, Threats, Shadow
IT (monitoring service), Fabric State, and many more.
Security Fabric Analytics

Analytics and Reporting


Security teams are empowered with FortiAnalyzer automation
driven analytics and reports providing full visibility of network
devices, systems, and users.

FortiAnalyzer delivers correlated log data with threat


intelligence for analysis of real-time and historical events,
providing context and meaning to network activity, risks, and
vulnerabilities, attack attempts, operational anomalies, and
continuous monitoring of sanctioned and unsanctioned user
activity and investigation of Shadow IT.

Analysts can expand their investigation in Log View, with


easy navigation of managed device logs using search filters,
log drill down, formatted or raw logs, log import/export, plus
define custom views and create log groups.

With a FortiSOC license, a SIEM database is automatically


created to store normalized logs for devices in Fabric ADOMs.

3
DATA SHEET | FortiAnalyzer

FEATURE HIGHLIGHTS
FortiAnalyzer Reports Analyzer-Collector Mode
FortiAnalyzer provides over 60 report templates, FortiAnalyzer provides two operation modes: Analyzer and
800+ datasets, and 750+ charts that are ready-to-use Collector. In Collector mode, the primary task is forwarding
with sample reports, including reports for Secure SD- logs of the connected devices to an Analyzer and archiving
WAN, VPN monitoring, threat assessments, 360 Security the logs. This configuration greatly benefits organizations with
Reviews, situational awareness, self-harm and risk increasing log rates, as the resource intensive log-receiving
indicators, bandwidth and applications, FortiClient, FortiMail, task is off-loaded to the Collector so that the Analyzer can
FortiSandbox, FortiDeceptor, compliance, and many others. focus on generating analytics and reports.

Analysts can easily customize, clone, and modify reports to Network operations teams can deploy multiple FortiAnalyzers
their needs with filters by device, subnets, and type to deliver in Collector and Analyzer modes to work together to improve
specific business metrics to target stakeholders. Schedule the overall performance of log receiving and processing
reports to run at non-peak hours or run on demand, define increased log volumes, providing log storage and redundancy,
output profiles for notifications, and deliver reports in flexible and rapid delivery of critical network and threat information.
viewing formats including PDF, HTML, CSV, and XML.

Log Forwarding for Third-Party Integration


Deployments Forward logs from one FortiAnalyzer to another FortiAnalyzer
unit, a syslog server, or (CEF) server. In addition to forwarding
Deploying FortiAnalyzer
logs to another unit or server, the client FortiAnalyzer retains
FortiAnalyzer plays a pivotal role in the Fortinet Security a local copy of the logs, which are subject to the data policy
Fabric and can be deployed in a variety of configurations settings for archived logs. Logs are forwarded in real-time or
to best support the needs of any organization for analytics, near real-time as they are received from network devices.
back-ups, disaster recovery, storage, availability, and
redundancy plus log collection and log forwarding for high- Trusted Platform Module (TPM) Encryption
volume networks with sizeable generation of event logs.
FortiAnalyzer G Series features a dedicated micro-controller
module that hardens physical networking appliances by
FortiAnalyzer High Availability (HA)
generating, storing, and authenticating cryptographic keys in
FortiAnalyzer HA provides real-time redundancy to protect TPM, with hardware-based security mechanisms that protect
organizations by ensuring continuous operational availability. against malicious software and phishing attacks.
In the event that the primary (active) FortiAnalyzer fails, a
secondary (passive) FortiAnalyzer (up to four-node cluster) Cloud Services
will immediately take over, providing log and data reliability
and eliminating the risk of having a single point of failure. FortiAnalyzer Cloud
FortiAnalyzer Cloud offers customers a PaaS-based delivery
Multi-Tenancy with Flexible Quota Management
option for automation-driven, single pane analytics, providing
FortiAnalyzer provides the ability to manage multiple sub- log management, analytics, and reporting for Fortinet NGFW
accounts with each account having its own administrators and SD-WAN with an easily accessible cloud-based solution.
and users. The time-based archive/analytic log data policy,
per Administrative Domain (ADOM), allows automated quota FortiAnalyzer Cloud delivers reliable real-time insights into
management based on the defined policy, with trending network activity with extensive reporting and monitoring for
graphs to guide policy configuration and usage monitoring. clear, consistent visibility of an organization’s security posture.

With the FortiCloud Premium subscription, customers can


easily enable the FortiAnalyzer Cloud service by purchasing a
FortiAnalyzer Cloud SOCaaS subscription.

Customers can easily access their FortiAnalyzer Cloud from


their FortiCloud single sign-on portal.

4 4
DATA SHEET | FortiAnalyzer

VIRTUAL OFFERINGS
FortiAnalyzer Virtual Machines vulnerability assessment. Centralized collection, correlation,
and analysis of geographically and chronologically diverse
FortiAnalyzer Virtual Machines are a virtual version of
security data from Fortinet and third party devices deliver a
the hardware appliance and are designed to run on many
simplified, consolidated view of your security posture.
virtualization platforms, offering all the latest features of the
FortiAnalyzer appliance. They allow organizations to simplify The FortiAnalyzer-VM S series SKUs come in stackable 5,
their centralized log management and analytics solution, 50, and 500 GB/ day logs licenses, so that multiple units of
automate workflows, and help NOC and SOC teams identify this SKU can be purchased together providing organizations
and respond to threats. FortiAnalyzer-VMs are available in with the ability and cost-efficiencies to scale and meet their
both a subscription and perpetual offering. logging needs.

FortiAnalyzer-VM S FortiAnalyzer-VM

The new FortiAnalyzer Subscription license model Fortinet offers the FortiAnalyzer-VM licensing in a stackable
consolidates the VM product SKU and the FortiCare Support perpetual license model, with a-la-carte services available
SKU, plus IOC and FortiAnalyzer SOC (SOAR/SIEM) services for 24x7 FortiCare support and subscription license for the
into one single SKU, to simplify the product purchase, FortiGuard Indicator of Compromise (IOC).
upgrade, and renewal.
This software-based version of the FortiAnalyzer hardware
FortiAnalyzer-VM S provides organizations with centralized appliance is designed to run on many virtualization platforms,
security event analysis, forensic research, reporting, content which allows you to expand your virtual solution as your
archiving, data mining, malicious file quarantining, and environment expands.

SPECIFICATIONS
FORTIANALYZER VIRTUAL APPLIANCES FAZ-VM-GB1 FAZ-VM-GB5 FAZ-VM-GB25 FAZ-VM-GB100 FAZ-VM-GB500 FAZ-VM-GB2000
Capacity

GB/ day of Logs +1 +5 +25 +100 +500 +2,000


Storage Capacity +500 GB +3 TB +10 TB +24 TB +48 TB +100 TB
Devices/VDOMs Maximum 10,000 10,000 10,000 10,000 10,000 10,000
Chassis Management ⃝✓ ⃝✓ ⃝✓ ⃝✓ ⃝✓ ⃝✓
Virtual Machine

FortiGuard Indicator of Compromise (IOC) ⃝✓

SOC Subscription ⃝✓

Virtual Machine
Hypervisor Support Up-to-date hypervisor support can be found in the release note for each FortiAnalyzer version.
Visit https://docs.fortinet.com/product/fortianalyzer/ and find the Release Information at the bottom section.
Go to “Product Integration and Support” -> “FortiAnalyzer [version] support” -> “Virtualization”

vCPU Support (Minimum / Maximum) 4 / Unlimited

Network Interface Support (Min / Max) 5


1/4

Memory Support (Minimum / Maximum) 8 GB / Unlimited for 64-bit

* Unlimited GB/ day when deployed in collector mode

5
DATA SHEET | FortiAnalyzer

SPECIFICATIONS

FORTIANALYZER APPLIANCES FAZ-150G FAZ-300G FAZ-800G


Capacity and Performance
GB/ day of Logs 25 100 200
Analytic Sustained Rate (logs/sec)* 500 2,000 4,000
Collector Sustained Rate (logs/sec)* 750 3,000 6,000
Devices/VDOMs (Maximum) 50 180 800

Max Number of Days Analytics** 90 50 50

Options
FortiGuard Indicator of Compromise (IOC) ⃝✓ ⃝✓ ⃝✓
SOC Subscription ⃝✓ ⃝✓ ⃝✓
FortiGuard Outbreak Alert Service ⃝✓ ⃝✓ ⃝✓
Enterprise Bundle ⃝✓ ⃝✓ ⃝✓

Hardware Bundle ⃝✓ ⃝✓ ⃝✓

Hardware Specifications
Form Factor (supports EIA/non-EIA standards) Desktop 1 RU Rackmount 1 RU Rackmount
Total Interfaces 2 x RJ45 GE 4 x RJ45 GE 4 x RJ45 GE, 2 x SFP
Storage Capacity 4TB (2x 2TB) 8 TB (2 x 4 TB) 16 TB (4 x 4 TB)

Usable Storage (After RAID) 2 TB 4 TB 8 TB


Removable Hard Drives No No ⃝✓
RAID Levels Supported 0/1 RAID 0/1 RAID 0/1,1s/5,5s/10

RAID Type Software Software Hardware / Hot Swappable


Default RAID Level 1 1 10
Redundant Hot Swap Power Supplies No No Optional

Trusted Platform Module (TPM) *** Gen 2 Gen 2 ⃝✓

Dimensions
Height x Width x Length (inches) 9.5 x 3.5 x 8 1.73 x 17.24 x 16.38 1.73 x 17.32 x 21.65
Height x Width x Length (cm) 24.1 x 8.9 x 20.55 4.4 x 43.8 x 41.6 4.4 x 44.0 x 55.0
Weight 9.35 lbs (4.24 kg) 22.5 lbs (10.2 kg) 25.75 lbs (11.68 kg)

Environment
AC Power Supply 100–240V AC, 50–60 Hz 100–240V AC, 60–50 Hz 100–240V AC, 50–60 Hz
Power Consumption (Average / Maximum) 36W / 43W 90.1W / 99 W 134W / 174.2 W
Heat Dissipation 147.4 BTU/h 337.8 BTU/h 594.4 BTU/h
Operating Temperature 32–104° F (0–40° C) 32–104° F (0–40° C) 32–104° F (0–40° C)
Storage Temperature -4–167° F (-20–75° C) -13–167° F (-25–75° C) -4–167° F (-20–75° C)
Humidity 5 to 95% non-condensing 20 to 90% non-condensing 5 to 95% non-condensing
Operating Altitude Up to 7,400 ft (2,250 m) Up to 7,400 ft (2,250 m) Up to 7,400 ft (2,250 m)

Compliance
FCC Part 15 Class A, RCM, VCCI, CE, FCC Part 15 Class A, RCM, VCCI, CE, FCC Part 15 Class A, RCM, VCCI, CE,
Safety Certifications
UL/cUL, CB BSMI, KC, UL/cUL, CB, GOST UL/cUL, CB

* Sustained Rate - maximum constant log message rate that the FAZ platform can maintain for minimum 48 hours without SQL database and system performance degradation.
** The maximum number of days if receiving logs continuously at the sustained analytics log rate. This number can increase if the average log rate is lower.
*** Gen2 refers to hardware that has been upgraded since initial release.

6 6
DATA SHEET | FortiAnalyzer

SPECIFICATIONS

FORTIANALYZER APPLIANCES FAZ-1000F FAZ-3000G FAZ-3500G FAZ-3700G


Capacity and Performance
GB/ day of Logs 660 3,000 5,000 8,300
Analytic Sustained Rate (logs/sec)* 20,000 42,000 60,000 100,000
Collector Sustained Rate (logs/sec)* 30,000 60,000 90,000 150,000
Devices/VDOMs (Maximum) 2,000 4,000 10,000 10.000

Max Number of Days Analytics** 34 30 38 60

Options
FortiGuard Indicator of Compromise (IOC) ⃝✓ ⃝✓ ⃝✓ ⃝✓
SOC Subscription ⃝✓ ⃝✓ ⃝✓ ⃝✓
FortiGuard Outbreak Alert Service ⃝✓ ⃝✓ ⃝✓ ⃝✓
Enterprise Bundle ⃝✓ ⃝✓ ⃝✓ ⃝✓

Hardware Bundle ⃝✓ ⃝✓ ⃝✓ ⃝✓

Hardware Specifications
Form Factor (supports EIA/non-EIA standards) 2 RU Rackmount 3 RU Rackmount 4 RU Rackmount 4 RU Rackmount
Total Interfaces 2 x 10GbE RJ45, 2 x 10GbE SFP+ 2 x GE RJ45, 2x 25GE SFP28 2 x GE RJ45, 2x 25GE SFP28 2x 10GE RJ-45 + 2x 25GE SFP28
Storage Capacity 32 TB (8 x 4 TB) 64 TB (16 x 4TB) 96 TB (24 x 4 TB) 240TB (60 x 4TB) 3.5” HDD +
19.2TB (6x 3.2TB) NVMe SSD
Usable Storage (After RAID) 24 TB 56 TB 80 TB 224 TB

Removable Hard Drives ⃝✓ ⃝✓ ⃝✓ ⃝✓

RAID Levels Supported RAID RAID RAID RAID


0/1,1s/5,5s/6,6s/10/50/60 0/1,1s/5,5s/6,6s/10/50/60 0/1,1s/5,5s/6,6s/10/50/60 0/1,1s/5,5s/6,6s/10/50/60
RAID Type Hardware / Hot Swappable Hardware / Hot Swappable Hardware / Hot Swappable Hardware / Hot Swappable
Default RAID Level 50 50 50 50
Redundant Hot Swap Power Supplies ⃝✓ ⃝✓ ⃝✓ ⃝✓

Trusted Platform Module (TPM) *** No No Gen 2 ⃝✓

Dimensions
Height x Width x Length (inches) 3.5 x 17.2 x 25.6 5.2 x 17.2 x 25.5 7.0 x 17.2 x 26.0 7.0 x 17.2 x 30.2
Height x Width x Length (cm) 8.9 x 43.7 x 65.0 13.0 x 44.0 x 65.0 17.8 x 43.7 x 66.0 17.8 x 43.7 x 76.7
Weight 34 lbs (15.42 kg) 66.5 lbs (30.15 kg) 90.75 lbs (41.2 kg) 118 lbs (53.5 kg)

Environment
AC Power Supply 100–240V AC, 50–60 Hz 100-127V~/10A, 100-240 VAC, 50-60 Hz 2000W AC****
200-240V~/5A
Power Consumption (Average / Maximum) 192.5W / 275 W 385 W / 500 W 629.5 W / 677.3W 850 W / 1423.4W
Heat Dissipation 920 BTU/h 1350 BTU/h 2345.07 BTU/h 4858 BTU/h
Operating Temperature 50–95°F (10 – 35°C) 32 - 104°F (0 - 40°C) 41–95°F (5–35°C) 50–95°F (10 – 35°C)
Storage Temperature -40–140°F (-40–60°C) -4 - 167°F (-20 - 75°C) -40–140°F (-40–60°C) -40–158°F (-40–70°C)
Humidity 8 to 90% non-condensing 5% to 95% (non-condensing) 8% to 90% (non-condensing) 8% to 90% (non-condensing)
Operating Altitude Up to 7,400 ft (2,250 m) Up to 7,400 ft (2,250 m) Up to 7,400 ft (2,250 m) Up to 7,400 ft (2,250 m)

Compliance
FCC Part 15 Class A, RCM, VCCI, FCC Part 15 Class A, RCM, FCC Part 15 Class A, RCM, FCC Part 15 Class A, RCM, VCCI,
Safety Certifications
CE, UL/cUL, CB VCCI, CE, UL/cUL, CB VCCI, CE, UL/cUL, CB CE, UL/cUL, CB

* Sustained Rate - maximum constant log message rate that the FAZ platform can maintain for minimum 48 hours without SQL database and system performance degradation.
** is the max number of days if receiving logs continuously at the sustained analytics log rate. This number can increase if the average log rate is lower.
*** Gen2 refers to hardware that has been upgraded since initial release.
****3700G must connect to a 200V - 240V power source.

7
DATA SHEET | FortiAnalyzer

ORDER INFORMATION
PRODUCT SKU DESCRIPTION
FortiAnalyzer FAZ-150G Centralized log and analysis appliance — 2 x RJ45 GE, 4 TB storage, up to 25 GB/ day of logs.
FAZ-300G Centralized log and analysis appliance — 4 x RJ45 GE, 8 TB storage, up to 100 GB/ day of logs.
FAZ-800G Centralized log and analysis appliance — 4 x GE, 2 x SFP, 16 TB storage, up to 200 GB/ day of
logs.
FAZ-1000F Centralized log and analysis appliance — 2 x 10GE RJ45, 2 x 10GbE SFP+, 32 TB storage, dual
power supplies, up to 660 GB/ day of logs.
FAZ-3000G Centralized log and analysis appliance — 2 x GE RJ45, 2x 25GE SFP28, 64 TB storage, dual power
supplies, up to 3,000 GB/ day of logs.
FAZ-3500G Centralized log and analysis appliance — 2 x GbE RJ45, 2 x SFP28, 96 TB storage, dual power
supplies, up to 5,000 GB/ day of logs.
FAZ-3700G Centralized log & analysis appliance - 2x 10GE RJ-45 + 2x 25GE SFP28 slots, 240TB HDD +
19.2TB NVMe SSD storage, up to 8300 GB/ day of Logs.
FortiAnalyzer-VM Subscription FC1-10-AZVMS-465-01-DD Central Logging and Analytics subscription for 5 GB/ day logs. Include 24x7 FortiCare support,
License with Support IOC, SOC Subscription.
FC2-10-AZVMS-465-01-DD Central Logging and Analytics subscription for 50 GB/ day logs. Include 24x7 FortiCare support,
IOC, SOC Subscription.
FC3-10-AZVMS-465-01-DD Central Logging and Analytics subscription for 500 GB/ day logs. Include 24x7 FortiCare support,
IOC, SOC Subscription.
FortiAnalyzer-VM FAZ-VM-GB1 Upgrade license for adding 1 GB/ day of logs and 500 GB storage capacity.
FAZ-VM-GB5 Upgrade license for adding 5 GB/ day of logs and 3 TB storage capacity.
FAZ-VM-GB25 Upgrade license for adding 25 GB/ day of logs and 10 TB storage capacity.
FAZ-VM-GB100 Upgrade license for adding 100 GB/ day of logs and 24 TB storage capacity.
FAZ-VM-GB500 Upgrade license for adding 500 GB/ day of logs and 48 TB storage capacity.
FAZ-VM-GB2000 Upgrade license for adding 2 TB/Day of Logs and 100 TB storage capacity.
FortiAnalyzer Cloud Storage FC1-10-AZCLD-463-01-DD Increase FortiAnalyzer Cloud storage by 5 GB/ day for Central Logging & Analytics and FortiCloud
Subscription SOCaaS. Include 24x7 FortiCare support, IOC and SOC subscription.
FC2-10-AZCLD-463-01-DD Increase FortiAnalyzer Cloud storage by 50 GB/ day for Central Logging & Analytics and FortiCloud
SOCaaS. Include 24x7 FortiCare support, IOC and SOC subscription.
FC3-10-AZCLD-463-01-DD Increase FortiAnalyzer Cloud storage by 500 GB/ day for Central Logging & Analytics and
FortiCloud SOCaaS. Include 24x7 FortiCare support, IOC and SOC subscription.
FortiAnalyzer - Backup to Cloud FC-10-FAZ00-286-02-DD One year subscription to FortiAnalyzer storage connector service for 10TB data transfer to public
Service cloud.
FortiAnalyzer Cloud* FC‐10‐[FortiGate Model Code]‐464‐02‐DD FortiAnalyzer Cloud SOCaaS: Cloud‐based Log Monitoring (PaaS), including IOC Service and
FortiCloud SOCaaS.
FC‐10‐[FortiGate VM Model Code]‐464‐02‐DD FortiAnalyzer Cloud with SOCaaS: Cloud-based Log Monitoring (PaaS), including IOC Service and
FortiCloud SOCaaS.
FortiGuard Indicator of FC-10-[Model Code]-149-02-DD One year subscription license for the FortiGuard Indicator of Compromise (IOC).
Compromise (IOC) Subscription
FortiAnalyzer SOC Subscription FC-10-[Model Code]-335-02-DD Subscription license for the FortiAnalyzer SOC component.
FortiAnalyzer-VM SOC FC[GB Day Code]-10-LV0VM-335-02-DD Subscription license for FortiAnalyzer-VM SOC service.
Subscription Service
FortiGuard Outbreak Alert Service FC-10-[Model Code]-462-02-DD Subscription license for FortiGuard Outbreak Alert Service.
FortiAnalyzer-VM Perpetual FC[GB Day Code]-10-LV0VM-462-02-DD Subscription license for FortiAnalyzer VM Perpetual FortiGuard Outbreak Alert Service.
Outbreak Alerts Service
Enterprise Protection Bundle FC-10-[Model Code]-466-02-DD Enterprise Protection (24x7 FortiCare plus Indicators of Compromise Service and SOC
Subscription license).
Hardware Bundle FAZ-[Hardware Model]-BDL-466-DD Hardware plus 24x7 FortiCare and FortiAnalyzer Enterprise Protection.

* Requires FortiCloud Premium Account license. See FortiGate services for SOCaaS and other Cloud bundles.

www.fortinet.com

Copyright © 2022 Fortinet, Inc. All rights reserved. Fortinet®, FortiGate®, FortiCare® and FortiGuard®, and certain other marks are registered trademarks of Fortinet, Inc., and other Fortinet names herein may also be registered and/or common law trademarks of Fortinet. All other product
or company names may be trademarks of their respective owners. Performance and other metrics contained herein were attained in internal lab tests under ideal conditions, and actual performance and other results may vary. Network variables, different network environments and other
conditions may affect performance results. Nothing herein represents any binding commitment by Fortinet, and Fortinet disclaims all warranties, whether express or implied, except to the extent Fortinet enters a binding written contract, signed by Fortinet’s General Counsel, with a purchaser
that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and, in such event, only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet. For absolute clarity, any
such warranty will be limited to performance in the same ideal conditions as in Fortinet’s internal lab tests. Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise
revise this publication without notice, and the most current version of the publication shall be applicable. Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise
revise this publication without notice, and the most current version of the publication shall be applicable.

Fortinet is committed to driving progress and sustainability for all through cybersecurity, with respect for human rights and ethical business practices, making possible a digital world you can always trust. You represent and warrant to Fortinet that you will not use
Fortinet’s products and services to engage in, or support in any way, violations or abuses of human rights, including those involving censorship, surveillance, detention, or excessive use of force. Users of Fortinet products are required to comply with the Fortinet EULA
(https://www.fortinet.com/content/dam/fortinet/assets/legal/EULA.pdf) and report any suspected violations of the EULA via the procedures outlined in the Fortinet Whistleblower Policy (https://secure.ethicspoint.com/domain/media/en/gui/19775/Whistleblower_Policy.pdf).

FAZ-DAT-R74-20220222

You might also like