Fortinet FortiWeb 400BWeb Application Firewall
The FortiWeb 400B has been discontinued. If you currently own a FortiWeb-400B and need to renew your services or subscriptions, click here to jump to more pricing!
The FortiWeb-400B provides the application security you need delivered in a cost-effective platform, making it ideal for mid-sized enterprises. With an easy-to-use Web UI and flexible deployment options, the FortiWeb-400 provides a full feature web application firewall that helps you protect against the OWASP Top 10 threats and address PCI DSS requirement 6.6.
FortiWeb-400B Features & Benefits:
- Flexible deployment options to fit to organizational needs and budget, minimizing service disruptions
- Secures web applications and protects sensitive database content by blocking threats such as cross-site scripting, SQL injection, buffer overflows, file inclusion, denial of service and cookie poisoning
- Web vulnerability scanner provides analysis of existing application vulnerabilities complementing web application firewall for PCI DSS.
- Active/passive high availability support implements full configuration synchronization to ensure availability of applications.
- Aids in PCI DSS 6.6 compliance by protecting against OWASP top 10 web application vulnerabilities
Web Application Firewall
Secures web applications to help customers meet compliance requirements
Web Vulnerability Scanner
Scans, analyzes and detects web application vulnerabilities
Assures availability and accelerates performance of critical web applications
Need for PCI DSS Compliance
Network security threats have evolved to target web-based applications that are the interface to confidential information stored on back-end databases. In response to major security breaches, the credit card industry created the PCI standards. However, ensuring any web-application is free of vulnerabilities is complicated by the ongoing discovery of new vulnerabilities, patching challenges, code revisions, time-to-market pressures, the inherent difficulty of vulnerability identification, and even access to the application code.
Unmatched Protection for Web Applications
The FortiWeb family of web application firewalls provides specialized, layered application threat protection for medium and large enterprises, application service providers, and SaaS providers. FortiWeb web application protects your web-based applications and internetfacing data from attack and data loss. Using advanced techniques to provide bidirectional protection against sophisticated threats like SQL injection and cross-site scripting, FortiWeb platforms help you prevent identity theft, financial fraud and corporate espionage. FortiWeb delivers the technology you need to monitor and enforce government regulations, industry
Accelerate Deployment and Lower Costs
FortiWeb significantly reduces deployment costs by consolidating Web Application Firewall, web traffic acceleration, and application traffic balancing into a single device with no per-user pricing. It drastically reduces the time required to protect your regulated internetfacing data and eases the challenges associated with policy enforcement and regulatory compliance. Its intelligent, application-aware load-balancing and data compression and optimization engine increases application performance, improves resource utilization and application stability while reducing server response times.
Features & Benefits:
|Inline Reverse Proxy, Transparent, and Offline Deployment Modes||Deploy FortiWeb into existing networks without the need for a network-level redesign or changes to web application and network infrastructure|
|Auto-Learning Security Profiles||Discovers the structure and usage pattern of web applications, removes the need for manual configuration of access policies and security profiles|
|Web Vulnerability Scanner||Scans web applications to detect existing vulnerabilities, complementing the Web Application Firewall for PCI DSS section 6.6|
|Data Leak Prevention||Analyzes all outbound traffic alerting/blocking any credit card leakage and information disclosure|
|PCI DSS||Helps organizations meet PCI compliance requirements by providing a comprehensive solution for web application protection|
|Flexible Deployment and Efficient Management||Ultimate Protection and Monitoring|
|Application Delivery||Aids in Compliance|
|1000Base-SX By-Pass Interfaces||0||0||2 (FWB-3000C-FSX)|
|Storage||500 GB||1 TB (standard)
2 x 1 TB slots
|2 TB (standard)
6 x 1 TB slots
|Power Supply||Standard||Standard||2U Hot Swap Redundant|
|Throughput||100 Mbps||500 Mbps||1 Gbps|
|Max HTTP transactions per second||10,000||27,000||40,000|
|Height||1.7 in (4.3 cm)||1.69 in (4.3 cm)||3.5 in (8.9 cm)|
|Width||17.5 in (43.8 cm)||17.09 in (43.4 cm)||17.5 in (44.5 cm)|
|Length||14.5 in (36.8 cm)||24.7 in (62.71 cm)||29 in (73.7 cm)|
|Weight||10 lbs (4.53 kg)||24.2 lb (11 kg)||63 lb (28.6 kg)|
|Power Required||100-240 VAC, 50-60 Hz, 4.0 Amp max||100-240 VAC, 50-60 Hz, 7 Amp max||100-240 VAC, 50-60 Hz, 9 Amp max|
|Power Consumption (AVG)||121W||189W||200W|
|Operating Temperature||32 to 104 deg F
(0 - 40 deg C)
|32 to 104 deg F
(0 - 40 deg C)
|32 to 104 deg F
(0 - 40 deg C)
|Storage Temperature|| -13 to 158 deg F
(-25 to 70 deg C)
| -40 to 149 deg F
(-40 to 65 deg C)
|-40 to 149 deg F
(-40 to 65 deg C)
|Humidity||5 to 95% non-condensing||5 to 95% non-condensing||5 to 95% non-condensing|
|Compliance||FCC Class A Part 15, UL/CUL, C Tick, CE, VCCI||FCC Class A Part 15, UL/CB/CUL, C Tick, VCCI||FCC Class A Part 15, UL/CB/CUL, C Tick, VCCI|
FortiWeb Deployment Options
- Inline Transparent – Layer two bridge that does not require network level redesign.
- True Transparent Proxy – Layer two deployment with no need for network level redesign. The traffic is internally terminated to provide more functionality than pure inspection.
- Reverse Proxy – Provides additional capabilities such as URL rewrite and advanced routing capabilities.
- Offline Sniffing – Monitors environments with zero network footprint and latency.
FortiWeb Auto-Learn Profiling
The Auto-Learn profiling capability is completely transparent and does not require any changes to the application or network architecture. FortiWeb does not scan the application in order to build the profile, but rather analyzes the traffic as it monitors it flowing to the application. By creating a comprehensive security model of the application FortiWeb can now protect against any known or unknown vulnerabilities, zero day attacks.
Dashboard: High-level view of your environment with real time traffic and attack statistic graphs to provide ‘at a glance’ view of status of web application security
Data Analytics: Analyze user geographic location and web site access based on Hit, Data and Attack vector
Management Reports: FortiWeb management reports contain the information you need to measure your policy compliane and risk profile, as well as understand the threats you face
FortiWeb Protects Against A Wide Range of Attacks:
Services & Support:
FortiGuard Security Subscription Services
FortiGuard Security Subscription Services deliver dynamic, automated updates for Fortinet products. The Fortinet Global Security Research Team creates these updates to ensure up-to-date protection against sophisticated threats. Subscriptions include antivirus, intrusion prevention, web filtering, antispam, vulnerability and compliance management, application control, and database security services.
FortiCare Support Services
FortiCare Support Services provide global support for all Fortinet products and services. FortiCare support enables your Fortinet products to perform optimally. Support plans start with 8x5 Enhanced Support with "return and replace" hardware replacement or 24x7 Comprehensive Support with advanced replacement. Options include Premium Support, Premium RMA, and Professional Services. All hardware products include a 1-year limited hardware warranty and 90-day limited software warranty.
Download the Fortinet FortiWeb Series Datasheet (PDF).
|Fortinet Security Service and Subscriptions|
|FortiWeb Security Service and Subscriptions|
|8x5 FortiCare plus AV & FortiWeb Security Service for FortiWeb-400B, 1-Year||#FC-10-V0402-933-02-12
Our Price: $2,399.00
|AntiVirus (AV) Service for FortiWeb-400B, 1-Year Renewal||#FC-10-V0402-100-02-12
Our Price: $1,199.00
|FortiWeb Security Service|
|FortiWeb Security Service for FortiWeb-400B, 1-Year||#FC-10-V0402-137-02-12
Our Price: $1,599.00
|Fortinet FortiCare 8x5 Subscriptions|
|FortiWeb-400B FortiCare 8x5, Renewals|
|The FortiCare 8x5 Renewal includes 8x5 Enhanced Support, Return and Replace, Firmware Upgrades, VPN, Traffic Management|
|8x5 FortiCare for FortiWeb-400B, 1-Year Renewal||#FC-10-V0402-311-02-12
Our Price: $1,200.00
|Fortinet FortiCare 24x7 Subscriptions|
|FortiWeb-400B FortiCare 24x7, Renewals|
|The FortiCare 24x7 Renewal includes 24x7 Comprehensive Support, Advanced Hardware Replacement (NBD), Firmware Upgrades, VPN, and Traffic Management|
|24x7 FortiCare for FortiWeb-400B, 1-Year Renewal||#FC-10-V0402-247-02-12
Our Price: $1,999.00