Firewall
Introduction
A firewall is a security product that filters out malicious traffic. Traditionally, firewalls have run in between a trusted internal network and an untrusted network – e.g., between a private network and the Internet.
With E2E Network Firewall, you can define firewall rules that provide fine-grained control over network traffic. Network Firewall works together with E2E Firewall Manager so you can build policies based on Network Firewall rules and then centrally apply those policies across your virtual private clouds (VPC) and accounts.
E2E Firewalls Features
-
Multi-Platform Support
- Integrates with Iptables (Linux), Firewalld (Linux), and Windows Firewall, supporting a wide range of operating systems.
- Compatible with multiple network configurations, including virtual private clouds (VPC).
-
Granular Firewall Rule Configuration
- Enables the creation of detailed firewall rules for precise control over network traffic.
- Provides the ability to open or close ports on Iptables, Firewalld, and Windows Firewall.
-
Comprehensive Firewall Management Actions
- Users can access the console, power off, reboot, reinstall, lock, and delete the firewall with ease.
- Provides full control over the firewall's operational settings and management.
-
Protection from Malicious Traffic
- Filters out harmful traffic, preventing unauthorized access to the network.
- Secure against common network attacks by enforcing strict firewall rules.
-
VPC Integration
- Allows users to associate the firewall with multiple networks and attach VPCs, providing flexibility and scalability in network security management.
-
Automatic Licensing
- The firewall's security license is provisioned and managed automatically throughout its lifecycle — no manual license key entry required.
Key Benefits of using E2E Firewall
-
Enhanced Security
- Ensures comprehensive protection by blocking malicious traffic and unauthorized connections.
- Minimizes the risk of cyberattacks, reducing vulnerabilities across systems.
-
Fine-Grained Network Control
- Gives administrators full control over the network by allowing them to open or close ports selectively, ensuring only necessary services are accessible.
- Customizable firewall rules offer the flexibility to fine-tune security protocols based on network needs.
-
Scalability and Flexibility
- Adapts to growing networks by enabling easy integration with multiple VPCs and networks, ideal for both small and large-scale environments.
- Supports businesses that need scalable, flexible, and secure firewall solutions for dynamic infrastructures.
-
Operational Control and Flexibility
- Immediate access to firewall management actions, such as rebooting or reinstalling, empowers administrators to respond quickly to changing network conditions or security incidents.
- The ability to lock or delete the firewall ensures that administrators can maintain tight control over access and configuration.
-
Secure Use in Public Networks
- Windows Firewall offers additional protection when using public networks by blocking unsolicited connection attempts, safeguarding against potential threats when connecting to untrusted networks.
Navigate to Firewall
- Log in to your E2E Networks MyAccount using your credentials.
- In the left sidebar, click on Network to expand the section.
- Click on Firewall under the Network section.
- You will be redirected to the Firewall page.
Create a Firewall
- On the Firewall page, click Add New Firewall.
- Select your plan based on your requirements and click Create.
- Review your plan selection and click Create again to confirm.
- Fill in the firewall details in the Create Firewall Appliance form.
- Click Create My Firewall.
- A confirmation popup will appear — click Proceed to complete the creation.
- You will be redirected to the Firewall list page where your newly created firewall will appear.
Licensing
Your FortiGate Firewall includes a Fortinet security license that is provisioned and managed automatically throughout its lifecycle. You do not need to enter a license key or manage the license separately — it stays in sync with the firewall as you create, power on/off, reinstall, or delete it.
FortiGuard Security Subscriptions
Your FortiGate Firewall's built-in firewalling can be extended with optional Fortinet-managed security subscriptions — additional threat-intelligence and inspection services kept up to date by Fortinet's FortiGuard Labs. Fortinet groups these into three bundles that build on one another: ATP (Advanced Threat Protection), UTP (Unified Threat Protection), and Enterprise Protection.
Reviewing what each bundle covers can help you decide which additional protections are worth enabling for your workloads, on top of the firewall rules you configure yourself.
| Capability | ATP (Essential) | UTP (Web & Network) | Enterprise (Full Attack Surface) |
|---|---|---|---|
| Intrusion Prevention (IPS) | ✅ | ✅ | ✅ |
| Antivirus / Advanced Malware Protection | ✅ | ✅ | ✅ |
| Application Control | ✅ | ✅ | ✅ |
| Cloud Sandbox (zero-day detection) | ✅ | ✅ | ✅ |
| URL, DNS & Video Filtering | — | ✅ | ✅ |
| Anti-Botnet / C2 Protection | — | ✅ | ✅ |
| Data Loss Prevention (DLP) | — | — | ✅ |
| AI-based Inline Malware Prevention | — | — | ✅ |
| Attack Surface & IoT Visibility | — | — | ✅ |
For the full, up-to-date details, see Fortinet's own resources:
- FortiGate Security Bundles — compares the ATP, UTP, and Enterprise bundles and what each one covers.
- FortiGuard Security Services Datasheet (PDF) — describes each individual FortiGuard security service in detail.
These are optional, Fortinet-provided subscriptions layered on top of your FortiGate Firewall. Raise a request with E2E support to add one of these bundles to your firewall.
Firewall Detail
Click on any firewall in the list to open its detail page. The detail page shows all the configuration saved at the time of creation, including the firewall name, plan, and status.
Network
The Network tab on the firewall detail page allows you to associate multiple VPCs with your firewall.
- Open the firewall detail page and go to the Network tab.
- Click Click here to add.
- Select the network from the dropdown.
- Click Attach VPC.