Introduction
Simple deployment overview
FortiDDoS v3.2 Installation Guide
28-320-183686-20130401
7
•
Figure 1:
Back panel of a FortiDDoS 100A device with copper and fiber interfaces and the management Interfaces
Simple
deployment
The FortiDDoS device is designed to protect a system or a network of systems from
rate-based attacks and anomaly attacks. If multiple systems or workgroups are
protected by a FortiDDoS device, a switch will be required between the FortiDDoS
appliance and the protected systems.
Figure 2:
A simple network prior to installation of a FortiDDoS device
In a simple network shown in
, a system is connected to an Ethernet local area
network.
In the simplest configuration, you can install a FortiDDoS unit as an inline device, as
shown in
Figure 3:
Network with a FortiDDoS device protecting a single system
The appliance is stateful and bidirectional, so a concept of ‘direction’ must be
introduced to differentiate between inbound and outbound traffic.
As shown in
below, in a typical installation, the Ethernet segment connected
to the protected systems is connected to LAN 1. The Ethernet segment connected to
the rest of the network (typically the Internet) is connected to WAN 1.
Summary of Contents for FortiDDoS
Page 1: ...FortiDDoS v3 2 Installation Guide ...
Page 37: ......