
Fortinet FortiProxy VM16
Fast, Secure, and Scalable Security for any Organization

Click here to jump to more pricing!
Please Note: All Prices are Inclusive of GST
Overview:
FortiProxy is a secure web gateway that protects employees against internet-borne attacks by incorporating multiple detection techniques such as web, video, and DNS filtering, data loss prevention, antivirus, intrusion prevention, and Client Browser Isolation.
Highlights
- Advanced Protection against threats
- Integration with FortiGuard Threat Intelligence Service
- Web, DNS filtering and application control
- Integration with FortiSandbox cloud and on-premise appliance
- AV, IPS, DLP and Content Analysis
- High performance and scalability
- Custom -built security processing units for high performance
- Scalability from small to large organizations
- HA availability for redundancy
- Content Caching and WAN Optimization
- Static and dynamic content caching
- Multiple Content Delivery Network
- Decrease Network Latency
- Lower bandwidth overhead
Features:
Advanced SSL Inspection
Powerful hardware that can perform SSL inspection to effectively remove blind spots in encrypted traffic, without compromising on performance.
Security Fabric
The Fortinet Security Fabric delivers broad protection and visibility to every network segment, device, and appliance, whether virtual, in the cloud, or on-premises. IFortiProxy integrates with key security fabric components such as FortiSandbox and FortiAnalyzer. It can also integrate with third-party security devices using ICAP and WCCP protocols.
High Performance, Scalability, and Low TCO
FortiProxy uses specialized ASICs in order to accelerate performance of the network and security modules. FortiProxy supports proxy speeds up to 15 Gbps, and can scale from small enterprises with 500 users all the way to larger enterprises of 50,000 users. FortiProxy provides great value to customers while maintaining a low total cost of ownership.
Advanced Protection Against Threats
- Integration with FortiGuard Threat Intelligence Service
- Web, Video, DNS filtering, and application control
- Client Browser Isolation for decreasing the attack surface
- Integration with FortiSandbox and FortiNDR cloud and on-premise appliance
- AV, IPS, DLP, and Content Analysis
High Performance and Scalability
- Custom–built security processing units for high performance
- License sharing across multiple devices (VM and HW)
- HA availability for redundancy
- Logical separation between virtual security domains
Content Caching and WAN Optimization
- Static and dynamic content caching
- Multiple Content Delivery Network
- Decrease Network Latency
- Lower bandwidth overhead
Secure Web Gateway Services
Web and Video Filtering
FortiGuard’s cloud-delivered AI-driven web filtering service provides comprehensive threat protection to address threats including ransomware, credential-theft, phishing, and other webborne attacks. It uses AI-driven behavior analysis and correlation to block unknown malicious URL’s almost immediately, with near-zero false-negatives.
The Web Filtering service leverages industry-leading threat intelligence from FortiGuard labs. This is based on telemetry gathered from over 10 billion real-world events per day. FortiGuard Web Filtering has a database of hundreds of millions of URLs classified into 90+ categories to meet granular web controls and reporting. Help achieve regulatory compliance and granular video control with industry-first advanced video filtering.
DNS Filtering
Protect against sophisticated DNS-based threats including DNS tunneling, C2 server identification, and domain generation algorithms (DGAs). DNS filtering provides full visibility into DNS traffic while blocking high-risk domains including malicious newly registered domains (NRDs), parked domains, and more.
Granular and ZTNA Level Application Control
With the constant increase in the usage of social apps, it’s vital for organizations to provide very granular controls. For instance, they may want to allow access but prevent specific actions like posts. FortiProxy supports all major SaaS and social websites and supports more than 3000 apps. Access can be granted or denied based on the user’s group, client security posture or a combination of both. In addition, SaaS Apps can be classified using the cloud database that’s maintained by FortiGuard.

Data Loss Prevention
Protect sensitive data from leaving your network, ensure data privacy and regulatory compliance requirements. Sensitive files can be fingerprinted or watermarked and the outgoing traffic is examined to identify any data leakage. FortiProxy implements Optical Character Recognition to extract text from images and integrations with the FortiGuard DLP service to enhance its DLP capabilities by continuously scanning for more sensitive information patterns
Intrusion Prevention
FortiProxy uses a combination of signature as well as signature-less engines to prevent intrusions. IPS signatures can be based on exploits, known vulnerabilities or anomaly patterns. Signature-less techniques are used to detect SQL injection, domain generation algorithm attacks, java and flash exploits. FortiGuard Labs generates more than 100 IPS rules every week, blocking more than four million network intrusion attempts.
Client Browser Isolation
Client-based native browser isolation (NBI) uses a Docker container to isolate the browser from the external networks. Client browser isolation provides a full browser isolation to stop phishing, account takeover, and malware without performance overhead and without the need for SSL inspection. Windows machines with Chrome, Edge and Firefox browsers are supported.

Sandboxing
Complement with a two-step AI based sandboxing approach. Suspicious and at-risk files are subjected to the first stage of analysis that quickly identifies known and emerging malware through FortiSandbox’s ML powered static analysis. Second stage analysis is done in a contained environment to uncover the full attack lifecycle leveraging behavior-based ML with dynamic analysis detection engine more efficient and effective against new zero-day threats.
Content Analysis
Enforce acceptable usage by detecting and preventing illicit images and videos with AI-driven content analysis. With the addition of the Content Disarm and Reconstruction service, you can reduce mean time to detection (MTTD) with low latency content sanitization. A broad range of file types are supported beyond traditional signature-based and reputation-based measures.
WAN Optimization and Advanced Caching
Today at many locations, bandwidth is a bottleneck, and to keep operation costs low, it may be prohibitive to provide additional bandwidth. In these environments, FortiProxy is also able to greatly optimize and accelerate the network by enabling caching of content and by enabling WAN Optimization features.
Use Cases:

SWG Services
Method Supported
- Explicit Proxy, Transparent, PBR, and WCCP
Advanced Offering
- FortiProxy employs multiple FortiGuard services to protect users against the latest web threats and to enforce compliance
- Integration with FortiGuard Threat Intelligence Service
Benefits
- Advanced SWG Services
- Full Visibility
- All-Inclusive License
- Stackable License from 500 to 60K Users
Hybrid Cloud Solution
Methods Supported
- On-prem HW/VM, Agent-based, Agentless
Advanced Offering
- Share license according to load/time/user
- Explicit Proxy with PAC File hosting support
- Centralized management of your FortiProxy devices from a single console
Benefits
- Auto Scaling
- Full Visibility
- Consistent Security Across all Users


Managed Security Service Providers
Methods Supported
- Thin Edge, Agent-based, Agentless
Advanced Offering
- Explicit Proxy with PAC File hosting support or VPN
- VDOM per customer - full integration and visibility
Benefits
- Easy Onboarding
- Full Visibility
Specifications:
Virtual Appliance | FortiProxy VM02 | FortiProxy VM04 | FortiProxy VM08 | FortiProxy VM16 | FortiProxy VMUL |
---|---|---|---|---|---|
System Information | |||||
Hypervisor Support | VMware ESX/ESXi, KVM Platform, Microsoft HyperV | VMware ESX/ESXi, KVM Platform, Microsoft HyperV | VMware ESX/ESXi, KVM Platform, Microsoft HyperV | VMware ESX/ESXi, KVM Platform, Microsoft HyperV | VMware ESX/ESXi, KVM Platform, Microsoft HyperV |
License Capacity | 100–500 users | 100–2,500 users | 100–10,000 users | 100–25,000 users | 100–50,000 users |
Virtual Domain | Up to 10 VDOM | Up to 25 VDOM | Up to 50 VDOM | Up to 100 VDOM | Up to 500 VDOM |
Hardware Specifications | |||||
Storage | 4 CPU, Unlimited GB RAM, 2 Disk | 8 CPU, Unlimited GB RAM, 2 Disk | 16 CPU, Unlimited GB RAM, 4 Disk | 32 CPU, Unlimited GB RAM, 8 Disk | Unlimited CPU, Unlimited GB RAM, 16 Disk |
Network Interface Support (Maximum) | 10 | 10 | 10 | 10 | 10 |
Management | HTTP/S, SSH, CLI, SNMP | HTTP/S, SSH, CLI, SNMP | HTTP/S, SSH, CLI, SNMP | HTTP/S, SSH, CLI, SNMP | HTTP/S, SSH, CLI, SNMP |
Documentation:
Download the Fortinet FortiProxy Series Datasheet (PDF).
Pricing Notes:
- All Prices are Inclusive of GST
- Pricing and product availability subject to change without notice.
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote