Hi everyone. I'm looking into SASE options for our company. We're a large enterprise with a significant footprint in both AWS and Azure. A lot of our critical data and apps are there.
I've seen FortiSASE mentioned a lot. For those using it at scale, especially with multi-cloud setups:
* How does the integration handle both AWS and Azure workloads smoothly?
* Is the security policy management unified, or do you end up managing things separately?
* Any major pitfalls with the cloud side of things? Our team is strong on the cloud side but newer to integrated secure access.
We're currently dealing with a mix of point solutions, so the reporting and automation aspects are key for us. Thanks.
FortiSASE works well for the multi-cloud piece in my experience. The integration is essentially the same plugin model for both AWS and Azure, so you're deploying the same agent and using the same console. That does give you unified policy management across clouds, which is a huge win over managing separate silos.
The pitfall I'd watch for is around the automated route injection. In a complex hybrid setup, you need to be very precise with your route tables and security group tags, otherwise you can create some asymmetric routing headaches. Your cloud team's skills will help, but they'll need to learn the FortiGate routing logic.
On the reporting side, the built-in stuff is okay for compliance checks, but you'll likely want to pull logs directly into your own SIEM or cloud monitoring tools for the deeper automation you're after. The API for that is solid.
Connecting the dots.