Table of Contents

FortiGate Next Generation Firewall (NGFW) Project

The U.S. Academic Research Fleet (ARF) has funding to outfit all vessels in fleet with FortiGate NextGen Firewalls (NGFW). Vessels in the ARF have been successfully using FortiGate firewalls for over 3 years.

Vessels Currently Using Fortigate NGFW

As of February 2025 FortiGate firewalls are in use on the following vessels:

Vessels currently developing their FortiGate NGFW solution

Why do we need next generation firewalls (NGFW)?

The number of bad actors on the internet has increased dramatically over the last several years. Bad actors have gotten more sophisticated in their approaches to gaining unauthorized access and disrupting operations.

Modern next generation firewalls have dynamic monitoring and security capabilities. This translates to dynamic intrusion detection and prevention abilities. NGFWs enable active log monitoring by our virtual cyber security team, so we are able to receive proactive notification of suspicious activities. Often we can investigate before anyone on board notices there is an issue.

Why did we choose FortiGate?

A FortiGate firewall stands out due to its powerful, multi-layered security features, excellent performance even under heavy traffic, user-friendly management interface, and integration with a comprehensive security fabric, making it a robust choice for businesses of all sizes looking for high-speed, reliable threat protection across their network.

FortiGate firewalls had a successful track record on other vessels with similar connectivity and usage profiles as ARF vessels.

FortiGate is a US company and their products comply with the congressional BABA (Build America, Buy America) Act.

How can FortiGate help?

FortiGate firewalls can manage both north-south (traffic between the internal network and external sources like the internet) and east-west traffic (traffic between devices or systems within the internal network). These firewalls provide advanced threat protection, intrusion prevention, and content filtering, ensuring that data flows securely between the ship’s internal networks and external systems, including shore-based research facilities. Onboard, FortiGate firewalls can manage the internal traffic between critical systems such as scientific instruments, navigation systems, and crew communication networks, enforcing segmentation and security policies.

Some of the benefits include:

How can I get started?

Send an email and a team member will get back in touch with you to schedule a meeting to discuss your vessel's unique needs and next steps.

We have people who can come to your vessel to assist with installation and/or provide documentation, configuration examples, pre-installaton planning and feedback.

Don't you want to join us?!!

If you are interested in taking advantage of all these great benefits for your vessel we would love to hear from you. Email us at: arf-firewall-team@unols.org

FortiGate Training

FortiGate has great training available online, mostly free at: https://training.fortinet.com/

ARF Training

We have periodic trainings within ARF and can easily organize others as needed.

Useful Documentation

Tech Notes