
OT security has been a focus point at Fortinet for over two years now. Their ICS security offering comprises FortiGate, FortiSwitches, FortiNAC, FortiDeceptor, FortiSRA and FortiSIEM as the main products.
Nothing new on that side. Nevertheless, we’re more than happy to provide you with a quick overview of all the interesting things we learned about them at Accelerate 2025.
What concerns the FortiGate, Fortinet is still standing strong with their OT security license. It provides specialized IPS, Application Control and virtual patching signatures for over 3200 protocols, 1100 specific OT applications, 700 IPS rules and 1200 virtual patching rules by now.
The ruggedized devices are also expanding and now available on G-series as well, the FortiGate Rugged 50G and 70G, both equipped with a 5G modem inside. These devices stand out by their ruggedized design: DIN-rail mountable and suited to combat high temperature differences and dusty surroundings.
For environments without these requirements, e.g. closed boxes with pretty stable temperatures, we also had a solution showcased on our own stand provided by our vendor Rackmount IT. They provide rackmounts for any type of FortiGate and switch available, plus DIN mounts for the smaller desktop sized FortiGates!
The new Ruggedized FortiSwitch 108F finally made it to the price list as well.
If you’ve read the article about FortiAnalyzer, you already know that we were quite enthusiastic about the way FortiAnalyzer is moving forward. Also on the OT front, we’ve seen some enhancements like the OT Security Service which includes specific dashboards, reports and event handlers. The Asset Identity Center now includes the Purdue model as well, just as is available on the FortiGate. With the addition of the OT Security Risk Report and the NERC CIP Compliance Security Rating Report, we can conclude the summation of FortiAnalyzer enhancements.
Unfortunately, there was no FortiSRA booth on the conference. So, no additional updates on this topic, although there were a lot of new features introduced in version 1.5.0.
Lastly, it is worthwhile mentioning that Nozomi Networks hosted a very successful session explaining their integration with FortiGates. They really form a strong partnership when it comes to achieving OT visibility and detecting ICS attacks. Nozomi is a solution that works on a traffic mirror and analyzes the traffic in a non-intrusive way. From the ground up, the product was built around OT and this shows in their detection capabilities and their ability to understand the protocols being used in these specific networks.
To make their detections actionable, they heavily rely on the firewalling capabilities available in the FortiGate and micro-segmentation which can be applied on FortiSwitches.