Enhance AWS Network Firewall with AI-driven intrusion prevention. Fortinet Managed IPS Rules deliver continuously updated protection against exploits, malware, and command-and-control activity, powered by FortiGuard Labs threat intelligence, without adding operational complexity.
WHY FORTINET MANAGED IPS RULES
Effortless protection: Enforce security policies that automatically scale with your AWS workloads, without managing infrastructure or manually updating rules.
AI-driven intelligence: Continuous updates from FortiGuard Labs keep pace with the evolving threat landscape.
Simplified compliance: Aligns with AWS best practices for inline IPS, helping you meet requirements in regulated environments.
Built for organizations that need enterprise-grade protection with simple, streamlined deployment and management. As needs evolve, customers can transition to FortiGate Virtual Firewall for unified, full-stack security across hybrid and multi-cloud environments.
Subscribe below (sign in to your AWS account first if prompted).
Click "Set up your account" this takes you to AWS Network Firewall.
Create a new firewall (or select an existing one) and attach the Fortinet Managed IPS rule group.
Deployment takes minutes. No infrastructure to manage. No manual rule updates.
Highlights
AI-Driven Intrusion Prevention: Enhance AWS Network Firewall with continuously updated, intelligence-driven IPS rules powered by FortiGuard AI and global threat telemetry. Automatically protect against exploits, malware, and command-and-control (C2) traffic - without manual tuning or rule maintenance.
Simplified, Scalable Cloud Security: Deploy and manage enterprise-grade intrusion prevention natively within AWS Network Firewall. Fortinet Managed IPS rules integrate seamlessly with AWS services to deliver consistent protection at scale across accounts, VPCs, and regions.
Continuous Protection, Zero Overhead: Stay protected as threats evolve. FortiGuard Labs continuously analyzes global attack data and pushes rule updates automatically - providing proactive, always-on protection that requires no manual intervention or policy expertise.
Access real-time vendor security and compliance information through their Trust Center powered by Drata or Vanta. Review certifications and security standards before purchase.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay based on the volume of traffic processed by the managed intrusion prevention rules. Billing is usage-based, so charges scale with how much network traffic gets inspected. Each dimension covers one AWS Region, from us-east-1 to il-central-1. You are billed only in the Region where your AWS Network Firewall inspects traffic. This lets you match costs to where your workloads run. There are no upfront commitments or fixed quantities. Adding more traffic or more Regions increases your usage charges accordingly.
Top-of-mind questions for buyers
What counts as traffic processed for billing?
You are billed on the volume of network traffic that AWS Network Firewall inspects using the Fortinet managed intrusion prevention rules. This covers stateful inspection of flows such as ingress, egress, and traffic between VPCs. Only traffic routed through the firewall for inspection contributes to your usage charge.
Does adding more rule groups to my firewall policy change what I pay?
No. Charges track the volume of traffic inspected, not the number of rule groups you enable. AWS enforces a capacity limit of 30,000 rules per policy, which you can raise through a Service Quota request. That limit affects rule capacity, not your usage-based cost.
If I run firewalls in more than one AWS Region, how does billing work?
Each Region has its own traffic-processed dimension, from us-east-1 through il-central-1. You are billed separately in each Region where your firewall inspects traffic. Charges in one Region do not combine with another. Running firewalls in multiple Regions produces separate usage charges on the same invoice.
docs.fortinet.com+1
Helpful?
Vendor refund policy
Non-Refundable
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Support offered by Fortinet. Contact Fortinet directly by email - awsips@fortinet.com.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Fortinet FortiGate allows mitigation of blind spots to improve policy compliance by implementing critical security controls within your AWS environment. FortiGate includes all of the security and networking services common to FortiGate physical appliances.
Fortinet professional design and implementation services for network, application, and cloud-native (CNAPP) security for AWS, hybrid, and multi-cloud environments.
FortiAuthenticator is a centralized user Identity Management solution to transparently identify network users and enforce identity-driven access policy in a Fortinet fabric. It supports FortiToken Two-factor authentication, Certificate and Wireless Guest management and Single Sign On capability.
The Fortinet FortiManager provides easy centralized configuration, policy-based provisioning, update management and end-to-end network monitoring for your Fortinet installed environment.
The FortiWeb web application firewall (WAF) defends web-based applications from known and zero-day threats. Its AI-based machine learning identifies threats with virtually no false positive detections.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.