Enhance AWS Network Firewall with AI-driven intrusion prevention. Fortinet Managed IPS Rules deliver continuously updated protection against exploits, malware, and command-and-control activity, powered by FortiGuard Labs threat intelligence, without adding operational complexity.
WHY FORTINET MANAGED IPS RULES
Effortless protection: Enforce security policies that automatically scale with your AWS workloads, without managing infrastructure or manually updating rules.
AI-driven intelligence: Continuous updates from FortiGuard Labs keep pace with the evolving threat landscape.
Simplified compliance: Aligns with AWS best practices for inline IPS, helping you meet requirements in regulated environments.
Built for organizations that need enterprise-grade protection with simple, streamlined deployment and management. As needs evolve, customers can transition to FortiGate Virtual Firewall for unified, full-stack security across hybrid and multi-cloud environments.
Subscribe below (sign in to your AWS account first if prompted).
Click "Set up your account" this takes you to AWS Network Firewall.
Create a new firewall (or select an existing one) and attach the Fortinet Managed IPS rule group.
Deployment takes minutes. No infrastructure to manage. No manual rule updates.
Highlights
AI-Driven Intrusion Prevention: Enhance AWS Network Firewall with continuously updated, intelligence-driven IPS rules powered by FortiGuard AI and global threat telemetry. Automatically protect against exploits, malware, and command-and-control (C2) traffic - without manual tuning or rule maintenance.
Simplified, Scalable Cloud Security: Deploy and manage enterprise-grade intrusion prevention natively within AWS Network Firewall. Fortinet Managed IPS rules integrate seamlessly with AWS services to deliver consistent protection at scale across accounts, VPCs, and regions.
Continuous Protection, Zero Overhead: Stay protected as threats evolve. FortiGuard Labs continuously analyzes global attack data and pushes rule updates automatically - providing proactive, always-on protection that requires no manual intervention or policy expertise.
Access real-time vendor security and compliance information through their Trust Center powered by Drata or Vanta. Review certifications and security standards before purchase.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay based on the volume of traffic processed by the managed intrusion prevention rules within AWS Network Firewall. Billing is usage-based, so charges scale with how much traffic the rules inspect. Each dimension maps to a specific AWS region, from US, Canada, and South America to Europe, the Middle East, Africa, and Asia Pacific. The rate applies in the region where your firewall runs. You are not choosing tiers or feature levels. Instead, you select the region that matches your firewall deployment, and charges accrue per unit of traffic processed there.
Top-of-mind questions for buyers
What counts as traffic processed for billing purposes?
Billing is based on the volume of network traffic that the managed IPS rules inspect inside AWS Network Firewall. All egress and inspected flows routed through your firewall count toward the metered amount. Charges accrue per unit of traffic passing through the stateful rule groups in your region.
Does running rules in alert mode instead of blocking mode change what I am billed?
The rules still inspect traffic in alert mode, so metered traffic volume drives your charge regardless of whether rules alert or block. Alert mode lets you test rule groups without dropping traffic. The traffic still passes through inspection, so the same processed-traffic units apply.
If my firewall runs in more than one region, how are charges applied?
Each region has its own traffic-processed dimension. Charges accrue separately in every region where you deploy the rules. If your firewalls span multiple regions, you are metered per region for the traffic inspected there, and each appears against its matching dimension.
community.fortinet.com+1
Helpful?
Vendor refund policy
Non-Refundable
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Support offered by Fortinet. Contact Fortinet directly by email - awsips@fortinet.com.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Fortinet FortiGate allows mitigation of blind spots to improve policy compliance by implementing critical security controls within your AWS environment. FortiGate includes all of the security and networking services common to FortiGate physical appliances.
Fortinet professional design and implementation services for network, application, and cloud-native (CNAPP) security for AWS, hybrid, and multi-cloud environments.
FortiAuthenticator is a centralized user Identity Management solution to transparently identify network users and enforce identity-driven access policy in a Fortinet fabric. It supports FortiToken Two-factor authentication, Certificate and Wireless Guest management and Single Sign On capability.
The Fortinet FortiManager provides easy centralized configuration, policy-based provisioning, update management and end-to-end network monitoring for your Fortinet installed environment.
The FortiWeb web application firewall (WAF) defends web-based applications from known and zero-day threats. Its AI-based machine learning identifies threats with virtually no false positive detections.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.