Firewall Implementation (Non-AIS-Managed)
AIS Managed Firewall offers professional monitoring, maintenance, and support from a dedicated team — but implementing a firewall you manage yourself is also an effective approach for organizations that want direct control over configuration and customization to suit specific business needs.
Not every business wants AIS to manage its firewall day to day — some prefer to keep configuration and monitoring in-house. AIS will still handle the implementation: sizing, configuring, and deploying your firewall (including Fortinet platforms) so your team takes ownership of a solution that’s built correctly from day one.
Benefits
- Enhanced security: A firewall acts as a barrier between your internal network and external threats, filtering incoming and outgoing traffic to prevent unauthorized access or malicious activity.
- Improved network performance: A properly configured firewall helps you manage and optimize network traffic flow.
- Regulatory compliance: Many industries face strict regulatory requirements around data security and privacy that a well-configured firewall helps satisfy.
Scope Your Project
Tell us which of the services below fit your needs — our team will use your answers to scope the tasks and requirements for your project.
Is your Business looking for any of these IT Solutions?
- Do you need to connect your sites together with site-to-site VPN tunnels? If so, how many tunnels do you need?
- Do you need a web filter configured? If so, how many user groups are needed?
- Should the cutover take place outside standard business hours?
- Do you need RADIUS/LDAP configured? If so, how many directory services are needed?
- Do you need a separate guest network configured?
- Do you need dynamic routing configured?
- Do you need failover ISP configuration?
- Do you need firewall consolidation from multiple existing devices?
- Do you need high availability/failover configured?
- Do you need advanced security features configured?
- Will users need to VPN into the network with the Fortinet VPN client?
- Are you migrating from a different firewall brand?
- Does the firewall need to act as a VPN server? If so, for how many users?
- Do you need NAT rules configured? If so, how many?
- Do you need content-filtering rules/groups configured (up to 10)?
- Do you need multi-factor authentication configured?
Example Project Plan
Discovery
- Identify internal/external subnets requiring routes
- Discovery of current firewall configuration
Solution Design
- Determine best-fit routing protocol
Planning
- After-hours scheduling
- Guest network settings
- Develop routing traffic test plan to confirm during implementation
- Confirm/review ISP information
- Confirm whether equipment to be decommissioned should be e-wasted or otherwise disposed of
- Send FortiClient end-user VPN instructions to users
Implementation
- Web filter global base configuration (non-user based)
- Network switch configuration
- Wireless access point configuration
- Update firewall configuration for guests
- Configure additional ISP
- Active/passive failover configuration
- Physical decommissioning
- Logical decommissioning
- Firewall configuration
- Firewall cutover
- Set up VPN users
- Configure requested rules/groups for content filtering
Validation
- Perform testing to verify traffic is routing as expected
Closing
- Final design review and sign-off