Enterprise Security

Advanced
Firewall Management

Protect your servers against DDoS, malware, and cyber attacks with FortiGate-based enterprise firewall. Manage WAF, IPS, and VPN services from a single panel.

IzCloud Firewall

FortiGate Firewall Management

Enterprise-level firewall, easy-to-use panel

Why FortiGate?

FortiGate is the world's most preferred next-generation firewall (NGFW) solution. Each customer in IzCloud infrastructure is assigned a dedicated FortiGate virtual firewall.

  • Stateful Firewall: Full packet-level inspection, analyzes all incoming and outgoing traffic
  • Policy-Based Rules: Define flexible rules based on source/destination IP, port, and protocol
  • Address Objects: Manage IP addresses and groups by naming them, simplify your rules
  • Traffic Logging: Record all connection attempts, perform security audits
  • Virtual IP (VIP): Flexible network configuration with port forwarding and NAT rules
Panel Features
Rule Management
Address Management
Virtual IP
Traffic Analysis
WAF Service

Web Application Firewall (WAF)

WAF (Web Application Firewall) protects your web applications against SQL injection, XSS (Cross-Site Scripting), CSRF, and OWASP Top 10 vulnerabilities. It analyzes HTTP/HTTPS traffic at the application layer (Layer 7).

Protected Attack Types:
SQL Injection XSS CSRF RFI/LFI OWASP Top 10 HTTP Flood
How Does WAF Work?
  1. Incoming HTTP/HTTPS requests pass through the FortiGate WAF module
  2. Request headers, parameters, and body are analyzed according to OWASP rules
  3. Suspicious requests are automatically blocked or logged
  4. Legitimate traffic is forwarded to your backend server
  5. All blocking events are displayed in the real-time log panel
IPS Service

Intrusion Prevention System (IPS)

IPS (Intrusion Prevention System) monitors your network traffic in real-time and automatically blocks known attack signatures. It detects zero-day threats, brute force attacks, port scans, and exploit attempts within minutes.

Real-Time Monitoring:

24/7 traffic analysis and anomaly detection

20,000+ Signatures:

Continuously updated threat definitions with FortiGuard signature database

Automatic Blocking:

Detected attacks are instantly blocked, administrator is notified

Detailed Reporting:

Attack statistics, source IPs, and attack type reports

IPS Protection Layers
Layer 3
Network layer: IP spoofing, ICMP flood
Layer 4
Transport layer: SYN flood, port scanning
Layer 7
Application layer: Exploit, malware, brute force
AI/ML
Behavior analysis: Zero-day, anomaly detection
VPN Service

Enterprise VPN Solution

Secure remote access with SSL VPN and IPSec VPN support. Establish encrypted tunnel connections between your employees, office network, or servers at different locations.

SSL VPN

Connect via browser or FortiClient. Works over port 443, not blocked in corporate networks.

IPSec VPN

Site-to-site tunnel connections. Encrypted communication between offices and data centers.

Multi-User Support

Separate VPN users, bandwidth limits, and access policies for each account

Split Tunneling

Route only server traffic through VPN, your internet speed remains unaffected

Two-Factor Authentication

Additional security layer with SMS or TOTP for VPN connections

Connection Logs

Who connected, when, and from where — all VPN sessions are recorded

Frequently Asked Questions

Common questions about security services

The firewall service is an optional add-on. You can activate it during server order or later through the panel. Basic firewall rules (incoming/outgoing traffic control) are provided to all our customers. Advanced security modules like WAF and IPS are available for an additional fee.

WAF protects all web applications using HTTP/HTTPS traffic: WordPress, Laravel, Node.js, Django, .NET, e-commerce sites, APIs, and custom web applications. It works with all web-based services including CMSs, REST APIs, and GraphQL endpoints.

The FortiGuard signature database is continuously updated and the false positive rate is very low. However, you can start IPS in monitoring mode to test the impact of rules on your traffic. If you encounter issues, you can define custom rule exceptions.

For SSL VPN, you can use FortiClient (Windows, macOS, Linux, iOS, Android) or your web browser. For IPSec VPN, you can use FortiClient, strongSwan, or your operating system's built-in VPN client. OpenVPN compatibility is also available.

DDoS protection works across multiple layers: At the network layer (L3/L4), traffic volume and packet rate limiting; at the application layer (L7), HTTP flood protection with WAF. FortiGate's anti-DDoS module automatically detects and blocks SYN flood, UDP flood, ICMP flood, and HTTP slow-read attacks.

Protect Your Servers

Complete security with Firewall, WAF, IPS, and VPN services.

Add Security