Fortinet and Tigera have partnered to deliver container-integrated solutions for the Calico network stack. As Kubernetes pilot projects transition to enterprise-wide application rollouts, companies must be able to extend their existing enterprise security architecture into the Kubernetes environment. Maintaining two disparate security stacks introduces additional complexity and manual processes, which can lead to configuration drift and increased security exposure. Recognizing this need for a unified security approach, Fortinet and Tigera have jointly developed a suite of Calico Fortinet Fabric-Ready solutions that deliver:
Calico enables platform engineers to accelerate the widespread adoption of Kubernetes across the enterprise. Addressing the needs of multiple stakeholders— end-users, application security requirements and networking and security teams—Calico enables the platform team to streamline Kubernetes deployments, resulting in faster time to market, improved scalability and availability, and agile multi/hybrid cloud flexibility while optimizing IT costs.
The Calico Enterprise/Fortinet integration workflow gives you the ability to control traffic leaving the Kubernetes cluster, by allowing you to create perimeter firewall policies in FortiManager and FortiGate that reference Kuberetes workloads. Calico Enterprise acts as a conduit, using the tigera-firewall-controller and global network security policies to pass Kubernetes workload information to FortiManager and Fortigate devices, where policies are applied and enforced. Calico’s Fortinet Fabric-Ready suite is comprised of 4 key integrations: