FortiGate Firewall Installation
& Configuration Services in India
You bought the FortiGate — now get it deployed right. Ogma's NSE-certified engineers handle everything from unboxing to go-live: initial hardening, security policies, VPN, SD-WAN, and FortiGuard subscription activation. Fixed scope. Fixed price. No surprises.
What's Included in Every Installation
Our standard FortiGate installation scope — no hidden extras.
Initial Hardening
Admin password policies, management interface restrictions, HTTPS-only GUI access, SSH key-based authentication, unused service disablement, and FortiOS 7.4 secure baseline per Fortinet hardening guide.
Network & Interface Config
WAN, LAN, DMZ interface setup, VLAN tagging (802.1Q), routing (static + BGP/OSPF as required), NAT policies, DHCP server, DNS forwarding, and traffic shaping.
Security Policy Setup
Firewall policies with application control, IPS (Intrusion Prevention), antivirus, web filtering, and DNS filtering profiles applied. Least-privilege policy model — default deny with explicit allow.
VPN Configuration
SSL-VPN (FortiClient) for remote users — with split tunnelling, MFA (FortiToken), and LDAP/AD authentication. Site-to-site IPSec tunnels to branch offices or cloud (AWS/Azure). Up to 5 VPN tunnels in scope.
SD-WAN & WAN Redundancy
SD-WAN rule configuration for load balancing and failover across multiple ISP links. Performance SLA probes, application steering (Microsoft 365, Zoom, SAP priority), and dual-WAN failover testing.
Logging, Alerting & Handover
FortiAnalyzer or syslog configuration, email/SNMP alerting for critical events, as-built documentation (network diagram + policy matrix), 30-day post-go-live support, and knowledge transfer to your IT team.
Installation Project Tiers
Fixed-scope, fixed-price — no per-hour surprises. Excludes hardware. Tell us your appliance and scope — we'll quote within 2 hours.
- Hardening + base config
- Up to 20 firewall policies
- SSL-VPN (up to 25 users)
- 1 site-to-site IPSec tunnel
- As-built documentation
- Full hardening + policy migration
- Up to 80 firewall policies
- SSL-VPN + FortiToken MFA
- SD-WAN (up to 3 WAN links)
- Up to 3 IPSec tunnels
- AD/LDAP integration
- Data centre-grade hardening
- Unlimited policies in scope
- Full SD-WAN deployment
- Up to 5 IPSec/SSL tunnels
- FortiManager integration
- 3-month post-go-live support
* HA (high-availability) cluster deployments quoted separately. Multi-site discounts available. Travel/accommodation billed at actuals for on-site.
Why Enterprises Choose Ogma for FortiGate
Fortinet Authorised Partner
Ogma holds Fortinet Partner status with NSE 4, NSE 7, and NSE 8-certified engineers. We've been deploying FortiOS since version 5.x — across banking, manufacturing, healthcare, and government sectors in India.
Pan-India On-Site Delivery
Our engineers deliver on-site in Delhi NCR, Mumbai, Bengaluru, Chennai, Hyderabad, Pune, and Ahmedabad — with remote delivery available pan-India. No subcontracting: the same certified team who quotes is the team that deploys.
Compliance-Ready Baseline
Every FortiGate we install includes a hardening baseline aligned to CIS Benchmarks, CERT-In guidelines, and RBI Cyber Security Framework. You receive an as-built document that serves as audit evidence — ready for PCI-DSS or ISO 27001 assessors.
Our 5-Step Deployment Process
Kick-off & Discovery
We review your network diagram, existing firewall rules (if migrating), ISP details, AD/LDAP structure, and compliance requirements. Deliverable: deployment checklist and agreed go-live date.
Lab / Pre-Build
FortiGate pre-configured in our lab using your parameters — policies, VPN, SD-WAN, and VLAN structure. This cuts on-site downtime to under 2 hours for most deployments.
On-Site Deployment
Hardware racked, cabled, and pre-built config pushed. Parallel run with existing firewall (where possible) before cutover. Thorough UAT: connectivity, VPN, security profile validation.
Hardening & Compliance Check
Post-deployment hardening sweep: unused management ports disabled, FortiGuard subscriptions verified, log forwarding tested, firmware patched to latest stable release.
Handover & Knowledge Transfer
As-built documentation (PDF + Visio diagram), administrator walkthrough, emergency runbook, and 30-day hypercare support via WhatsApp/email included in every engagement.
Frequently Asked Questions
Ready to Deploy Your FortiGate?
Tell us your FortiGate model, your network setup, and your go-live date. We'll send a fixed-scope proposal within 24 hours.