Skip to content Skip to navigation Skip to footer

概述

FortiEDR通过轻量级代理程序,能够自动高效地实时识别并阻止安全漏洞。作为Fortinet安全运营平台的重要组成部分,该解决方案能主动缩小攻击面,防范恶意软件感染,即时检测并化解潜在威胁,并通过可定制的操作手册在传统及现代操作系统中自动化执行响应与修复流程。

FortiEDR UI

FortiEDR 高级终端防护(AEP)

FortiEDR通过具备抗规避能力的实时防护、自动事件响应以及全面的安全能力,为您的工作站、服务器和云工作负载提供定制化防护,全面守护您的数字环境,持续提升您的网络安全态势。缩小攻击面,并利用与MITRE ATT&CK框架紧密映射的开箱即用策略,使安全团队能够应对勒索软件等攻击中出现的多种高级战术、技术和程序。&CK框架,使安全团队能够应对勒索软件等攻击中出现的多种高级战术、技术和程序。

FortiEDR收集器实战演示

了解FortiEDR收集器代理如何在组织内的通信设备上安装以提供保护。安装过程快速,且无需重新启动。FortiEDR对设备的影响极小,仅保留有限的元数据,并通过压缩技术最大限度地减少网络流量、CPU使用率、内存占用及磁盘空间消耗。通过释放其他终端检测和响应产品的计算资源,立即获得投资回报。FortiEDR可快速部署,支持可选日志记录和模拟模式,同时能与其他解决方案协同工作。

立即观看

自动响应复杂威胁

了解 FortiEDR(FortiXDR 的核心组件)如何通过可定制的操作手册实现事件响应自动化。了解它如何对事件进行分类,从而触发通知、域封锁、设备隔离等操作。观察系统如何从模拟模式切换至保护模式,通过删除文件、重置密码及封锁IP地址等手段,有效管理恶意软件威胁。本次演示在Windows和Linux设备上均有展示,充分展现了其全面的功能。

立即观看

功能与优势

发现和控制

基于风险缓解策略,发现和控制恶意设备和应用程序。

实时检测和消除威胁

实时自动检测并消除潜在和已入侵威胁。

自动事件响应

采用自定义上下文事件响应 Playbook,自动完成事件响应。

驱动基于身份的响应

整合身份验证工具以增强威胁检测、响应及调查能力。

高效安全运营

采用自定义事件响应 Playbook 消除告警疲劳,优化安全运营。

启用完整功能对等性

支持XP或Server 2003等旧版系统,并实现完整功能对等。

100%

98%

在MITRE ATT&CK评估中的可见性

全天候

我们的全球托管服务为您分忧解难

FortiEDR 应用场景

Detection
实时漏洞保护
FortiEDR 可在安全事件发生期间,实时防止数据泄露并有效拦截勒索软件攻击,支持恶意篡改自动回滚。
icon secure internet access
攻击面缩减
FortiEDR能够实时发现并管控未授权设备、物联网设备及应用程序,同时识别其各自存在的漏洞。
Respond
优化事件响应
基于预设方案的事件响应机制,可根据资产价值、端点组别及事件分类实现定制化处理流程。
icon ot
过流保护
FortiEDR确保在发生安全事件或入侵时,运营技术系统仍能保持高可用性。
Virtual Patch
POS系统安全
FortiEDR 可有效避免系统被入侵时发生数据泄露,还可提供虚拟补丁,保护 POS 系统免受漏洞影响。
icon fabric integration
织物连接性
FortiEDR与Fortinet Security Fabric集成,实现身份验证、防火墙、电子邮件等多层防护的共享情报与事件响应。

第三方与分析师验证

2025 SE Labs测试
2025防篡改认证
Fortinet SecOps Fabric ESG 经济验证报告
diagram analyst reports se labs fortiedr
FortiEDR在SE Labs测试中以100%防护率荣获AAA评级
Fortinet FortiEDR在SE Labs 2025高级安全测试中获得100%的总准确率评分,荣获权威的AAA评级。该测试模拟了来自Gamaredon和朝鲜等国家支持的高级持续性威胁组织的真实攻击,验证了其能够拦截所有定向威胁且零误报的能力。精准性、速度与实时响应能力,彰显其在防范复杂入侵事件升级前的强大实力。
阅读博文 »
diagram analyst reports av comparatives fortiedr
FortiEDR在2025年AV Comparatives测试中实现100%防篡改能力
在AV Comparatives的2025年反篡改测试中,Fortinet的FortiEDR成功拦截了100%的篡改企图。该认证验证了FortiEDR抵御入侵后干扰的能力,确保即使在攻击者控制下,防护机制仍能持续有效。凭借自主、防篡改的代理程序,FortiEDR专为实时防御端点而设计——无论威胁何种形式。
阅读博文 »
ESG Economic Validation: The Quantified Benefits of Fortinet Security Operations Solutions. Improved security team operational efficiency and reduced risk to the organization, each by up to 99%. Written by Aviv Kaufmann, Practice Director and Principal Economic Validation Analyst at Enterprise Strategy Group. January 2025
Fortinet 安全运营解决方案的量化优势
随着企业的不断发展、新技术的不断涌现以及网络犯罪分子持续引入更多复杂攻击,安全领导者及其团队在保护组织网络方面面临重重挑战。企业战略组(Enterprise Strategy Group)研究团队在最新发布的报告中,详细介绍了企业部署 Fortinet 安全运营解决方案后获得的诸多优势,包括提高运营效率和构建更有效的风险管理体系。
下载报告 »

Gartner Peer 用户真实评论

在Fortinet,客户始终是我们的首要关注点。我们很荣幸再次被评为2025年Gartner Peer Insights™终端防护平台客户之选。Fortinet在150条经验证的客户评价中(截至2025年1月)获得4.8分(满分5分)的评分及高达96%的推荐率,充分体现了我们对提供尖端安全解决方案的坚定承诺。 gartner customers choice 2025
★★★★★
FortiEDR: 实时威胁检测的可靠解决方案

FortiEDR是迄今为止的最佳选择,它展现出作为检测和预防恶意事件的可靠有效解决方案的实力。它与其他Fortinet产品的集成使其使用起来非常灵活且用途广泛。

— IT服务部信息安全与风险管理经理

★★★★★
Forti EDR 带来流畅体验:深入剖析其优势

我们在设备中部署了FortiEDR,其中包括运行Linux、Ubuntu和Windows操作系统的服务器。这是一个完整的解决方案,它能帮助我们保护设备安全,并提供设备使用可见性。

—  工程部软件工程师

★★★★★
Forti 终端检测和响应带来流畅体验:深入剖析其优势

我们在设备中部署了FortiEDR,其中包括运行Linux、Ubuntu和Windows操作系统的服务器。这是一个完整的解决方案,它能帮助我们保护设备安全,并提供设备使用状况的可见性。

—  工程部软件工程师

★★★★★
使用Fortinet的终端检测和响应进行高级威胁猎捕

终端检测和响应解决方案对已投资于 Fortinet 安全生态系统的组织尤为有益,因其能与其他 Fortinet 产品无缝集成,具备威胁检测能力,并提供集中式管理控制台。

— IT服务机构的IT服务高级经理

★★★★★
终端检测和响应领域性价比之选

安装简便,界面直观,且不会增加过多的处理器负载或内存占用。

— 零售业首席信息安全官

案例研究

City of Green Bay
City of Green Bay
From Patchwork to Partnership: Green Bay Strengthens Security with Fortinet
Majestic Resorts
Majestic Resorts
Caribbean Luxury Hotel Chain Builds an Optimized and Secure Wireless Infrastructure to Support Over 15,000 Simultaneous Device Connections
Consulting Services and SparkFound
Consulting Services and SparkFound
Fortinet SecOps Empowers Argentinian SOC Firm with Integrated, Proactive Security
FC Barcelona
FC Barcelona
How FC Barcelona Transformed Fan Experience with Fortinet Security Operations

型号与规格

FortiEDR 支持云端多租户管理功能。EDR 解决方案支持本地、云或混合部署,

FortiEDR 支持 Windows、MacOS 和 Linux 操作系统,并提供离线保护优势。

Windows
版本
XP SP2/SP3、7、8、8.1、10 和 11(32 位和 64 位版本)
Windows Server
版本
2003 SP2、R2 SP2、2008 SP2、2008 R2 SP1、2012、2012 R2、2016、2019、2022 及 2025
Google Cloud
版本
计算引擎部署和采购
MacOS
版本
埃尔卡皮坦(10.11)、塞拉(10.12)、高塞拉(10.13)、 莫哈韦(10.14)、卡塔利娜(10.15)、大苏尔(11.x)、蒙特雷(12.x)、文图拉(13.x)、索诺玛(14.x)和红杉(15.x)
Linux
版本
RedHat Enterprise Linux 和 CentOS 6.x、7.x 和 8.x;Ubuntu LTS 16.04.x、18.04.x、20.04.x Server;Oracle Linux 6.x+、7.7+ 和 8.2+(仅限 64 位);Amazon Linux AMI 2 SuSE SLES 15.1
虚拟桌面基础架构环境
版本
VMware Horizons 6 和 7 以及 Citrix XenDesktop 7
移动
版本
Android 9.0 及以上版本,iOS 15.0 及以上版本

FortiCare 支持和专业服务

Fortinet 致力于帮助广大用户赢得商业成功,FortiCare 服务每年助力成千上万的用户,充分挖掘现有产品和服务的投资潜力,实现价值最大化。为此,FortiCare 基于生命周期理念,为广大用户提供业内卓越的安全服务,助力用户持续拥抱商业成功。

Technical Support Services

技术支持服务

各种基于设备的选项支持高效操作。FortiCare Elite 选项为关键产品提供 15 分钟的响应时间。

Professional Services

专业服务

我们的多供应商专家可以设计和部署基于最佳实践的完整解决方案,帮助您实现网络或安全目标并采用新功能。

资源

技术参数表
分析报告
博文
电子书
信息图表
解决方案简报
视频
网络研讨会
白皮书
FortiXDR Endpoint Protection in the Google Cloud Security Ecosystem
FortiXDR Endpoint Protection in the Google Cloud Security Ecosystem »

FortiXDR's integration with Google Cloud, and how it enhances endpoint protection through advanced detection and response capabilities.

Massively Accelerate Time to Detect and Disrupt, Investigate and Remediate with the Fortinet Security Operations Solution
Massively Accelerate Time to Detect and Disrupt, Investigate and Remediate with the Fortinet Security Operations Solution »

Fortinet Security Operations Solution uses AI and advanced analytics to monitor activity across users, devices, networks, emails, applications, files, and logs and detect anomalous or malicious actions that humans may easily overlook.

How FortiEDR Checks Buyers’ Boxes
How FortiEDR Checks Buyers’ Boxes »

As organizations begin to evaluate new endpoint security platforms, they have various needs to fulfill and coinciding vendor solutions to those needs to choose from. This paper covers how FortiEDR helps customers check some of the common boxes between a global distribution of organizations of all sizes and from all verticals.

Integrating FortiEDR and FortiXDR with the Fortinet Security Fabric
Integrating FortiEDR and FortiXDR with the Fortinet Security Fabric »

When security teams struggle with limited visibility and inefficient operations, it can lead to potential security breaches. This solution brief shares how integrating FortiEDR and/or FortiXDR with the Fortinet Security Fabric and third-party solutions, can offer enhanced threat detection, automated response, and a unified cybersecurity approach. This holistic ecosystem facilitates rapid threat containment, reduces security gaps, and empowers businesses with comprehensive protection.

FortiEDR Integration with Google Cloud Security Command Center and Amazon GuardDuty
FortiEDR Integration with Google Cloud Security Command Center and Amazon GuardDuty »

With XDR solutions increasingly gaining adoption, the mission today for security vendors is to build their solution to ingest multiple data lakes of security data to SOLUTION BRIEF come closer to the concept of a self-healing ecosystem.

确保销售点系统的实时终端安全
确保销售点系统的实时终端安全 »

FortiEDR 帮助安全负责人在感染前和感染后保护 其 POS 终端,有效阻止高级恶意软件攻击和数据泄露风险,确保数据反窃取和系统业务完整性。

Protecting OT Infrastructures with Real-time, Automated Endpoint Security
Protecting OT Infrastructures with Real-time, Automated Endpoint Security »

Learn how manufacturing and critical infrastructure environment can protect their OT endpoints benefit from faster threat responses, automated actions, and avoiding disruptions to production activities.

Appleton Area School District Drastically Reduces Security Incidents
Appleton Area School District Drastically Reduces Security Incidents »

Appleton Area School District (AASD) is the sixth-largest school district in Wisconsin, catering to over 16,000 students. Learn how the district implemented the FortiMail solution to protect students and 2,500 staff and reduced security incidents by approximately 95%. AASD also implemented FortiEDR to improve endpoint management on devices. With Fortinet, the district has been able to dramatically improve its security posture and increase visibility of potential threats

Enhancing Security and Visibility to Protect Over 15,000 Students
Enhancing Security and Visibility to Protect Over 15,000 Students »

Del Mar College serves over 15,000 students and protecting their data and information is a top priority. Listen to how Del Mar College’s team consolidated on the Fortinet SecurityFabric and took advantage of the FortiEDR and FortiMail solutions. Since implementing the Fortinet Security Fabric Del Mar College has improved security and visibility while protecting their students and staff.

See How FortiEDR Detects and Defuses Lateral Movement
See How FortiEDR Detects and Defuses Lateral Movement »

Attacks are designed to land on the endpoint and travel laterally to other networks and drives. See how FortiEDR stops this type of movement using a real live malware sample.

Discussing the FortiEDR Collector and How it Works
Discussing the FortiEDR Collector and How it Works »

Within the Fortinet Security Operations platforms, we'll explore the functionality of the FortiEDR collector, specifically focusing on its operation with current and end-of-life legacy systems like Windows XP. Learn how it's installed, without reboot, and runs with a lightweight footprint.

Explore FortiEDR
Explore FortiEDR »

Explore the advanced capabilities of FortiEDR, Fortinet's Endpoint Security offering, which delivers simplified, real-time, and automated endpoint detection and response. It also offers orchestrated automated responses to policy violations for workstations, servers, and cloud workloads.

Consolidate Cybersecurity with Extended Detection and Response
Consolidate Cybersecurity with Extended Detection and Response »

Today, most companies are working to consolidate cybersecurity vendors and products into platforms whose components work together to boost the speed and accuracy of threat detection while improving the productivity of their security operations teams. One great use case is extended detection and response, which integrates, correlates, and contextualizes data and alerts from multiple security prevention, detection, and response components.

Bolster Endpoint Security and Defend Your Brand
Bolster Endpoint Security and Defend Your Brand »

Fortinet's FortiEDR protects workstations, servers, and virtual machines running in the cloud. Now available in Google Cloud Marketplace!

FortiEDR Advanced Endpoint Protection
FortiEDR Advanced Endpoint Protection »

See how FortiEDR detects and blocks ransomware and other file-less attacks to stop breaches in real time. It also reduces the attack surface and remotely remediates affected endpoints.

Meeting Today’s Modern Endpoint Security Requirements | FortiEDR
Meeting Today’s Modern Endpoint Security Requirements | FortiEDR »

Learn about today’s requirements for modern endpoint security, as well as the unique detect and defuse capability available from Fortinet, to reduce your cyber risk despite an industry-wide shortage of cybersecurity professionals. Prevent attacks by extending visibility and security across endpoints and workloads, no matter where they are.

How FortiXDR Integrates with Email
How FortiXDR Integrates with Email »

See how FortiXDR can integrate with email to detect attacks appearing via this threat vector.

How to Remediate Complex Threats with FortiEDR
How to Remediate Complex Threats with FortiEDR »

Watch how to manually remediate a threat with FortiEDR and search for other instances across other devices.

Ransomware Protection and Remediation | Endpoint Security
Ransomware Protection and Remediation | Endpoint Security »

Ransomware is a major concern for organizations and individuals alike. See how FortiEDR will protect against this threat and how we remediate the issue using the central management console.

生态系统

FortiEDR 支持与 Fortinet Security Fabric 安全平台及第三方解决方案无缝集成,可根据您创建的用户或设备组,构建自定义事件响应 Playbook。

培训和认证

Fortinet 认证专业人员 - 安全运营
In this two-day class, you will learn how to use FortiEDR to protect your endpoints against advanced attacks with real-time orchestrated incident response functionality.

预约产品演示

专属的个性化演示,带您深入探索修复指导与自动事件响应的强大优势

演示内容:

  • 实时威胁管理的现场演示
  • 引导设置安全策略和模拟
  • 威胁狩猎和威胁防护 Playbook 自动化概述

FortiEDR 新闻资讯

Note for Gartner Peer Insights: Reviews from vendor partners or end users of companies with less than $50M in revenue are excluded from this methodology. See the full “Voice of the Customer” methodology.

Gartner, Voice of the Customer for Endpoint Protection Platform, 23 May 2025. Gartner, Peer Insights™ and The Gartner Peer Insights Customers’ Choice badge are trademarks of Gartner, Inc., and/or its affiliates, and is used herein with permission. All rights reserved. Gartner Peer Insights content consists of the opinions of individual end users based on their own experiences with the vendors listed on the platform, should not be construed as statements of fact, nor do they represent the views of Gartner or its affiliates. Gartner does not endorse any vendor, product or service depicted in this content nor makes any warranties, expressed or implied, with respect to this content, about its accuracy or completeness, including any warranties of merchantability or fitness for a particular purpose.