aricoma logo avatar

#1 in Enterprise IT

COMPAS Automation modernizes network infrastructure and enhances cybersecurity with Fortinet

Modernization of network infrastructure and security features enabled COMPAS Automation to switch to centralized management, simplify IT operations, and significantly increase protection for endpoints and the entire network.

Realization during 2024

aricoma avatar

Customer profile

Compas Automatizace, based in Žďár nad Sázavou with branches in Prague and Brno, is one of the leading Czech engineering and supply companies in the field of production technology automation and production information systems. It operates mainly in the food, pharmaceuticals, chemical, and automotive industries. Its customers include major Czech and international companies with production plants in the Czech Republic and the EU.

We have been working with Aricoma for many years, so inviting them to help us with the project to deploy new network technologies was a no-brainer. From the very beginning of the project, it was clear that Aricoma had real experts on their team who could handle even the most challenging situations and guide us through the entire implementation project with flying colors.

Jiří Hronek

ICT manager

Starting point, project objectives

We have been working with COMPAS Automatizace for more than ten years and have built a strong partnership during that time. COMPAS is one of our VIP customers, and one of our most recent joint projects was an extensive modernization of their IT infrastructure. Based on a series of consultations and detailed mapping of their needs, we prepared a comprehensive solution for the delivery and implementation of network and security technologies from Fortinet.

The original network infrastructure was nearing end-of-life. Manufacturer support was ending, and it no longer met current security standards. The central firewall, core and access switches, and wireless access points needed to be replaced. A key requirement was the ability to centrally manage the entire network and easily control security policies, configurations, and updates from a single place.. The customer also needed more advanced traffic analysis, clear reports, and centralized log collection from the deployed technologies. At the same time, the question of whether to extend the existing antivirus and security solution for end stations or replace it with a more modern system was also addressed.

The goal of the project was to deploy modern hardware and technologies in line with current trends in network infrastructure, with a strong emphasis on cybersecurity and unified, centralized management of the entire network.

Benefits

  • Unification of all network and security elements with a single supplier (Fortinet)
  • Centralized management of all supplied technologies using FortiManager
  • A more secure hybrid environment and more efficient day-to-day IT operations
  • Detailed overview of connected devices in the local network and automatic response to incidents
  • Increased endpoint protection and overall strengthening of cybersecurity

Solution description

The modernization took place gradually throughout 2024. The basis of the new infrastructure was the deployment of FortiGate firewalls in high availability (HA) mode, which ensured greater reliability and security. At the same time, we also replaced key network elements. We implemented modern 25Gbps core switches of the FS-2048 series, supplemented them with FS-148 end switches, and completely renewed the wireless network with new FortiAP access points.

We built on this layer by implementing FortiAnalyzer, which ensures effective collection and evaluation of logs from the entire infrastructure. Thanks to FortiManager, network management has been unified into a single central tool. The IT team now has full control over configurations and security policies from a single location.

The project also included the deployment of FortiClients on all endpoints and their central management using FortiEMS. This provided the customer with advanced antivirus, firewall, sandbox, and quarantine in a single client, as well as secure remote access thanks to Zero Trust Network Access (ZTNA) principles.

For maximum visibility and control over connected devices, we also used the FortiNAC solution. This allows the IT team to quickly identify all devices on the network and automatically respond to any security incidents.

Used technologies

  • FortiGate
  • FortiSwitch
  • FortiAP
  • FortiEMS/FortiClient
  • FortiManager
  • FortiAnalyzer
  • FortiAuthenticator

Share

DO NOT HESITATE TO
CONTACT US

Are you interested in more information or an offer for your specific situation?

By submitting the form, I declare that I have familiarized myself with the information on the processing of personal data in ARICOMA.