Success Story · Cybersecurity

Impenetrable Security Perimeter for Critical Operations

A defense sector institution with technology operations distributed across multiple commands needed to strengthen its perimeter security and ensure the operational continuity of its command and control systems. Infodataserv designed and implemented the Fortinet solution that protects the confidentiality and integrity of its operations.

Defense Sector · National
Quito, Pichincha · 2018
Fortinet UTM · FortiAP · FortiWifi
Perimeter Security Architecture
External Network / InternetWAN
Fortinet UTM — Firewall + IPS + VPNFortinet 300C
Secure WiFi — FortiAP + FortiWifiEncrypted
Internal Network — Operational CommandsC3I2
Command and Control SystemsProtected
Operational and monitored perimeter
Devices Deployed
3 devices
Fortinet 300C · FortiAP 210B · FortiWifi F60
Project Objectives
2 goals
Perimeter Security + Operational Continuity Guaranteed
Coverage
Multi-site
Interconnected operational commands, DIRNEA, and COIMC
Deployment
On-site
Design, implementation, hardening, and on-site support

Command and control systems requiring the highest level of protection

An institution within Ecuador's defense sector operates a set of critical technology systems — including a command and control system distributed across multiple operational commands — whose availability, confidentiality, and integrity are non-negotiable requirements for fulfilling its institutional mission.

The existing network infrastructure required a robust perimeter security layer that would unify protection against external threats, ensure secure WiFi connectivity for internal users, and guarantee operational continuity in the event of any technological incident or failure.

Required protection scope: the solution had to cover the technological nodes of the command and control system, operational commands, the National Directorate of the Navy (DIRNEA), and the Military Industries Command (COIMC), all interconnected through a unified secure network.

Four security gaps that compromised institutional operations

Perimeter without unified security protection

Critical systems lacked a centralized UTM solution capable of preventing, detecting, and responding to cyber threats at the institutional network perimeter.

Wireless connectivity without access control

The WiFi network operated without adequate authentication, segmentation, or encryption mechanisms for an environment handling sensitive operational information.

Operational continuity without a defined backup strategy

There were no formal high-availability, backup, and recovery mechanisms to ensure uninterrupted operation of technology services in the event of failures.

Insufficient network monitoring and visibility

The institution lacked proactive network traffic monitoring capabilities and the ability to generate alerts for anomalous behavior or intrusion attempts.

Two strategic objectives with rigorous functional validation

The project was structured around two clear objectives, each validated through specific functional tests before final delivery to the customer.

1
Strengthen perimeter security for the command and control system

Strengthen perimeter protection through preventive, detection, and response controls that mitigate cyber risks, ensure service availability, and protect the confidentiality and integrity of military operational information.

2
Guarantee operational continuity of technology services

Implement high-availability, backup, recovery, and monitoring mechanisms to ensure uninterrupted operation of all technology services in the event of failures, incidents, or unforeseen events within the institution.

Testing that certified the operability of every component

Infodataserv executed a functional testing protocol for each deployed device and for the system's critical services, verifying integration, security, and operational continuity before formal delivery.

Tests performed and results confirmed

Fortinet 300C functionality validated
FortiAP 210B functional tests successfully completed
FortiWifi F60 testing completed
Device integration tests passed
Perimeter security tests passed
Operational continuity verified
Successful backups and validated restoration
Active monitoring and operational alerts

Three Fortinet devices forming the perimeter security shield

The solution was designed using Fortinet hardware selected by Infodataserv based on the performance, user capacity, and geographic coverage requirements of each institutional location. The implementation included hardening configuration, on-site technical support, and continuous monitoring.

DevicePrimary FunctionCoverage
Fortinet 300C UTM — Firewall · IPS · VPN · Application Control · Web Filtering Main institutional network perimeter
FortiAP 210B Access Point — Enterprise WiFi access point with secure authentication Wireless coverage in operational areas
FortiWifi F60 UTM + WiFi — Integrated perimeter security with wireless connectivity Secondary sites and remote nodes

Security engineering executed entirely by Infodataserv

Unlike other projects where Infodataserv collaborates with technology partners, this project was executed entirely by Infodataserv's hardware and cybersecurity specialist team, with the customer serving as the key user for functional validation.

IDS
Fortinet Hardware Specialists Infodataserv · Solution design and implementation
IDS
Perimeter Security Engineering Infodataserv · Configuration, hardening, and support
IDS
Continuous Monitoring and Management Infodataserv · Post-implementation monitoring
CLI
Institutional Key User Defense Sector · Functional and operational validation

A hardened perimeter that keeps institutional missions operational

At the close of the project, the institution had a validated perimeter security architecture capable of preventing, detecting, and responding to cyber threats — with all critical technology services protected by formal business continuity mechanisms.

Strengthened and certified perimeter

The command and control system operates under a unified UTM layer that protects the perimeter against external and internal threats, with preventive, detection, and response capabilities.

Secure institutional WiFi

Wireless connectivity with controlled authentication, encryption, and network segmentation, eliminating risks associated with unauthorized wireless access.

Guaranteed operational continuity

High-availability, backup, and recovery mechanisms ensure that technology services remain available in the event of failures or unforeseen incidents.

Active monitoring and alerts

Complete visibility into network traffic with proactive alerts for anomalous behavior, giving the IT team immediate response capabilities.

Hardening and robust configuration

Each device was configured according to hardening standards that reduce the attack surface and establish security policies aligned with institutional requirements.

Secure multi-command network

The command and control system nodes, DIRNEA, and COIMC are interconnected through a secure network that preserves the confidentiality and integrity of operations.

Other Infodataserv projects

View all