Fortinet FortiGate
Next Generation Firewall
Fortinet security appliances provide comprehensive threat protection against network-level attacks. FortiGate’s Next Generation Firewalls (NGFW) are optimized for internal segmentation, perimeter, cloud, data center, distributed and small business deployment. With exceptional throughput, low latency and multi-vector protection you can rely on Fortigate devices to deliver the scalability, flexibility, and reliability needed for your network.
At JSCM Group, we understand that every network is different. That's why we've continued to grow our expertise and offerings to include Fortinet FortiGate Next Generation Firewall support. FortiGate NGFW is available in many different models to meet your needs ranging from entry-level hardware appliances to ultra high-end appliances to meet the most demanding threat protection performance requirements. This ensures that enterprise campus, core data-center, or internal segments, FortiGate can fit seamlessly into your environment. Contact us to see about our competitive pricing.
FortiGate Firewall Features
High-Performance Threat Protection
Validated Security Effectiveness
Protect Mission Critical Applications
Continuous Risk Assessment via Automation
Security Fabric Integration
Enterprise Class Security Management
Our highly knowledgable and experienced staff are ready and able to assist you with protecting your network for ransomware, malware, and all manner of intrusions. We offer our expertise during every step of your firewall purchasing and configuration process.
Competitive Fortinet Pricing
Deployment
Configuration
Troubleshooting
Management
Network Protection
FORTINET FortiGate Entry-Level
Next-Generation Firewalls
FortiGate entry-level next-generation firewalls are best-in-class network security appliances that consolidate advanced security and networking capabilities to protect against cyber-attacks in a compact and affordable solution. Built-in SD-WAN capabilities enable enterprise branches to dynamically distribute traffic across multiple locations to enable cloud and digital transformation. For easier management, FortiCloud offers zero-touch deployment, cloud management, extended logging, and configuration options for FortiGate entry-level appliances. Its single-pane-of-glass management can be use with one or multiple security appliances.
FortiGate/FortiWiFi 30E Series
FortiGate 30E, FortiWiFi 30E
Threat Protection
150 Mbps
SSL Throughput Inspection
160 Mbps
Network Interfaces
Multiple GE RJ45, WiFi Variants
Hardware Specifications
GE RJ45 Switch Ports: 4
GE RJ45 WAN Port: 1
USB Port: 1
Console (RJ45): 1
Wireless Interface: 802.11 a/b/g/n
System Performance - Enterprise
Traffic Mix
IPS Throughput: 300 Mbps
NGFW Throughput: 200 Mbps
Threat Protection Throughput: 150 Mbps
System Performance
Firewall Throughput: 950 Mbps
Firewall Latency
(64 byte UDP packets): 130 μs
Firewall Throughput (Packets Per Second): 180 Kpps Concurrent Sessions
(TCP): 900,000
New Sessions/Second (TCP): 15,000
Firewall Policies: 5,000
IPsec VPN Throughput (512 byte): 75 Mbps
Gateway-to-Gateway IPsec VPN Tunnels: 200
Client-to-Gateway IPsec VPN Tunnels: 250
SSL-VPN Throughput: 35 Mbps
Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode): 80
SSL Inspection Throughput (IPS, avg.
HTTPS): 125 Mbps
SSL Inspection CPS (IPS, avg. HTTPS): 120
SSL Inspection Concurrent Session (IPS, avg. HTTPS): 45,000 Application Control Throughput (HTTP 64K): 400 Mbps
CAPWAP Throughput (HTTP 64K): 850 Mbps
Virtual Domains (Default / Maximum): 5/5
Maximum Number of Switches Supported: 8
Maximum Number of FortiAPs (Total / Tunnel Mode): 2/2 Maximum Number of
FortiTokens: 20
Maximum Number of Registered
FortiClients: 200
High Availability Configurations: Active/Active, Active/Passive, Clustering
FortiGate/FortiWiFi 50E Series
FortiGate 50E, FortiWiFi 50E/-2R, FortiGate/FortiWiFi 51E and FortiGate 52E
Threat Protection
160 Mbps
SSL Throughput Inspection
185 Mbps
Network Interfaces
Multiple GE RJ45, WiFi Variants, Variants with dual radios, Variants with internal storage
Hardware Specifications
GE RJ45 Switch Ports: 5
GE RJ45 WAN Ports: 2
USB Ports: 1
Console (RJ45): 1
Wireless Interface: FWF-50E: 802.11 a/b/g/n; FWF-50E-2R: dual radio, 802.11 a/b/g/n/ac; FWF-51E: 802.11 a/b/g/n
Internal Storage: FG-51E: 1x 32 GB SSD;
FWF-51E: 1x 32 GB SSD;
FG-52E: 2x 32 GB SSD
System Performance - Enterprise
Traffic Mix
IPS Throughput: 350 Mbps
NGFW Throughput: 220 Mbps
Threat Protection Throughput: 160 Mbps
System Performance
Firewall Throughput: 2.5 Gbps
Firewall Latency
(64 byte UDP packets): 180 μs
Firewall Throughput
(Packets Per Second): 375 Kpps
Concurrent Sessions (TCP): 1.8 Million
New Sessions/Second (TCP): 21,000
Firewall Policies: 5,000
IPsec VPN Throughput (512 byte): 90 Mbps
Gateway-to-Gateway IPsec VPN Tunnels: 200
Client-to-Gateway IPsec VPN Tunnels: 250
SSL-VPN Throughput: 100 Mbps
Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode): 80
SSL Inspection Throughput
(IPS, avg. HTTPS): 150 Mbps
SSL Inspection CPS (IPS, avg. HTTPS): 140
SSL Inspection Concurrent Session (IPS, avg. HTTPS): 75,000 Application Control Throughput (HTTP 64K): 450 Mbps
CAPWAP Throughput (HTTP 64K): 1.2 Gbps
Virtual Domains (Default / Maximum): 5/5
Maximum Number of Switches Supported: 8
Maximum Number of FortiAPs (Total / Tunnel Mode): 10/5
Maximum Number of FortiTokens: 100
Maximum Number of Registered
FortiClients: 200
High Availability Configurations: Active/Active, Active/Passive, Clustering
FortiGate/FortiWiFi 60E Series
FortiGate 60E, 60E-POE, FortiWiFi 60E, FortiGate 61E and FortiWiFi 61E
Threat Protection
200 Mbps
SSL Throughput Inspection
175 Mbps
Network Interfaces
Multiple GE RJ45, WiFi variants, Variants with internal storage, Variants with PoE/+ interfaces
Hardware Specifications
GE RJ45 WAN / DMZ Ports: FortiGate 60E: 2/1; FortiGate 60E-POE: 2; FortiWiFi 60E: 2/1; FortiGate 61E: 2/1; FortiWiFi 61E: 2/1
GE RJ45 Internal Ports: FortiGate 60E: 7; FortiWiFi 60E: 7;
FortiGate 61E: 7; FortiWiFi 61E: 7
GE RJ45 PoE/+ Ports: FortiGate 60E-POE: 8
Wireless Interfac: FortiWiFi 60E: 802.11 a/b/g/n/ac;
FortiWiFi 61E: 802.11 a/b/g/n/ac
USB Ports: 1
Internal Storage: FortiGate 61E: 7;
FortiWiFi 61E: 7
System Performance - Enterprise
Traffic Mix
IPS Throughput: 400 Mbps
NGFW Throughput: 250 Mbps
Threat Protection Throughput: 200 Mbps
System Performance
Firewall Throughput (1518 / 512 / 64 byte UDP packets): 3/3/3 Gbps
Firewall Latency (64 byte UDP packets): 3 μs
Firewall Throughput
(Packets Per Second): 4.5 Mpps
Concurrent Sessions (TCP): 1.3 Million
New Sessions/Second (TCP): 30,000
Firewall Policies: 5,000
IPsec VPN Throughput (512 byte): 2 Gbps
Gateway-to-Gateway IPsec VPN Tunnels: 200
Client-to-Gateway IPsec VPN Tunnels: 500
SSL-VPN Throughput: 150 Mbps
Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode): 100
SSL Inspection Throughput (IPS, avg.
HTTPS): 135 Mbps
SSL Inspection CPS (IPS, avg. HTTPS): 135
SSL Inspection Concurrent Session (IPS, avg. HTTPS): 75,000 Application Control Throughput (HTTP 64K): 650 Mbps
CAPWAP Throughput (HTTP 64K): 890 Mbps
Virtual Domains (Default / Maximum): 10/10
Maximum Number of Switches Supported: 8
Maximum Number of FortiAPs (Total/Tunnel Mode): 30/10
Maximum Number of FortiTokens: 100
Maximum Number of Registered
FortiClients: 200
High Availability Configurations: Active/Active, Active/Passive, Clustering
FortiGate® 80E Series
FortiGate 80E, 80E-POE, 81E and 81E-POE
Threat Protection
250 Mbps
SSL Inspection Throughput
180 Mbps
Network Interfaces
Multiple GE RJ45, Varients with internal storage, Variants with PoE/+ interfaces
Hardware Specifications
GE RJ45/SFP Shared Media Pairs: FortiGate 80E: 2;
FortiGate 80E-POE: 2; FortiGate 81E: 2;
FortiGate 81E-POE: 2
GE RJ45 Ports: FortiGate 80E: 12; FortiGate 81E: 12; GE RJ45 PoE/+ Ports:
FortiGate 80E-POE: 12;
FortiGate 81E-POE: 12
GE RJ45 DMZ/HA Ports: 2
USB Ports: 1
Console (RJ45): 1
Internal Storage: FortiGate 81E: 1x 128 GB SSD; FortiGate 81E-POE: 1x 128 GB SSD
System Performance - Enterprise
Traffic Mix
IPS Throughput: 450 Mbps
NGFW Throughput: 360 Mbps
Threat Protection Throughput: 250 Mbps
System Performance
Firewall Throughput (1518 / 512 / 64 byte UDP packets): 4/4/4 Gbps
Firewall Latency (64 byte UDP packets): 3 μs
Firewall Throughput
(Packets Per Second): 6 Mpps
Concurrent Sessions (TCP): 1.3 Million
New Sessions/Second (TCP): 30,000
Firewall Policies: 5,000
IPsec VPN Throughput (512 byte): 2.5 Gbps
Gateway-to-Gateway IPsec VPN Tunnels: 200
Client-to-Gateway IPsec VPN Tunnels: 2,500
SSL-VPN Throughput: 200 Mbps
Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode): 200
SSL Inspection Throughput (IPS, avg.
HTTPS): 135 Mbps
SSL Inspection CPS (IPS, avg. HTTPS): 135
SSL Inspection Concurrent Session (IPS, avg. HTTPS): 95,000 Application Control Throughput (HTTP 64K): 900 Mbps
CAPWAP Throughput (HTTP 64K): 920 Mbps
Virtual Domains (Default / Maximum): 10/10
Maximum Number of Switches Supported: 8
Maximum Number of FortiAPs (Total/Tunnel Mode): 32/16
Maximum Number of FortiTokens: 100
Maximum Number of Registered
FortiClients: 200
High Availability Configurations: Active/Active, Active/Passive, Clustering
FortiGate 90E
Threat Protection
270 Mbps
SSL Inspection Throughput
300 Mbps
Network Interfaces
Multiple GE RJ45, WiFi Variants
Hardware Specifications
GE RJ45 Ports: 16
USB Ports: 1
Console (RJ45): 1
Internal Storage : —
System Performance - Enterprise
Traffic Mix
IPS Throughput: 1 Gbps
System Performance - Enterprise
Traffic Mix
IPS Throughput: 470 Mbps
NGFW Throughput: 375 Mbps
Threat Protection Throughput: 270 Mbps
System Performance
Firewall Throughput: 4 Gbps
Firewall Latency
(64 byte UDP packets): 182 μs
Firewall Throughput
(Packets Per Second): 375 Kpps
Concurrent Sessions (TCP): 1.2 Million
New Sessions/Second (TCP): 27,500
Firewall Policies: 5,000
IPsec VPN Throughput (512 byte): 245 Mbps
Gateway-to-Gateway IPsec VPN Tunnels: 200
Client-to-Gateway IPsec VPN Tunnels: 2,500
SSL-VPN Throughput: 95 Mbps
Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode): 200
SSL Inspection Throughput (IPS, HTTPS):
300 Mbps
Application Control Throughput: 510 Mbps
CAPWAP Throughput (HTTP 64K): 950 Mbps
Virtual Domains (Default / Maximum): 10/10
Maximum Number of Switches Supported: 8
Maximum Number of FortiAPs (Total / Tunnel Mode): 32/16
Maximum Number of FortiTokens: 100
Maximum Number of Registered
FortiClients: 200
High Availability Configurations: Active/Active, Active/Passive, Clustering
FORTINET FortiGate Rugged Series
While traditional security solutions are designed and intended for the world of offices and corporations, the FortiGate Rugged Series offers industrially-hardened, all-in-one security appliance that delivers specialized threat protection for securing critical industrial and control networks against malicious attacks.
FGR-30D - Ruggedized compact security appliance with DIN mounting kit
FGR-35D - Security appliance with IP67 rating for outdoor environment
FGR-60D - SPU SoC Powered, high performance security and VPN gateway
FGR-90D - Robust ruggedized security appliance with wide operating temperature
Interfaces and Modules
GE RJ45 Interfaces: FGR-30D: 4; FGR-35D: 3;
FGR-60D: 4; FGR-90D: 3
GE RJ45 Bypass Pair: FGR-90D: 1
GE SFP Slots: FGR-30D: 2; FGR-90D: 2
Shared Media Pairs (GE RJ45/GE SFP):
FGR-60D: 2
USB (Client/Server): FGR-30D: 1; FGR-60D: 1/1; FGR-90D: 1
RJ45 Console Port: FGR-60D: 1
Included Transceivers: None
System Performance - Optimal
Traffic Mix
IPS Throughput: FGR-30D, FGR-35D: 230 Mbps;
FGR-60D: 200 Mbps; FGR-90D: 1.1 Gbps
System Performance - Enterprise
Traffic Mix
IPS Throughput: FGR-30D: 180 Mbps; FGR-35D: 210 Mbps
FGR-60D: 95 Mbps; FGR-90D: 350 Mbps
NGFW Throughput: FGR-30D: 45 Mbps; FGR-35D: 65 Mbps;
FGR-60D: 40 Mbps; FGR-90D: 370 Mbps
Threat Protection Throughput: FGR-30D, FGR-35D: 16 Mbps;
FGR-60D: 23 Mbps; FGR-90D: 280 Mbps
System Performance and Capacity
IPv4 Firewall Throughput (1518 UDP): FGR-30D: 900 Mbps; FGR-35D: 550 Mbps; FGR-60D: 1.5 Gbps; FGR-90D: 2 Gbps
Firewall Latency (64 byte, UDP):
FGR-30D: 70 μs;
FGR-35D: 90 μs; FGR-60D: 4 μs;
FGR-90D: 51 μs
Firewall Throughput (Packets Per Second): FGR-30D: 87 Kpps; FGR-35D: 52.5 Kpps; FGR-60D: 2.2 Mpps; FGR-90D: 84 Kpps
Concurrent Sessions (TCP): FGR-30D;
FGR-35D: 750,000;
FGR-60D: 500,000; FGR-90D: 2.5 Million
New Sessions/Second (TCP): FGR-30D;
FGR-35D: 5,000;
FGR-60D: 4,000; FGR-90D: 20,000
Firewall Policies: 5,000
IPsec VPN Throughput (512 byte): FGR-30D, FGR-35D: 45 Mbps; FGR-60D: 1 Gbps;
FGR-90D: 84 Mbps
Gateway-to-Gateway IPsec VPN Tunnels: 200
Client-to-Gateway IPsec VPN Tunnels: FGR-30D, FGR-35D: 250; FGR-60D: 500;
FGR-90D: 1,000
SSL-VPN Throughput: FGR-30D,
FGR-35D: 25 Mbps;
FGR-60D: 30 Mbps; FGR-90D: 115 Mbps
Concurrent SSL-VPN Users (Recommended Maximum): FGR-30D, FGR-35D: 80; FGR-60D: 100; FGR-90D: 200
SSL Inspection Throughput
(IPS, avg. HTTPS): FGR-30D: 50 Mbps; FGR-35D: 55 Mbps;
FGR-60D: 15 Mbps; FGR-90D: 85 Mbps
SSL Inspection CPS (IPS, avg. HTTPS):
FGR-30D, FGR-35D: 75; FGR-60D: 20;
FGR-90D: 70
SSL Inspection Concurrent Session (IPS, avg. HTTPS): FGR-30D, FGR-35D: 45,000;
FGR-60D: 15,000; FGR-90D: 72,000
Application Control Throughput
(HTTP 64K): FGR-30D: 210 Mbps; FGR-35D: 230 Mbps; FGR-60D: 95 Mbps;
FGR-90D: 440 Mbps
Virtual Domains (Default/Maximum): FGR-30D, FGR-35D: 5/5;
FGR-60D, FGR-90D: 10/10
Maximum Number of FortiAPs (Total/Tunnel):
FGR-30D, FGR-35D: 2/2;
FGR-60D: 10/5; FGR-90D: 32/16
Maximum Number of FortiTokens:
FGR-30D, FGR-35D: 20;
FGR-60D, FGR-90D: 100
Maximum Number of Registered
FortiClients: 200
High Availability Configurations:
Active-Active, Active-Passive, Clustering
FORTINET FortiGate Mid-Range
Next-Generation Firewalls
The FortiGate 100E series delivers next generation firewall capabilities for mid-sized to large enterprises, with the flexibility to be deployed at the campus or enterprise branch. Protect against cyber threats with security processor powered high performance, security efficacy and deep visibility.
FortiGate 100E Series
FortiGate 100E, 101E, 100EF, 140E and 140E-POE
Threat Protection
250 Mbps
SSL Throughput Inspection
190 Mbps
Network Interfaces
Multiple GE RJ45, GE SFP Slots | PoE/+ Variants
Hardware Specifications
GE RJ45 Ports: FortiGate 100E,
FortiGate 101E: 14;
FortiGate 100EF: 8; FortiGate 140E: 38;
FortiGate 140E-POE: 14
GE RJ45 Management/HA/DMZ Ports: FortiGate 100E, FortiGate 101E, FortiGate 100EF: 1/2/1; FortiGate 140E, FortiGate 140E-POE: 1/1/-
GE SFP Slots: FortiGate 100E,
FortiGate 101E: -;
FortiGate 100EF: 8; FortiGate 140E: 2;
FortiGate 140E-POE: 2
GE RJ45 PoE/+ Ports:
FortiGate 140E-POE: 24
GE RJ45 WAN Ports: 2
GE RJ45 or SFP Shared Ports: FortiGate 100E, FortiGate 101E: 2
USB Port: 1
Console Port: 1
Internal Storage:
FortiGate 101E: 1x 480 GB SSD
Included Transceivers: 0
System Performance - Enterprise
Traffic Mix
IPS Throughput: 500 Mbps
NGFW Throughput: 360 Mbps
Threat Protection Throughput: 250 Mbps
System Performance
Firewall Throughput (1518/512/64 byte UDP packets): 7.4/7.4/4.4 Gbps
Firewall Latency (64 byte UDP packets): 3 μs Firewall Throughput
(Packets Per Second): 6.6 Mpps
Concurrent Sessions (TCP): 2
Million New Sessions/Second (TCP): 30,000
Firewall Policies: 10,000
IPsec VPN Throughput (512 byte): 4 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 2,000
Client-to-Gateway IPsec VPN Tunnels: 10,000
SSL-VPN Throughput: 250 Mbps
Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode): 300
SSL Inspection Throughput (IPS, avg.
HTTPS): 130 Mbps
SSL Inspection CPS (IPS, avg. HTTPS): 130
SSL Inspection Concurrent Session (IPS, avg. HTTPS): 125,000
Application Control Throughput
(HTTP 64K): 1 Gbps
CAPWAP Throughput
(1444 byte, UDP): 1.5 Gbps
Virtual Domains (Default / Maximum): 10/10
Maximum Number of Switches Supported: 24
Maximum Number of FortiAPs
(Total/Tunnel Mode): 64/32
Maximum Number of FortiTokens: 1,000
Maximum Number of Registered
FortiClients 600
High Availability Configurations: Active/Active, Active/Passive, Clustering
FortiGate 200E Series
FortiGate 200E and 201E
Threat Protection
1.2 Gbps
SSL Throughput Inspection
1 Gbps
Network Interfaces
Multiple GE RJ45, GE SFP Slots
Hardware Specifications
GE RJ45 WAN Interfaces: 2
GE RJ45 Management/HA Ports: 2
GE RJ45 Ports: 14
GE SFP Slots: 4
USB port: 1
Console (RJ45): 1
Local Storage:
FortiGate 200E: —
FortiGate 201E: 1x 480 GB SSD
Included Transceivers: 0
System Performance - Enterprise
Traffic Mix
IPS Throughput: 2.2 Gbps
NGFW Throughput: 1.8 Gbps
Threat Protection Throughput: 1.2 Gbps
System Performance
Firewall Throughput (1518/512/64 byte UDP packets): 20/20/9 Gbps
Firewall Latency (64 byte UDP packets): 3 μs Firewall Throughput
(Packets Per Second): 13.5 Mpps
Concurrent Sessions (TCP): 2 Million
New Sessions/Second (TCP): 135,000
Firewall Policies: 10,000
IPsec VPN Throughput (512 byte): 9 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 2,000
Client-to-Gateway IPsec VPN Tunnels: 10,000
SSL-VPN Throughput: 900 Mbps
Concurrent SSL-VPN Users
(Recommended Maximum, Tunnel Mode): 300
SSL Inspection Throughput
(IPS, avg. HTTPS): 820 Mbps
SSL Inspection CPS (IPS, avg. HTTPS): 1,000
SSL Inspection Concurrent Session (IPS, avg. HTTPS): 240,000 Application Control Throughput (HTTP 64K): 3.5 Gbps
CAPWAP Throughput
(1444 byte, UDP): 1.5 Gbps
Virtual Domains (Default / Maximum): 10/10
Maximum Number of Switches Supported: 24
Maximum Number of FortiAPs (Total/Tunnel Mode): 128/64
Maximum Number of FortiTokens: 1,000
Maximum Number of Registered
FortiClients: 600
High Availability Configurations: Active/Active, Active/Passive, Clustering
FortiGate 300E Series
FortiGate 300E and 301E
Threat Protection
3 Gbps
SSL Throughput Inspection
6.8 Gbps
Network Interfaces
Multiple GE RJ45 and GE SFP Slots
Hardware Specifications
GE RJ45 Interfaces: 16
GE SFP Slots: 16
GE RJ45 Management Ports: 2
USB Ports: 2
RJ45 Console Port: 1
Local Storage:
FortiGate 300E: NIL
FortiGate 301E: 2x 240 GB SSD
Included Transceivers: 2x SFP (SX 1 GE)
System Performance - Enterprise
Traffic Mix
IPS Throughput: 5 Gbps
NGFW Throughput: 3.5 Gbps
Threat Protection Throughput: 3 Gbps
System Performance
IPv4 Firewall Throughput
(1518/512/64 byte, UDP): 32/32/20 Gbps
IPv6 Firewall Throughput
(1518/512/64 byte, UDP): 32/32/20 Gbps
Firewall Latency (64 byte, UDP): 3 μs
Firewall Throughput
(Packet per Second):
30 Mpps
Concurrent Sessions (TCP): 4 Million
New Sessions/Second (TCP): 300,000
Firewall Policies: 10,000
IPsec VPN Throughput (512 byte): 20 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 2,000
Client-to-Gateway IPsec VPN
Tunnels: 50,000
SSL-VPN Throughput: 2.5 Gbps
Concurrent SSL-VPN Users
(Recommended Maximum, Tunnel Mode): 500
SSL Inspection Throughput (IPS, avg.
HTTPS): 3.9 Gbps
SSL Inspection CPS (IPS, avg. HTTPS): 2,500
SSL Inspection Concurrent Session
(IPS, avg. HTTPS): 340,000
Application Control Throughput
(HTTP 64K): 7 Gbps
CAPWAP Throughput (1444 byte,
UDP): 5 Gbps
Virtual Domains (Default / Maximum): 10/10
Maximum Number of Switches Supported: 48
Maximum Number of FortiAPs (Total / Tunnel): 512/256
Maximum Number of FortiTokens: 1,000
Maximum Number of Registered
Endpoints: 600
High Availability Configurations:
Active-Active, Active-Passive, Clustering
FortiGate 500E Series
FortiGate 500E and 501E
Threat Protection
4.7 Gbps
SSL Inspection Throughput
6.8 Gbps
Network Interfaces
Multiple GE RJ45, GE SFP and 10 GE SFP+ Slots
Hardware Specifications
10 GE SFP+ Slots 2
GE RJ45 Interfaces 8
GE SFP Slots 8
GE RJ45 Management Ports 2
USB Ports 2
RJ45 Console Port 1
Local Storage - FortiGate 500E: NIL
FortiGate 501E: 2x 240 GB SSD
Included Transceivers: 2x SFP (SX 1 GE)
System Performance - Enterprise
Traffic Mix
IPS Throughput: 5.2 Gbps
NGFW Throughput: 5 Gbps
Threat Protection Throughput: 4.7 Gbps
System Performance
IPv4 Firewall Throughput
(1518/512/64 byte, UDP): 36/36/22 Gbps
IPv6 Firewall Throughput
(1518/512/64 byte, UDP): 36/36/22 Gbps
Firewall Latency (64 byte, UDP): 2 μs
Firewall Throughput
(Packet per Second): 33 Mpps
Concurrent Sessions (TCP): 8 Million
New Sessions/Second (TCP): 300,000
Firewall Policies: 10,000
IPsec VPN Throughput (512 byte): 20 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 2,000
Client-to-Gateway IPsec VPN
Tunnels: 50,000
SSL-VPN Throughput: 5
Gbps Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode): 500
SSL Inspection Throughput (IPS, avg.
HTTPS): 5.7 Gbps
SSL Inspection CPS (IPS, avg. HTTPS): 3,500
SSL Inspection Concurrent Session (IPS, avg. HTTPS): 800,000 Application Control Throughput (HTTP 64K): 14 Gbps
CAPWAP Throughput (1444 byte,
UDP): 18 Gbps
Virtual Domains (Default / Maximum) 10/10
Maximum Number of Switches Supported 48
Maximum Number of FortiAPs (Total / Tunnel): 512/256
Maximum Number of FortiTokens 1,000
Maximum Number of Registered
Endpoints: 2,000
High Availability Configurations:
Active-Active, Active-Passive, Clustering
FortiGate 800D
Threat Protection
3 Gbps
SSL Inspection Throughput
4 Gbps
Network Interfaces
Multiple GE RJ45, GE SFP, 10 GE SFP+ slots and bypass GE RJ45 pairs
Interfaces and Modules
Hardware Accelerated 10 GE SFP+ Slots: 2
Hardware Accelerated GE SFP Slots: 8
Hardware Accelerated GE RJ45 Ports: 20
Accelerated GE RJ45 Bypass Interfaces: 4
GE RJ45 Management/HA Ports: 2
USB Ports (Client/Server): 1/2
Console Port: 1
Onboard Storage: 1x 240 GB SSD
Included Transceivers: 2x SFP (SX 1 GE)
System Performance - Enterprise
Traffic Mix
IPS Throughput: 4.2 Gbps
NGFW Throughput: 4 Gbps
Threat Protection Throughput: 3 Gbps
System Performance and Capacity
IPv4 Firewall Throughput
(1518/512/64 byte, UDP): 36/36/22 Gbps
IPv6 Firewall Throughput
(1518/512/86 byte, UDP): 36/36/22 Gbps
Firewall Latency (64 byte, UDP): 3 μs
Firewall Throughput
(Packet per Second): 33 Mpps
Concurrent Sessions (TCP): 5 Million
New Sessions/Second (TCP): 280,000
Firewall Policies: 10,000
IPsec VPN Throughput (512 byte): 20 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 2,000
Client-to-Gateway IPsec VPN
Tunnels: 50,000
SSL-VPN Throughput: 2.2 Gbps
Concurrent SSL-VPN Users
(Recommended Maximum, Tunnel
Mode): 5,000
SSL Inspection Throughput (IPS, avg.
HTTPS): 3.9 Gbps
SSL Inspection CPS (IPS, avg. HTTPS): 2,400
SSL Inspection Concurrent Session (IPS, avg. HTTPS): 380,000
Application Control Throughput (HTTP
64K): 9 Gbps
CAPWAP Throughput (1444 byte,
UDP): 5.5 Gbps
Virtual Domains (Default / Maximum) 10/10
Maximum Number of Switches Supported: 64
Maximum Number of FortiAPs
(Total/Tunnel): 1024/512
Maximum Number of FortiTokens: 1,000
Maximum Number of Registered
Endpoints: 2,000
High Availability Configurations:
Active-Active, Active-Passive, Clustering
FortiGate Firewall 900D
Threat Protection
3 Gbps
SSL Inspection Throughput
4 Gbps
Network Interfaces
Multiple GE RJ45, GE SFP and 10 GE SFP+ slots
Interfaces and Modules
Hardware Accelerated 10 GE SFP+ Slots: 2
Hardware Accelerated GE SFP Slots: 16
Hardware Accelerated GE RJ45 Ports: 16
GE RJ45 Management/HA Ports: 2
USB Ports (Client / Server): 1/2
Console Port: 1
Onboard Storage 1x 256 GB SSD
Included Transceivers: 0
System Performance - Enterprise
Traffic Mix
IPS Throughput: 4.2 Gbps
NGFW Throughput: 4 Gbps
Threat Protection Throughput: 3 Gbps
System Performance and Capacity
IPv4 Firewall Throughput
(1518/512/64 byte, UDP): 52/52/33 Gbps
IPv6 Firewall Throughput
(1518/512/86 byte, UDP): 52/52/33 Gbps
Firewall Latency (64 byte, UDP): 3 μs
Firewall Throughput
(Packet per Second): 49.5 Mpps
Concurrent Sessions (TCP): 11 Million
New Sessions/Second (TCP): 280,000
Firewall Policies: 10,000
IPsec VPN Throughput (512 byte): 25 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 2,000
Client-to-Gateway IPsec VPN
Tunnels: 50,000
SSL-VPN Throughput: 3.6 Gbps
Concurrent SSL-VPN Users
(Recommended Maximum, Tunnel
Mode): 10,000
SSL Inspection Throughput (IPS, avg.
HTTPS): 3.9 Gbps
SSL Inspection CPS (IPS, avg. HTTPS): 2,400
SSL Inspection Concurrent Session (IPS, avg. HTTPS): 800,000
Application Control Throughput
(HTTP 64K): 10 Gbps
CAPWAP Throughput
(1444 byte, UDP): 11 Gbps
Virtual Domains (Default / Maximum): 10/10
Maximum Number of Switches Supported: 64
Maximum Number of FortiAPs
(Total/Tunnel): 1024/512
Maximum Number of
FortiTokens: 1,000
Maximum Number of Registered
Endpoints: 2,000
High Availability Configurations:
Active-Active, Active-Passive, Clustering
FORTINET FortiGate High-Performance
Next-Generation Firewalls
The FortiGate high end next-generation firewall protects your network and data center against advanced threats with the industry’s best threat protection and price performance. FortiGate high end series features purpose-built security processor innovation to deliver uncompromising security and performance with superior SSL inspection and NGFW performance for the edge, data center and internal segments.
FortiGate 1000D
Threat Protection
4 Gbps
SSL Throughput Inspection
4 Gbps
Network Interfaces
2x 10 GE SFP+, 16x GE SFP, 18x GE RJ45
Interfaces and Modules
Hardware Accelerated 10 GE SFP+ Slots: 2
Hardware Accelerated GE SFP Slots: 16
Hardware Accelerated GE RJ45 Ports: 16
GE RJ45 Management / HA Ports: 2
USB Ports (Client / Server): 1/2
Console Port: 1
Onboard Storage: 1x 256 GB SSD
Included Transceivers: 0
System Performance - Enterprise
Traffic Mix
IPS Throughput: 6
Gbps NGFW Throughput: 5 Gbps
Threat Protection Throughput:4 Gbps
System Performance and Capacity
IPv4 Firewall Throughput
(1518/512/64 byte, UDP) 52/52/33: Gbps
IPv6 Firewall Throughput
(1518/512/86 byte, UDP): 52/52/33 Gbps
Firewall Latency (64 byte, UDP): 3 μs
Firewall Throughput
(Packet per Second): 49.5 Mpps
Concurrent Sessions (TCP): 11 Million
New Sessions/Second (TCP): 280,000
Firewall Policies: 100,000
IPsec VPN Throughput (512 byte): 25 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 20,000
Client-to-Gateway IPsec VPN
Tunnels: 100,000
SSL-VPN Throughput: 3.6 Gbps
Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode): 10,000
SSL Inspection Throughput (IPS, avg.
HTTPS): 5.0 Gbps
SSL Inspection CPS (IPS, avg. HTTPS): 2,700
SSL Inspection Concurrent Session (IPS, avg. HTTPS): 800,000 Application Control Throughput (HTTP 64K): 14 Gbps
CAPWAP Throughput (1444 byte,
UDP): 11 Gbps
Virtual Domains (Default / Maximum): 10/250
Maximum Number of Switches
Supported: 128
Maximum Number of FortiAPs
(Total/Tunnel): 4,096/1,024
Maximum Number of FortiTokens: 5,000
Maximum Number of Registered
Endpoints: 20,000
High Availability Configurations:
Active-Active, Active-Passive, Clustering
FortiGate 1200D
Threat Protection
4 Gbps
SSL Inspection Throughput
6 Gbps
Network Interfaces
4x 10GE SFP+/GE SFP, 16x GE SFP,
18x GE RJ45
Interfaces and Modules
Hardware Accelerated 10 GE SFP+ / GE SFP Slots: 4
Hardware Accelerated GE SFP Slots: 16
Hardware Accelerated GE RJ45 Ports: 16
GE RJ45 Management/HA Ports: 2
USB Ports (Client / Server): 1/1
Console Port: 1
Onboard Storage: 1x 240 GB SSD
Included Transceivers 0
System Performance - Enterprise
Traffic Mix
IPS Throughput: 6.8 Gbps
NGFW Throughput:6 Gbps
Threat Protection Throughput: 4 Gbps
System Performance and Capacity
IPv4 Firewall Throughput
(1518/512/64 byte, UDP): 72/72/52 Gbps
IPv6 Firewall Throughput
(1518/512/86 byte, UDP): 72/72/52 Gbps
Firewall Latency (64 byte, UDP): 3 μs
Firewall Throughput
(Packet per Second): 78 Mpps
Concurrent Sessions (TCP): 11 Mil
New Sessions/Second (TCP): 290,000
Firewall Policies: 100,000
IPsec VPN Throughput (512 byte): 48 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 20,000
Client-to-Gateway IPsec VPN
Tunnels: 100,000
SSL-VPN Throughput: 3.6 Gbps
Concurrent SSL-VPN Users
(Recommended Maximum, Tunnel
Mode): 10,000
SSL Inspection Throughput (IPS, avg.
HTTPS): 5.0 Gbps
SSL Inspection CPS (IPS, avg. HTTPS): 2,700
SSL Inspection Concurrent Session (IPS, avg. HTTPS): 800,000
Application Control Throughput
(HTTP 64K): 15 Gbps
CAPWAP Throughput
(1444 byte, UDP): 15 Gbps
Virtual Domains (Default/Maximum): 10/50
Maximum Number of Switches
Supported: 128
Maximum Number of FortiAPs
(Total/Tunnel): 4,096/1,024
Maximum Number of FortiTokens: 5,000
Maximum Number of Registered
Endpoints: 20,000
High Availability Configurations:
Active-Active, Active-Passive, Clustering
FortiGate 1500D
FortiGate 1500D, 1500D-DC and 1500DT
Threat Protection
5 Gbps
SSL Inspection Throughput
10.5 Gbps
Network Interfaces
8x 10GE SFP+/GE SFP, 16x GE SFP,
18x GE RJ45
Interfaces and Modules
Hardware Accelerated 10 GE SFP+ / GE SFP Slots:
FG-1500D/1500-DC: 8; FG-1500DT: 4
Hardware Accelerated GE SFP Slots: 16
Hardware Accelerated 10 GE RJ45 Ports:
FG-1500D/1500-DC: —; FG-1500DT: 4
Hardware Accelerated 10 GE RJ45 Ports: 16
GE RJ45 Management/HA Ports: 2
USB Ports (Client / Server): 1/1
Console Port: 1
Onboard Storage: 2x 240 GB SSD
Included Transceivers 2x SFP+ (SR 10GE)
System Performance - Enterprise
Traffic Mix
IPS Throughput: 6.8 Gbps
NGFW Throughput:6 Gbps
Threat Protection Throughput: 4 Gbps
System Performance and Capacity
IPv4 Firewall Throughput
(1518/512/64 byte, UDP): 72/72/52 Gbps
IPv6 Firewall Throughput
(1518/512/86 byte, UDP): 72/72/52 Gbps
Firewall Latency (64 byte, UDP): 3 μs
System Performance and Capacity
IPv4 Firewall Throughput
(1518/512/64 byte, UDP): 80/80/55 Gbps
IPv6 Firewall Throughput
(1518/512/86 byte, UDP): 80/80/ 55 Gbps
Firewall Latency (64 byte, UDP): 3 μs
Firewall Throughput (Packet per Second) 82.5 Mpps Concurrent Sessions (TCP):
12 Million
New Sessions/Second (TCP): 300,000
Firewall Policies: 100,000
IPsec VPN Throughput (512 byte): 50 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 20,000
Client-to-Gateway IPsec VPN
Tunnels: 100,000
SSL-VPN Throughput: 4 Gbps
Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode): 10,000
SSL Inspection Throughput
(IPS, avg. HTTPS): 5.7 Gbps
SSL Inspection CPS (IPS, avg. HTTPS): 3,100
SSL Inspection Concurrent Session (IPS, avg. HTTPS): 800,000
Application Control Throughput
(HTTP 64K): 16 Gbps
CAPWAP Throughput
(1444 byte, UDP): 20 Gbps
Virtual Domains (Default/Maximum): 10/250
Maximum Number of Switches
Supported: 128
Maximum Number of FortiAPs
(Total/Tunnel): 4,096/1,024
Maximum Number of FortiTokens: 5,000
Maximum Number of Registered
Endpoints: 20,000
High Availability Configurations:
Active-Active, Active-Passive, Clustering
FortiGate 2000E
Threat Protection
5.4 Gbps
SSL Inspection Throughput
12.5 Gbps
Network Interfaces
Multiple GE RJ45 and 10GE SFP+ slots
Hardware Specifications:
Hardware Accelerated 10 GE SFP+ Slots: 6
Hardware Accelerated GE RJ45 Ports: 32
GE RJ45 Management/HA Ports: 2
USB Ports: 1
Console Port: 1
Onboard Storage: 1x 480 GB SSD
Included Transceivers: 2x SFP+ (SR 10GE)
System Performance - Enterprise
Traffic Mix
IPS Throughput: 11.5 Gbps
NGFW Throughput: 9 Gbps
Threat Protection Throughput: 5.4 Gbps
System Performance
IPv4 Firewall Throughput (1518/512/64 byte, UDP): 90/90/60 Gbps
IPv6 Firewall Throughput (1518/512/86 byte, UDP): 90/90/60 Gbps
Firewall Latency (64 byte, UDP): 2 μs
Firewall Throughput
(Packet per Second): 90 Mpps
Concurrent Sessions (TCP): 20 Million
New Sessions/Second (TCP): 500,000
Firewall Policies: 100,000
IPsec VPN Throughput (512 byte): 65 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 20,000
Client-to-Gateway IPsec VPN
Tunnels: 100,000
SSL-VPN Throughput: 6 Gbps
Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode): 10,000
SSL Inspection Throughput (IPS, avg. HTTPS): 9.4 Gbps SSL Inspection CPS (IPS, avg. HTTPS): 5,500
SSL Inspection Concurrent Session (IPS, avg. HTTPS): 2 Million Application Control Throughput (HTTP 64K): 20 Gbps
CAPWAP Throughput (1444 byte,
UDP): 21 Gbps
Virtual Domains (Default/Maximum): 10/500
Maximum Number of Switches
Supported: 128
Maximum Number of FortiAPs (Total/Tunnel): 4,096/1,024
Maximum Number of FortiTokens: 5,000
Maximum Number of Registered
Endpoints: 20,000
High Availability Configurations:
Active-Active, Active-Passive, Clustering
FortiGate 2500E
Threat Protection
5.4 Gbps
SSL Inspection Throughput
11.5 Gbps
Network Interfaces
Multiple GE RJ45, 10 GE SFP+ slots and
Bypass 10 GE SFP+ ports
Hardware Specifications
Hardware Accelerated 10 GE SFP+ Slots: 10 + 2 bypass
Hardware Accelerated GE RJ45 Ports: 32
GE RJ45 Management/HA Ports: 2
USB Ports: 1
Console Port: 1
Onboard Storage: 1x 480 GB SSD
Included Transceivers: 2x SFP+ (SR 10GE)
System Performance - Enterprise
Traffic Mix
IPS Throughput: 11.5 Gbps
NGFW Throughput: 9 Gbps
Threat Protection Throughput:5.4 Gbps
System Performance
IPv4 Firewall Throughput (1518/512/64 byte, UDP): 150/150/95 Gbps
IPv6 Firewall Throughput (1518/512/86 byte, UDP): 150/150/95 Gbps
Firewall Latency (64 byte, UDP): 2 μs
Firewall Throughput (Packet per Second): 145.5 Mpps Concurrent Sessions
(TCP): 20 Million
New Sessions/Second (TCP): 500,000
Firewall Policies: 100,000
IPsec VPN Throughput (512 byte): 95 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 20,000
Client-to-Gateway IPsec VPN
Tunnels: 100,000
SSL-VPN Throughput: 6 Gbps
Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode): 10,000
SSL Inspection Throughput
(IPS, avg. HTTPS): 9.4 Gbps
SSL Inspection CPS (IPS, avg. HTTPS): 5,500
SSL Inspection Concurrent Session
(IPS, avg. HTTPS): 2 Million
Application Control Throughput
(HTTP 64K): 20 Gbps
CAPWAP Throughput
(1444 byte, UDP): 21 Gbps
Virtual Domains (Default/Maximum): 10/500
Maximum Number of Switches
Supported: 128
Maximum Number of FortiAPs (Total/Tunnel): 4,096/1,024
Maximum Number of FortiTokens: 5,000
Maximum Number of Registered
Endpoints: 20,000
High Availability Configurations:
Active-Active, Active-Passive, Clustering
FortiGate 3000D
FG-3000D and 3000D-DC
Threat Protection
13 Gbps
SSL Inspection Throughput
19 Gbps
Network Interfaces
Multiple 10 GE SFP+, Multiple GE SFP and GE RJ45
Interfaces and Modules
10 GE SFP+/GE SFP Slots: 16
GE RJ45 Management Ports: 2
USB Ports (Server): 1
Console Port: 1
Internal Storage: 1x 480 GB SSD
Included Transceivers: 2x SFP+ (SR 10GE)
System Performance - Enterprise
Traffic Mix
IPS Throughput: 23 Gbps
NGFW Throughput: 22 Gbps
Threat Protection Throughput: 13 Gbps
System Performance and Capacity
Firewall Throughput (1518/512/64 byte, UDP): 80/80/50 Gbps
IPv6 Firewall Throughput (1518/512/86 byte, UDP): 80/80/50 Gbps
Firewall Latency (64 byte, UDP): 3 µs
Firewall Throughput
(Packet per Second): 75 Mpps
Concurrent Sessions (TCP): 50 Million New Sessions/Second (TCP): 400,000
Firewall Policies: 200,000
IPsec VPN Throughput (512 byte): 50 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 40,000
Client-to-Gateway IPsec VPN
Tunnels: 200,000
SSL-VPN Throughput: 8 Gbps
Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode): 30,000
SSL Inspection Throughput
(IPS, avg. HTTPS): 15 Gbps
SSL Inspection CPS (IPS, avg. HTTPS): 8,000
SSL Inspection Concurrent Session
(IPS, avg. HTTPS): 3.5
Million Application Control Throughput
(HTTP 64K): 40 Gbps
CAPWAP Throughput
(1444 byte, UDP): 22 Gbps
Virtual Domains (Default/Maximum): 10/500
Maximum Number of Switches
Supported: 256
Maximum Number of FortiAPs
(Total/Tunnel Mode): 4,096/1,024
Maximum Number of FortiTokens: 5,000
Maximum Number of Registered
FortiClients: 50,000
High Availability Configurations: Active/Active, Active/Passive, Clustering
FortiGate 3100D
FG-3100D and 3100D-DC
Threat Protection
13 Gbps
SSL Inspection Throughput
22 Gbps
Network Interfaces
Multiple 10 GE SFP+, Multiple GE SFP
and GE RJ45
Interfaces and Modules
10 GE SFP+/GE SFP Slots: 32
GE RJ45 Management Ports: 2
USB Ports (Client/Server): 1/1
Console Port: 1
Internal Storage: 1x 480 GB SSD
Included Transceivers: 2x SFP+ (SR 10 GE)
System Performance - Enterprise
Traffic Mix
IPS Throughput: 22 Gbps
NGFW Throughput: 18 Gbps
Threat Protection Throughput: 13 Gbps
System Performance and Capacity
Firewall Throughput (1518/512/64 byte, UDP): 80/80/50 Gbps
IPv6 Firewall Throughput (1518/512/86 byte, UDP): 80/80/50 Gbps
Firewall Latency (64 byte, UDP): 3 µs
Firewall Throughput
(Packet per Second): 75 Mpps
Concurrent Sessions (TCP): 50 Million
New Sessions/Second (TCP): 400,000
Firewall Policies: 200,000
IPsec VPN Throughput (512 byte): 50 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 40,000
Client-to-Gateway IPsec VPN
Tunnels: 200,000
SSL-VPN Throughput: 8 Gbps
Concurrent SSL-VPN Users (Recommended
Maximum, Tunnel Mode): 30,000
SSL Inspection Throughput
(IPS, avg. HTTPS): 16 Gbps
SSL Inspection CPS (IPS, avg. HTTPS): 10,000
SSL Inspection Concurrent Session
(IPS, avg. HTTPS): 3.5 Million
Application Control Throughput
(HTTP 64K): 40 Gbps
CAPWAP Throughput
(1444 byte, UDP): 22 Gbps
Virtual Domains (Default/Maximum): 10/500
Maximum Number of Switches
Supported: 256
Maximum Number of FortiAPs (Total/Tunnel Mode): 4,096/1,024
Maximum Number of FortiTokens: 5,000
Maximum Number of Registered
FortiClients: 50,000
High Availability Configurations:
Active/Active, Active/Passive, Clustering
FortiGate 3200D
FG-3200D and 3200D-DC
Threat Protection
15 Gbps
SSL Inspection Throughput
20 Gbps
Network Interfaces
Multiple GE RJ45 and 10 GE SFP+/
GE SFP slots
Interfaces and Modules
10 GE SFP+/GE SFP Slots: 48
GE RJ45 Management Ports: 2
USB Ports (Client/Server): 1/1
Console Port: 1
Internal Storage: 2x 480 GB SSD
Included Transceivers: 2x SFP+ (SR 10GE)
System Performance - Enterprise
Traffic Mix
IPS Throughput: 26 Gbps
NGFW Throughput : 24 Gbps
Threat Protection Throughput: 15 Gbps
System Performance and Capacity
Firewall Throughput (1518/512/64 byte,
UDP): 80/80/50
Gbps IPv6 Firewall Throughput
(1518/512/86 byte, UDP): 80/80/50 Gbps
Firewall Latency (64 byte, UDP): 3 µs
Firewall Throughput
(Packet per Second): 75 Mpps
Concurrent Sessions (TCP): 50 Million
New Sessions/Second (TCP): 400,000
Firewall Policies: 200,000
IPsec VPN Throughput (512 byte): 50 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 40,000
Client-to-Gateway IPsec VPN
Tunnels: 200,000
SSL-VPN Throughput: 8 Gbps
Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode): 30,000
SSL Inspection Throughput
(IPS, avg. HTTPS): 17 Gbps
SSL Inspection CPS (IPS, avg. HTTPS): 11,000
SSL Inspection Concurrent Session
(IPS, avg. HTTPS): 3.5 Million
Application Control Throughput
(HTTP 64K): 50 Gbps
CAPWAP Throughput
(1444 byte, UDP): 22 Gbps
Virtual Domains (Default/Maximum) 10/500
Maximum Number of Switches
Supported: 256
Maximum Number of FortiAPs
(Total/Tunnel Mode): 4,096/1,024
Maximum Number of FortiTokens: 5,000
Maximum Number of Registered
FortiClients: 50,000
High Availability Configurations: Active/Active, Active/Passive, Clustering
FortiGate 3700D
FortiGate 3700D, 3700D-NEBS, 3700D-DC and 3700D-DC-NEBS
Threat Protection
13 Gbps
SSL Inspection Throughput
24 Gbps
Network Interfaces
Multiple 40 GE QSFP+, 10 GE SFP+
and GE SFP
Interfaces and Modules
40 GE QSFP Slots: 4
10 GE SFP+/GE SFP Slots: 20
10 GE SFP+ Slots (Ultra-low Latency): 8
GE RJ45 Management Ports: 2
USB Ports (Client/Server): 1/1
Console Port: 1
Internal Storage: 2x 2 TB HDD
Included Transceivers: 2x SFP+ (SR 10GE)
System Performance - Enterprise
Traffic Mix
IPS Throughput: 28 Gbps
NGFW Throughput: 20 Gbps
Threat Protection Throughput: 13 Gbps
System Performance and Capacity
Firewall Throughput (1518/512/64 byte, UDP): 160/160/110 Gbps
IPv6 Firewall Throughput (1518/512/86 byte, UDP): 160/160/110 Gbps
Firewall Latency (64 byte, UDP): 2 µs
Firewall Throughput
(Packet per Second): 165 Mpps
Concurrent Sessions (TCP): 50 Million
New Sessions/Second (TCP): 400,000
Firewall Policies: 200,000
IPsec VPN Throughput (512 byte): 100 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 40,000
Client-to-Gateway IPsec VPN
Tunnels: 200,000
SSL-VPN Throughput: 10 Gbps
Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode): 30,000
SSL Inspection Throughput
(IPS, avg. HTTPS): 15.5 Gbps
SSL Inspection CPS (IPS, avg. HTTPS): 8,500
SSL Inspection Concurrent Session
(IPS, avg. HTTPS): 3.5 Million
Application Control Throughput
(HTTP 64K): 40 Gbps
CAPWAP Throughput
(1444 byte, UDP): 22 Gbps
Virtual Domains (Default/Maximum): 10/500
Maximum Number of Switches
Supported: 256
Maximum Number of FortiAPs
(Total/Tunnel Mode): 4,096/1,024
Maximum Number of FortiTokens: 5,000
Maximum Number of Registered
FortiClients: 100,000
High Availability Configurations: Active/Active, Active/Passive, Clustering
FortiGate 3900E Series
FortiGate 3980E/-DC and 3960E/-DC Series
Threat Protection
20 Gbps
SSL Inspection Throughput
32 Gbps
Network Interfaces
10x 100GE QSFP28, 16x 10GE SFP+,
2x GE RJ45
Interfaces and Modules
40/100 GE QSFP+/QSFP28 Slots:
FG-3980E/-DC: 10; FG-3960E/-DC: 6
GE SFP+ Slots: 16
GE RJ45 Management Ports: 2
USB Ports: 1
Console Port: 1
Internal Storage: –
Included Transceivers: 2x SFP+ (SR 10 GE)
System Performance - Enterprise
Traffic Mix
IPS Throughput: FG-3980E/-DC: 32 Gbps;
FG-3960E/-DC: 30 Gbps
NGFW Throughput: FG-3980E/-DC: 28 Gbps;
FG-3960E/-DC: 22 Gbps
Threat Protection Throughput:
FG-3980E/-DC: 20 Gbps;
FG-3960E/-DC: 13.5 Gbps
System Performance and Capacity
Firewall Throughput (1518/512/64 byte, UDP): FG-3980E/-DC: 1.05 Tbps/
1.05 Tbps/680 Gbps;
FG-3960E/-DC: 620/610/370 Gbps
Firewall Latency (64 byte, UDP): 3 μs
Firewall Throughput (Packet per Second):
FG-3980E/-DC: 1,020 Mpps;
FG-3960E: 555 Mpps
Concurrent Sessions (TCP): 160 Million
New Sessions/Sec (TCP): 550,000
Firewall Policies: 200,000
IPsec VPN Throughput (512 byte):
FG-3980E/-DC: 400 Gbps;
FG-3960E: 280 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 40,000
Client-to-Gateway IPsec VPN
Tunnels: 200,000
SSL-VPN Throughput: FG-3980E/-DC:
9.5 Gbps; FG-3960E: 9 Gbps
Concurrent SSL-VPN Users (Recommended
Maximum, Tunnel Mode): 30,000
SSL Inspection Throughput (IPS, avg. HTTPS):
FG-3980E /-DC: 26 Gbps;
FG-3960E: 23 Gbps
SSL Inspection CPS (IPS, avg. HTTPS):
FG-3980E/-DC: 17,000; FG-3960E: 14,000
SSL Inspection Concurrent Session
(IPS, avg. HTTPS): 12 Million
Application Control Throughput (HTTP 64K):
FG-3980E /-DC: 55 Gbps;
FG-3960E: 40 Gbps
CAPWAP Throughput (1444 byte, UDP):
FG-3980E /-DC: 14 Gbps;
FG-3960E : 13.5 Gbps
Virtual Domains (Default/Maximum): 10/500
Maximum Number of Switches
Supported: 256
Maximum Number of FortiAPs (Total/Tunnel
Mode): 4,096/1,024
Maximum Number of FortiTokens: 5,000
Maximum Number of Registered
FortiClients: 100,000
High Availability Configurations:
Active/Active, Active/Passive, Clustering
FORTINET Fortigate Ultra
High-Performance Network Security
The new FortiGate 6000 NGFW appliances feature the latest Fortinet innovation, to deliver leading edge security, performance, and connectivity for the most demanding network needs. The 6000 series combines unprecedented threat protection and SSL inspection performance in an easy to manage, compact appliance.
FortiGate 6000F Series
FortiGate 6300F, 6301F, 6500F and 6501F
Threat Protection
FG-6300F/6301F: 60 Gbps
FG-6500F/6501F: 100 Gbps
SSL Inspection Throughput
FG-6300F/6301F: 90 Gbps
FG-6500F/6501F: 130 Gbps
Network Interfaces
Multiple 40/100 GE QSFP28, 1/10/25 GE SFP28, 1/10 GE SFP+ and GE RJ45
Interfaces and Modules
40/100 GE QSFP28 Slots: 4 1/10/25
GE SFP28 Slots: 24
10 GE SFP+ Slots: 3
GE RJ45 Management Ports: 2
USB Ports: 1
Console Port: 1
Internal Storage: 2x 1 TB NVMe
(for 6301F and 6501F only)
Included Transceivers: 2x SFP+ (SR 10 GE)
System Performance - Enterprise
Traffic Mix
IPS Throughput: FG-6300F/6301F: 110 Gbps;
FG-6500F/6501F: 170 Gbps
NGFW Throughput:
FG-6300F/6301F: 90 Gbps;
FG-6500F/6501F: 150 Gbps
Threat Protection Throughput:
FG-6300F/6301F: 60;
FG-6500F/6501F: Gbps 100 Gbps
System Performance and Capacity
Firewall Throughput (1518 / 512 / 64 byte, UDP): 239/238/135 Gbps
Firewall Latency (64 byte, UDP): 5 μs
Firewall Throughput
(Packet per Second): 202.5 Mpps
Concurrent Sessions (TCP): FG-6300F/6301F: 120 Million; FG-6500F/6501F: 200 Million
New Sessions/Sec (TCP): FG-6300F/
6301F: 2 Million; FG-6500F/6501F: 3 Million
Firewall Policies: 200,000
IPsec VPN Throughput (512 byte):
FG-6300F/6301F: 96 Gbps;
FG-6500F/6501F: 160 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 16,000
Client-to-Gateway IPsec VPN
Tunnels: 90,000
SSL-VPN Throughput: 9 Gbps
Concurrent SSL-VPN Users (Recommended
Maximum, Tunnel Mode): 30,000
SSL Inspection Throughput (IPS, avg. HTTPS):
FG-6300F/6301F: 66 Gbps;
FG-6500F/6501F: 110 Gbps
SSL Inspection CPS (IPS, avg. HTTPS):
FG-6300F/6301F: 30,000;
FG-6500F/6501F: 50,000
SSL Inspection Concurrent Session
(IPS, avg. HTTPS):
FG-6300F/6301F: 10 Million;
FG-6500F/6501F: 18 Million
Application Control Throughput (HTTP 64K):
FG-6300F/6301F: 150 Gbps;
FG-6500F/6501F: 220 Gbps
CAPWAP Throughput (1444 byte, UDP): N/A
Virtual Domains (Default/Maximum): 10/500
Maximum Number of Switches
Supported: N/A
Maximum Number of FortiAPs
(Total/Tunnel Mode): N/A
Maximum Number of FortiTokens: 20,000
Maximum Number of Registered
FortiClients: 100,000
High Availability Configurations: Supported
Fortigate CHASSIS-based
Network Security
FortiGate chassis-based next-generation firewalls deliver scalable threat protection and high reliability for the most demanding networks. Extensive network interfaces, consolidated security services and simplified management deliver uncompromising protection from cyber threats and malware, at the edge, in the data center and core network.
FortiGate 5000 Series
Scalable Data Center and Carrier Grade
Security Systems
Threat Protection
13.5 Gbps
SSL Inspection Throughput
17 Gbps
Network Interfaces
2x 40GE QSFP+, 2x 10GE SFP+, 2x GE RJ45
Hardware Specifications FG-5144C
Available Slots: 14
High Availability Backplane Fabric: Built-in
40 Gbps Backplane Support: Yes
Shelf Manager (Default/Maximum): 1/2
Dual Networking Blade Support: Yes
Interfaces and Storage
40 GE QSFP+ Ports: 2
10 GE SFP+ Ports: 2
GE RJ45 Ports: 2
RJ45 Console Port: 1
Included Transceivers: 2x 10 GE SFP+ SR
Local Storage: FG-5001D: 1x 200 GB SSD;
FG-5001E/5001E1: 1x 480 GB SSD (5001E1)
System Performance
Firewall Throughput (1518/512/64 byte UDP packets):
FG-5001D: 80/80/45 Gbps; FG-5001E/5001E1: 80/80/50 Gbps
Firewall Latency (64 byte UDP packets): 3 μs
Firewall Throughput (Packets Per Second):
FG-5001D: 67.5 Mpps;
FG-5001E/5001E1: 75 Mpps
Concurrent Sessions (TCP): FG-5001D:
23 Million; FG-5001E/5001E1: 40 Million
New Sessions/Second (TCP):
FG-5001D: 565,000;
FG-5001E/5001E1: 640,000
Maximum Firewall Policies: 200,000
IPsec VPN Throughput (512 byte packets):
FG-5001D: 25 Gbps; FG-5001E/
5001E1: 45 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 40,000
Client-to-Gateway IPsec VPN
Tunnels: 64,000
SSL-VPN Throughput: FG-5001D: 6.5 Gbps;
FG-5001E/5001E1: 9 Gbps
Concurrent SSL-VPN Users (Recommended Maximum): 25,000
IPS Throughput (HTTP/Enterprise Mix): FG-5001D: 18/13 Gbps;
FG-5001E/5001E1: 25/18 Gbps
SSL Inspection Throughput:
FG-5001D: 11 Gbps; FG-5001E/
5001E1: 17 Gbps
Application Control Throughput:
FG-5001D: 18 Gbps;
FG-5001E/5001E1: 36 Gbps
NGFW Throughput: FG-5001D: 10 Gbps
FG-5001E/5001E1: 15 Gbps
Threat Protection Throughput: FG-5001D: 7.7 Gbps; 13.5 Gbps
CAPWAP Throughput: 15 Gbps
Virtual Domains (Default/Maximum): 10/500
Maximum Number of FortiTokens: 5,000
Maximum Number of Registered
FortiClients: 20,000
Maximum Number of FortiAPs
(Total/Tunnel): 4,096/1,024
FortiGate 7030E
Threat Protection
35 Gbps
SSL Inspection Throughput
50 Gbps
Network Interfaces
Multiple 10 GE SFP+/SFP, 40 GE/
100 GE QSFP28
Hardware Specifications
Fortinet Processor Module (FPM) Slots: 2
Fortinet Interface Module (FIM) Slots: 1
Shelf Manager: 1
Dimensions
Height x Width x Length (inches):
10.4 x 17.3 x 25.6
Height x Width x Length (mm):
264 x 440 x 650
Weight: 134.9 lbs (61.3 kg)
System Performance and Capacity
Firewall Throughput (1518/512/64 byte, UDP): 155/155/155 Gbps
Firewall Latency (64 byte, UDP): 7 μs
Firewall Throughput
(Packet per Second): 220 Mpps
Concurrent Sessions (TCP): 160 Million
New Sessions/Sec (TCP): 900,000
Firewall Policies: 200,000
IPsec VPN Throughput (512 byte): 40 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 16,000
Client-to-Gateway IPsec VPN
Tunnels: 64,000
SSL-VPN Throughput: 15 Gbps
Concurrent SSL-VPN Users
(Recommended Maximum): 48,000
IPS Throughput
(HTTP/Enterprise Mix): 90/60 Gbps
SSL Inspection Throughput: 50 Gbps
Application Control Throughput: 65 Gbps
NGFW Throughput: 50 Gbps
Threat Protection Throughput: 35 Gbps
CAPWAP Throughput: N.A
Virtual Domains (Default/Maximum): 10/500
Maximum Number of FortiAPs
(Total/Tunnel Mode): N.A
Maximum Number of FortiTokens: 5,000
Maximum Number of Registered
FortiClients: 20,000
High Availability Configurations: Supported
FortiGate 7040E
FortiGate 7040E/7040-DC
Threat Protection
40 Gbps
SSL Inspection Throughput
50 Gbps
Network Interfaces
Multiple 10 GE SFP+/SFP, 40 GE QSFP+,
100 GE CFP2/QSFP28
Hardware Specifications
Fortinet Processor Module (FPM) Slots: 2
Fortinet Interface Module (FIM) Slots: 2
Shelf Manager: 1
Dimensions
Height x Width x Length (inches):
10.4 x 17.3 x 25.6
Height x Width x Length (mm):
264 x 440 x 650
Weight: 150.3 lbs (68.2 kg)
System Performance and Capacity
Firewall Throughput (1518/512/64 byte, UDP): 315/310/200 Gbps
Firewall Latency (64 byte, UDP): 7 μs
Firewall Throughput
(Packet per Second): 300 Mpps
Concurrent Sessions (TCP): 160 Million
New Sessions/Sec (TCP): 950,000
Firewall Policies: 200,000
IPsec VPN Throughput (512 byte): 100 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 16,000
Client-to-Gateway IPsec VPN
Tunnels: 64,000
SSL-VPN Throughput: 15 Gbps
Concurrent SSL-VPN Users
(Recommended Maximum): 48,000
IPS Throughput
(HTTP/Enterprise Mix): 140/60 Gbps
SSL Inspection Throughput: 50 Gbps
Application Control Throughput: 80 Gbps
NGFW Throughput: 50 Gbps
Threat Protection Throughput: 40 Gbps
CAPWAP Throughput: N.A
Virtual Domains (Default/Maximum): 10/500
Maximum Number of FortiAPs
(Total/Tunnel Mode): N.A
Maximum Number of FortiTokens: 5,000
Maximum Number of Registered
FortiClients: 20,000
High Availability Configurations: Supported
FortiGate 7060E
FortiGate 7060E/7060-DC
Threat Protection
80 Gbps
SSL Inspection Throughput
100 Gbps
Network Interfaces
Multiple 10 GE SFP+/SFP, 40 GE QSFP+,
100 GE CFP2/QSFP28
Hardware Specifications
Fortinet Processor Module (FPM) Slots: 4
Fortinet Interface Module (FIM) Slots: 2
Shelf Manager: 2
Dimensions
Height x Width x Length (inches):
13.4 x 17.3 x 25.6
Height x Width x Length (mm):
352.7 x 440 x 650
Weight: 205 lbs (93 kg)
System Performance and Capacity
Firewall Throughput (1518/512/64 byte, UDP): 630/630/340 Gbps
Firewall Latency (64 byte, UDP): 7 μs
Firewall Throughput
(Packet per Second): 510 Mpps
Concurrent Sessions (TCP): 320 Million
New Sessions/Sec (TCP): 1.8 Million
Firewall Policies: 200,000
IPsec VPN Throughput (512 byte): 100 Gbps
Gateway-to-Gateway IPsec VPN
Tunnels: 16,000
Client-to-Gateway IPsec VPN
Tunnels: 64,000
SSL-VPN Throughput: 15 Gbps
Concurrent SSL-VPN Users
(Recommended Maximum): 48,000
IPS Throughput
(HTTP/Enterprise Mix): 360/120 Gbps
SSL Inspection Throughput: 100 Gbps
Application Control Throughput: 160 Gbps
NGFW Throughput: 100 Gbps
Threat Protection Throughput: 80 Gbps
CAPWAP Throughput: N.A
Virtual Domains (Default/Maximum): 10/500
Maximum Number of FortiAPs
(Total/Tunnel Mode): N.A
Maximum Number of FortiTokens: 5,000
Maximum Number of Registered
FortiClients: 20,000
High Availability Configurations: Supported