We recently highlighted one of our OEM partners and their success in being recognized by Gartner. Fortinet is an industry-leader in Next-Generation Firewalls. Today we'll show a 3 model comparison of FortiGate NGFWs from Fortinet. The capacities range from mid- to large-sized deployments (600E) to Ultra High-End or data center level deployments (6300F).
Next-generation firewalls (NGFW) filter network traffic to protect an organization from external threats. Maintaining features of stateful firewalls such as packet filtering, VPN support, network monitoring, and IP mapping features, NGFWs also possess deeper inspection capabilities that give them a superior ability to identify attacks, malware, and other threats.
Organizations looking for application control, intrusion prevention, and advanced visibility across the network should turn to a NGFW from Fortinet to serve those needs. As the threat landscape continues to develop rapidly, traditional firewalls fall further behind and put your organization at risk. NGFWs not only block malware, but also include paths for future updates, giving them the flexibility to evolve with the landscape and keep the network secure as new threats arise.
FortiGate NGFWs enable security-driven networking and consolidate industry-leading security capabilities such as intrusion prevention system (IPS), web filtering, secure sockets layer (SSL) inspection, and automated threat protection. Fortinet NGFWs meet the performance needs of highly scalable, hybrid IT architectures, enabling organizations to reduce complexity and manage security risks.
Download the full data sheet here!
Model | FG-6300F/6301F | FG-3600E/-DC and 3601 | 600E and 601E |
Firewall | 239 Gbps | 240 Gbps | 36 Gbps |
IPS | 100 Gbps | 55 Gbps | 10 Gbps |
NGFW | 90 Gbps | 40 Gbps | 9.5 Gpbs |
Threat Protection | 60 Gbps | 30 Gbps | 7 Gbps |
This series is an Ultra High-End Series that delivers high performance next generation firewall (NGFW) capabilities for large enterprises and service providers. With multiple high-speed interfaces, high-port density, and high-throughput, ideal deployments are at the enterprise edge, hybrid data centre core, and across internal segments. Leverage industry-leading IPS, SSL inspection, and advanced threat protection to optimize your network’s performance. Fortinet’s Security-Driven Networking approach provides tight integration of the network to the new generation of security.
Quick look at the 6300F series NGFW:
Here at PivIT, we know the importance of bringing options to the table. Whether it's comparing two Fortinet firewalls or throwing a Palo Alto firewall into the mix. We strive to bring you the best option to secure your network.
System Performance and Capacity | Units |
40/100 GE QSFP28 Slots | 4 |
1/10/25 GE SFP28 Slots | 24 |
10 GE SFP+ Slots | 3 |
Firewall Throughput (1518 / 512 / 64 byte, UDP) | 239 / 238 / 135 Gbps |
Firewall Latency (64 byte, UDP) | 5 μs |
IPsec VPN Throughput (512 byte) 1 | 96 Gbps |
Gateway-to-Gateway IPsec VPN Tunnels | 16,000 |
SSL-VPN Throughput | 9 Gbps |
The FortiGate 3600E series comes in the category of High-end Appliance which delivers high-performance next-generation firewall (NGFW) capabilities for large enterprises and service providers. With multiple high-speed interfaces, high-port density, and high throughput, ideal deployments are at the enterprise edge, hybrid data center core, and across internal segments. Leverage industry-leading IPS, SSL inspection, and advanced threat protection to optimize your network’s performance. Fortinet’s security-driven Networking approach provides tight integration of the network to the new generation of security.
Below is the 3600E series NGFW:
System Performance and Capacity | Units |
100 GE QSFP28 / 40 GE QSFP+ Slots | 6 |
25 GE SFP28 / 10 GE SFP+ / GE SFP Slots | 32 |
GE RJ45 Management Ports | 2 (supports 1 GE only) |
Firewall Throughput (1518 / 512 / 64 byte, UDP) | 240 / 240 / 150 Gbps |
IPv6 Firewall Throughput (1518 / 512 / 64 byte, UDP) | 240 / 240 / 150 Gbps |
IPsec VPN Throughput (512 byte) 1 | 145 Gbps |
Gateway-to-Gateway IPsec VPN Tunnels | 40,000 |
SSL-VPN Throughput | 12 Gbps |
The FortiGate 600E series delivers next-generation firewall (NGFW) capabilities for mid-sized to large enterprises deployed at the campus or enterprise branch level. Protects against cyber threats with high-powered security processors for optimized network performance, security efficacy, and deep visibility. Fortinet’s security-driven Networking approach provides tight integration of the network to the new generation of security.
The 600E series NGFW port view:
System Performance and Capacity | Units |
10 GE SFP+ Slots | 2 |
GE RJ45 Interfaces, Management Ports | 8, 2 |
GE SFP Slots | 8 |
IPv4 Firewall Throughput (1518 / 512 / 64 byte, UDP) | 36 / 36 / 27 Gbps |
IPv6 Firewall Throughput (1518 / 512 / 64 byte, UDP) | 36 / 36 / 27 Gbps |
IPsec VPN Throughput (512 byte) 1 | 20 Gbps |
Gateway-to-Gateway IPsec VPN Tunnels | 2,000 |
SSL-VPN Throughput | 7 Gbps |
FortiGate NGFWs are powered by artificial intelligence (AI)-driven FortiGuard Labs and deliver proactive threat protection with high-performance inspection of both clear-text and encrypted traffic (including the industry’s latest encryption standard TLS 1.3) to stay ahead of the rapidly expanding threat landscape.
FortiGate NGFWs inspect traffic as it enters and leaves the network. These inspections happen at an unparalleled speed, scale, and performance and prevent everything from ransomware to DDoS attacks, without degrading user experience or creating costly downtime.
As an integral part of the Fortinet Security Fabric, FortiGate NGFWs can communicate within the comprehensive Fortinet security portfolio as well as third-party security solutions in a multivendor environment. To increase the speed of operations and response, they share threat intelligence and improve security posture and automated workflow.
PivIT Global provides the support you need through infrastructure, maintenance, and professional services. Contact us today to chat more about the Fortinet FortiGate NGFWs or how we can support you through our third-party maintenance and professional services offerings.