Skip to main content
Authorized Fortinet reseller · DynaScale Technologies888-907-0723 · 24/7[email protected]
FG-4800F

FortiGate 4800F

3.1 Tbps firewall and 1.8 billion sessions, the largest fixed FortiGate

Threat protection
75 Gbps
Firewall throughput
3.1 Tbps
IPsec VPN
800 Gbps
Concurrent sessions
280 Million

Front panel

Front panel layout for the FortiGate 4800F: 8 × 400G QSFP, 12 × 200G QSFP56, 12 × 50G SFP56, 2 × 10G RJ458× 400G10× 200G2× 200G12× 50G2× 10G
34 fixed ports. Schematic drawn from the published interface list, port order and physical arrangement are indicative, not to scale. Dashed outlines mark ports whose connector type Fortinet does not state; the speed is published, the cage type is inferred.
  • QSFP cage
  • SFP cage
  • RJ45 copper

The 4800F is the highest-capacity non-chassis FortiGate: 3.1 Tbps of firewall throughput, 800 Gbps of IPsec VPN and, with Hyperscale, 1.8 billion concurrent sessions at 25 million new sessions per second. Eight 400GE and twelve 200GE QSFP56 ports in 4 RU, with DC and NEBS variants.

Is this the right model?

Where it fits, and where it stops fitting

Compare the whole range

A carrier and hyperscale platform. Be clear-eyed about what it is: its 75 Gbps of threat protection is identical to the 4400F, so every additional dollar over that model buys forwarding capacity and session scale, not inspection. Deployed for the right workload it is unmatched; deployed to inspect enterprise traffic it is an expensive way to get 75 Gbps.

Support and subscriptions

What to order alongside the FortiGate 4800F

The published threat protection figure for this model is measured with IPS, application control and malware protection all running. Those arrive as a FortiGuard subscription, so the bundle you choose decides whether the hardware can reach the number you sized it on. Every bundle already includes FortiCare Premium 24x7 support.

FortiGuard bundle options for the FortiGate 4800F
BundleWhat it adds1 yearlist price3 yearslist price5 yearslist price
Enterprise ProtectionENTThe broadest bundle. Everything in UTP, plus the services that cover data, SaaS posture and attack-surface visibility, plus inline zero-day malware prevention.$800,280FG-4800F-BDL-809-12$1,497,960FG-4800F-BDL-809-36$2,195,640FG-4800F-BDL-809-60
Unified Threat ProtectionUTPThe traditional mid-tier: perimeter defence covering network, file, web and email threats. Everything most sites actually switch on.$738,720FG-4800F-BDL-950-12$1,313,280FG-4800F-BDL-950-36$1,887,840FG-4800F-BDL-950-60
Advanced Threat ProtectionATPThe narrow bundle: IPS and the full malware stack including cloud sandboxing, without the web and email filtering layers.FG-4800F-BDL-928-12FG-4800F-BDL-928-36FG-4800F-BDL-928-60

These are Fortinet list prices. You will not pay them.

Every quote we write is discounted from list, and how far below depends on quantity, term and whether we register the deal with Fortinet. Longer terms also price better per year, which is why three and five year bundles are usually the better buy on a device you intend to keep through a refresh cycle. Part numbers follow Fortinet’s standard bundled convention; not every model carries every combination, so we confirm the exact orderable SKU before anything is placed.

What each bundle includesFortiCare tiersAll support options
Where it sits in the range

FortiGate 4800F is number 8 of 11 in this family

Ranked on threat protection throughput, the figure that separates these models. All values are Fortinet’s own and cited on each product page.

One step down

FortiGate 4400F

75 Gbps

0% less than the FortiGate 4800F. Worth it only if your measured requirement genuinely fits inside it.

This model

FortiGate 4800F

75 Gbps

11 models in this family span 25 Gbps to 200 Gbps.

One step up

FortiGate 3000G

80 Gbps

7% more headroom. Worth costing if you expect growth inside the refresh cycle, replacing early is dearer than buying up once.

Highlights

  • 3.1 Tbps firewall throughput, 800 Gbps IPsec VPN
  • Hyperscale: 1.8 billion sessions, 25M new sessions/sec
  • 8x 400GE and 12x 200GE QSFP56
  • DC and NEBS variants for carrier facilities

Typical deployments

  • Mobile core and 5G user-plane security
  • Carrier CGNAT at national scale
  • Hyperscale data-centre interconnect
Specifications

The numbers, with their conditions

Every figure below is Fortinet's own, with the test conditions it was measured under.

Performance

Fortinet's published figures. Firewall throughput is measured on UDP with no inspection enabled, size your deployment on threat protection throughput instead, which is measured with firewall, IPS, application control and malware protection all running against an enterprise traffic mix.

Performance
Firewall throughput (1518 / 512 / 64 byte UDP)3.1 / 3.1 / 0.93 Tbps
IPsec VPN throughput (512 byte)IPsec VPN performance test uses AES256-SHA256.800 Gbps
IPS throughput (enterprise mix)IPS, application control, NGFW and threat protection are measured with logging enabled.87 Gbps
NGFW throughput (enterprise mix)NGFW performance is measured with firewall, IPS and application control enabled, enterprise mix traffic.77 Gbps
Threat protection throughput (enterprise mix)Threat protection performance is measured with firewall, IPS, application control and malware protection enabled, enterprise mix traffic.75 Gbps
SSL inspection throughput (IPS, avg. HTTPS)SSL inspection performance values use an average of HTTPS sessions of different cipher suites.63 Gbps
Application control throughput (HTTP 64K)180 Gbps
Firewall latency3.6 µs

Capacity

Capacity
Concurrent sessions280 Million / 1.8 Billion
New sessions / second915,000 / 25 Million
Firewall policies400,000
Max gateway-to-gateway IPsec tunnels40,000
Max client-to-gateway IPsec tunnels200,000
SSL VPN throughput18 Gbps
Concurrent SSL VPN users (recommended max, tunnel mode)30,000
Virtual domains (default / max)10 / 500

Security Fabric capacity

How much of the rest of the Fabric this model manages directly, with no separate controller.

Security Fabric capacity
Max managed FortiAPs (total / tunnel)8,192 / 4,096
Max managed FortiSwitches300
Max FortiTokens20,000

Hardware

Hardware
Interfaces8x 400GE, 12x 200GE QSFP56, 12x 50GE SFP56, 2x 10GE RJ45
Local storage2x 1.92 TB (4801F)
Power supplies4 PS
Form factor4 RU
VariantsDC, NEBS

Model-specific caveats

Fortinet conditions that apply to this model in particular. Worth reading before you order.

Model-specific caveats
Note 1The second figure requires a Hyperscale license.

Sources

Reproduced from Fortinet published documentation and subject to change without notice. Where a figure is load-bearing for your design, ask us to confirm it in writing before you order; we will.

Buyers also compare