Skip to main content
Authorized Fortinet reseller · DynaScale Technologies888-907-0723 · 24/7[email protected]
FG-70F

FortiGate 70F

The 60F's port count with 1.5 million sessions and working SSL VPN

Threat protection
800 Mbps
Firewall throughput
10 Gbps
IPsec VPN
6.1 Gbps
Concurrent sessions
1.5 Million

Front panel

Front panel layout for the FortiGate 70F: 10 × 1G RJ4510× 1G
10 fixed ports. Schematic drawn from the published interface list, port order and physical arrangement are indicative, not to scale.
  • RJ45 copper

The 70F takes the 60F's ten-port layout and roughly doubles the session table to 1.5 million while raising firewall policies from 2,000 to 5,000. Critically, it publishes real SSL VPN figures, 405 Mbps and 200 concurrent users, where the 60F publishes none.

Is this the right model?

Where it fits, and where it stops fitting

Compare the whole range

Choose the 70F over the 60F when the site has many concurrent connections rather than much bandwidth, or when you need remote-access SSL VPN terminated locally. If neither applies, the 70G offers substantially more inspection performance for a similar footprint.

Support and subscriptions

What to order alongside the FortiGate 70F

The published threat protection figure for this model is measured with IPS, application control and malware protection all running. Those arrive as a FortiGuard subscription, so the bundle you choose decides whether the hardware can reach the number you sized it on. Every bundle already includes FortiCare Premium 24x7 support.

FortiGuard bundle options for the FortiGate 70F
BundleWhat it adds1 yearlist price3 yearslist price5 yearslist price
Enterprise ProtectionENTThe broadest bundle. Everything in UTP, plus the services that cover data, SaaS posture and attack-surface visibility, plus inline zero-day malware prevention.FG-70F-BDL-809-12FG-70F-BDL-809-36FG-70F-BDL-809-60
Unified Threat ProtectionUTPThe traditional mid-tier: perimeter defence covering network, file, web and email threats. Everything most sites actually switch on.FG-70F-BDL-950-12FG-70F-BDL-950-36FG-70F-BDL-950-60
Advanced Threat ProtectionATPThe narrow bundle: IPS and the full malware stack including cloud sandboxing, without the web and email filtering layers.FG-70F-BDL-928-12FG-70F-BDL-928-36FG-70F-BDL-928-60

These are Fortinet list prices. You will not pay them.

Every quote we write is discounted from list, and how far below depends on quantity, term and whether we register the deal with Fortinet. Longer terms also price better per year, which is why three and five year bundles are usually the better buy on a device you intend to keep through a refresh cycle. Part numbers follow Fortinet’s standard bundled convention; not every model carries every combination, so we confirm the exact orderable SKU before anything is placed.

What each bundle includesFortiCare tiersAll support options
Where it sits in the range

FortiGate 70F is number 4 of 8 in this family

Ranked on threat protection throughput, the figure that separates these models. All values are Fortinet’s own and cited on each product page.

One step down

FortiGate 60F

700 Mbps

14% less than the FortiGate 70F. Worth it only if your measured requirement genuinely fits inside it.

This model

FortiGate 70F

800 Mbps

8 models in this family span 500 Mbps to 2.2 Gbps.

One step up

FortiGate 80F

900 Mbps

13% more headroom. Worth costing if you expect growth inside the refresh cycle, replacing early is dearer than buying up once.

Highlights

  • 1.5 million concurrent sessions, more than double the 60F
  • 405 Mbps SSL VPN, 200 concurrent tunnel-mode users
  • 5,000 firewall policies
  • 128 GB storage on the 71F variant

Typical deployments

  • Branches terminating their own remote-access VPN
  • Session-heavy sites, many small connections rather than large transfers
  • Policy-heavy deployments that exceed the 60F's 2,000-rule ceiling
Specifications

The numbers, with their conditions

Every figure below is Fortinet's own, with the test conditions it was measured under.

Performance

Fortinet's published figures. Firewall throughput is measured on UDP with no inspection enabled, size your deployment on threat protection throughput instead, which is measured with firewall, IPS, application control and malware protection all running against an enterprise traffic mix.

Performance
Firewall throughput (1518 / 512 / 64 byte UDP)10 / 10 / 6 Gbps
IPsec VPN throughput (512 byte)IPsec VPN performance test uses AES256-SHA256.6.1 Gbps
IPS throughput (enterprise mix)IPS, application control, NGFW and threat protection are measured with logging enabled.1.4 Gbps
NGFW throughput (enterprise mix)NGFW performance is measured with firewall, IPS and application control enabled, enterprise mix traffic.1 Gbps
Threat protection throughput (enterprise mix)Threat protection performance is measured with firewall, IPS, application control and malware protection enabled, enterprise mix traffic.800 Mbps
SSL inspection throughput (IPS, avg. HTTPS)SSL inspection performance values use an average of HTTPS sessions of different cipher suites.700 Mbps
Application control throughput (HTTP 64K)1.8 Gbps
Firewall latency2.54 µs

Capacity

Capacity
Concurrent sessions1.5 Million
New sessions / second35,000
Firewall policies5,000
Max gateway-to-gateway IPsec tunnels200
Max client-to-gateway IPsec tunnels500
SSL VPN throughput405 Mbps
Concurrent SSL VPN users (recommended max, tunnel mode)200
Virtual domains (default / max)10 / 10

Security Fabric capacity

How much of the rest of the Fabric this model manages directly, with no separate controller.

Security Fabric capacity
Max managed FortiAPs (total / tunnel)64 / 32
Max managed FortiSwitches24
Max FortiTokens500

Hardware

Hardware
Interfaces10x GE RJ45
Local storage128 GB (71F)
Power suppliesSingle AC PS
Form factorDesktop
Variants,

Sources

Reproduced from Fortinet published documentation and subject to change without notice. Where a figure is load-bearing for your design, ask us to confirm it in writing before you order; we will.

Buyers also compare