FortiWiFi 50G
FortiGate 50G with an integrated access point, one box for a small site
- Threat protection
- 1.1 Gbps
- IPsec VPN
- 4.5 Gbps
- Wireless
- Integrated AP
Front panel
- RJ45 copper
The FortiWiFi 50G is a FortiGate 50G with a wireless radio built in. The firewall specifications are identical, 1.1 Gbps of threat protection, 4.5 Gbps of IPsec VPN and 720,000 concurrent sessions, so everything that applies to the FortiGate 50G applies here unchanged.
The most sensible default for a new wireless branch. It carries the widest variant range in the family, WiFi, DSL, SFP, PoE and 5G, so a multi-site estate with mixed uplink types can standardise on one model, one spares pool and one template. Its 1.3 Gbps of SSL inspection is more than four times the 40F's, which is the number that matters once inspection is switched on.
How to work out whether it fits
The arithmetic a datasheet leaves out. If any of it does not match your situation, that is worth a call rather than a guess.
Firewall sizing follows the FortiGate 50G, 1.1 Gbps threat protection and 1.3 Gbps SSL inspection, which is the figure that matters once inspection is on. The wireless decision is separate and simpler: one radio, one space. Where this model earns its place is variant standardisation across a mixed estate, so size the fleet rather than the site: pick the variant per location, but keep one model number, one spares pool and one template.
What to order alongside the FortiWiFi 50G
The published threat protection figure for this model is measured with IPS, application control and malware protection all running. Those arrive as a FortiGuard subscription, so the bundle you choose decides whether the hardware can reach the number you sized it on. Every bundle already includes FortiCare Premium 24x7 support.
| Bundle | What it adds | 1 yearlist price | 3 yearslist price | 5 yearslist price |
|---|---|---|---|---|
| Enterprise ProtectionENT | The broadest bundle. Everything in UTP, plus the services that cover data, SaaS posture and attack-surface visibility, plus inline zero-day malware prevention. | on quote | on quote | on quote |
| Unified Threat ProtectionUTP | The traditional mid-tier: perimeter defence covering network, file, web and email threats. Everything most sites actually switch on. | on quote | on quote | on quote |
| Advanced Threat ProtectionATP | The narrow bundle: IPS and the full malware stack including cloud sandboxing, without the web and email filtering layers. | on quote | on quote | on quote |
These are Fortinet list prices. You will not pay them.
Every quote we write is discounted from list, and how far below depends on quantity, term and whether we register the deal with Fortinet. Longer terms also price better per year, which is why three and five year bundles are usually the better buy on a device you intend to keep through a refresh cycle. Part numbers follow Fortinet’s standard bundled convention; not every model carries every combination, so we confirm the exact orderable SKU before anything is placed.
FortiWiFi 50G is number 5 of 6 in this family
Ranked on threat protection throughput, the figure that separates these models. All values are Fortinet’s own and cited on each product page.
FortiWiFi 80F
900 Mbps
22% less than the FortiWiFi 50G. Worth it only if your measured requirement genuinely fits inside it.
FortiWiFi 50G
1.1 Gbps
6 models in this family span 500 Mbps to 1.3 Gbps.
FortiWiFi 70G
1.3 Gbps
18% more headroom. Worth costing if you expect growth inside the refresh cycle, replacing early is dearer than buying up once.
Highlights
- Identical firewall specification to the FortiGate 50G
- Integrated access point, no separate AP or controller
- Manages up to 16 additional FortiAPs as the site grows
- Region-locked SKU; we confirm the correct part number
Typical deployments
- Multi-site branch estates with mixed uplink types
- New wireless deployments standardising on a single model
- Sites needing PoE for a camera or phone without a separate switch
The numbers, with their conditions
Every figure below is Fortinet's own, with the test conditions it was measured under.
Performance
Fortinet's published figures. Firewall throughput is measured on UDP with no inspection enabled, size your deployment on threat protection throughput instead, which is measured with firewall, IPS, application control and malware protection all running against an enterprise traffic mix.
| Firewall throughput (1518 / 512 / 64 byte UDP) | 5 / 5 / 4 Gbps |
|---|---|
| IPsec VPN throughput (512 byte)IPsec VPN performance test uses AES256-SHA256. | 4.5 Gbps |
| IPS throughput (enterprise mix)IPS, application control, NGFW and threat protection are measured with logging enabled. | 2.25 Gbps |
| NGFW throughput (enterprise mix)NGFW performance is measured with firewall, IPS and application control enabled, enterprise mix traffic. | 1.25 Gbps |
| Threat protection throughput (enterprise mix)Threat protection performance is measured with firewall, IPS, application control and malware protection enabled, enterprise mix traffic. | 1.1 Gbps |
| SSL inspection throughput (IPS, avg. HTTPS)SSL inspection performance values use an average of HTTPS sessions of different cipher suites. | 1.3 Gbps |
| Application control throughput (HTTP 64K) | 2.8 Gbps |
| Firewall latency | 2.42 µs |
Capacity
| Concurrent sessions | 720,000 |
|---|---|
| New sessions / second | 85,000 |
| Firewall policies | 2,000 |
| Max gateway-to-gateway IPsec tunnels | 200 |
| Max client-to-gateway IPsec tunnels | 250 |
| SSL VPN throughput | , |
| Concurrent SSL VPN users (recommended max, tunnel mode) | , |
| Virtual domains (default / max) | 5 / 5 |
Security Fabric capacity
How much of the rest of the Fabric this model manages directly, with no separate controller.
| Max managed FortiAPs (total / tunnel) | 16 / 8 |
|---|---|
| Max managed FortiSwitches | 8 |
| Max FortiTokens | 500 |
Hardware
| Interfaces | 5x GE RJ45 |
|---|---|
| Local storage | 64 GB (51G) |
| Power supplies | Single AC PS |
| Form factor | Desktop |
| Variants | WiFi, DSL, SFP, PoE, 5G |
Wireless
Fortinet does not publish the wireless radio generation per model in the Product Matrix, and the radio and permitted transmit power vary by regional SKU. We confirm the exact wireless specification and the correct regional part number against your country before ordering, a wrong-region FortiWiFi is not a returnable configuration error.
| Integrated access point | Yes; this is the wireless variant of the FortiGate 50G |
|---|---|
| Radio generation | Varies by model and regional SKU, confirmed at quote |
| Regulatory domain | Region-locked SKU, must match country of deployment |
Sources
- Fortinet Product Matrix (July 2026), retrieved 2026-09-01
- Fortinet product line overview, retrieved 2026-09-01
Reproduced from Fortinet published documentation and subject to change without notice. Where a figure is load-bearing for your design, ask us to confirm it in writing before you order; we will.