FortiGate 40F, 60F and 100E Series: A Comparison of Network Security Appliances
Fortinet is a leading provider of network security appliances that offer high performance, security efficacy and deep visibility for enterprises of all sizes. Fortinet’s FortiGate series of next generation firewalls (NGFWs) are designed to protect against cyber threats with security processor powered capabilities and continuous threat intelligence provided by FortiGuard Labs security services.
In this article, we will compare three models of the FortiGate series: the FortiGate 40F, the FortiGate 60F and the FortiGate 100E series. We will look at their features, specifications, bundles and use cases to help you decide which one is more suitable for your network security needs.
Features
All three models share some common features, such as:
They can be deployed at the small retail/home office, branch or big retail/SMB level, and can support various deployment modes such as Next Generation Firewall and Secure SD-WAN.
They can identify thousands of applications inside network traffic for deep inspection and granular policy enforcement, and protect against malware, exploits, and malicious websites in both encrypted and non-encrypted traffic.
They can prevent and detect against known and unknown attacks using continuous threat intelligence from AI-powered FortiGuard Labs security services, and provide automated mitigation to stop targeted attacks.
They can deliver industry-leading performance and protection for SSL encrypted traffic, including the latest TLS 1.3 standard with mandated ciphers.
They can deliver an extensive routing, switching, wireless controller and high performance IPsec VPN capabilities to consolidate networking and security functionality.
They can provide single pane of glass management with Network Operations Center (NOC) view, predefined compliance checklist, on-click remediation and unique threat score system.
They can enable Fortinet and Fabric-ready partners’ products to collaboratively integrate and provide end-to-end security across the entire attack surface, with interactive drill-down and topology viewers, network segmentation and universal ZTNA enforcement.
However, there are also some differences between the three models, such as:
The FortiGate 40F and the FortiGate 60F use the industry’s first SoC4 SD-WAN ASIC, which delivers the industry’s fastest application identification and steering for more than 5,000 applications. The FortiGate 100E series uses the NP6Lite network processor, which delivers high performance for firewall and VPN throughput.
The FortiGate 40F has two dedicated WAN ports, two dedicated FortiLink ports and two LAN/switch ports. The FortiGate 60F has two dedicated WAN ports, two dedicated FortiLink ports and five LAN/switch ports. The FortiGate 100E series has two dedicated WAN ports, two dedicated FortiLink ports (10GE) and twelve LAN/switch ports.
The FortiGate 40F has a hardware variant with built-in LTE. The FortiGate 60F has a hardware variant with built-in storage. The FortiGate 100E series has two models: the FG-100E and the FG-100EF. The FG-100EF has built-in storage.
Specifications
The following table summarizes some of the key specifications of the three models:
- Specification FG-40F FG-60F FG-100E
- Firewall Throughput 5 Gbps 10 Gbps 7.4 Gbps
- IPS Throughput N/A N/A 500 Mbps
- NGFW Throughput N/A N/A 360 Mbps
- Threat Protection Throughput 600 Mbps 700 Mbps 250 Mbps
- IPSec VPN Throughput N/A N/A N/A
- SSL Inspection Throughput 310 Mbps 630 Mbps N/A
- Max Overlay Tunnels N/A N/A N/A
- Interfaces Multiple GE RJ45 slots Multiple GE RJ45 slots Multiple GE RJ45, GE SFP slots
Bundles
All three models offer various bundles that include hardware plus FortiCare and FortiGuard Unified Threat Management (UTM) protection. These bundles provide comprehensive security features such as application control, web filtering, antivirus, anti-spam, intrusion prevention system (IPS), sandboxing, data loss prevention (DLP), SSL inspection, advanced threat protection (ATP) and more.
Some of the available bundles are:
- FG-40F-BDL-950-12: This bundle includes the FG-40F hardware plus 24x7 FortiCare and FortiGuard UTM protection for 1 year.
- FG-60F-BDL-950-12: This bundle includes the FG-60F hardware plus 24x7 FortiCare and FortiGuard UTM protection for 1 year.
- FG-60F-BDL-950-36: This bundle includes the FG-60F hardware plus 24x7 FortiCare and FortiGuard UTM protection for 3 years.
- FG-100E-BDL-950-12: This bundle includes the FG-100E hardware plus 24x7 FortiCare and FortiGuard UTM protection for 1 year.
Use Cases
The FortiGate 40F, 60F and 100E series can be used for various use cases, such as:
Secure SD-WAN: The FortiGate 40F and 60F can provide secure SD-WAN capabilities that enable converged networking and security across WAN edges. With secure SD-WAN, the FortiGate 40F and 60F can provide dynamic path selection, application steering, quality of service (QoS), WAN optimization, cloud on-ramp and zero-touch deployment. The FortiGate 100E series can also provide secure SD-WAN capabilities with high performance for firewall and VPN throughput.
Next Generation Firewall: The FortiGate 40F, 60F and 100E series can provide next generation firewall capabilities that protect against cyber threats with security processor powered high performance, security efficacy and deep visibility. The FortiGate 40F, 60F and 100E series can identify thousands of applications inside network traffic for deep inspection and granular policy enforcement, and protect against malware, exploits, and malicious websites in both encrypted and non-encrypted traffic.
Network Segmentation: The FortiGate 40F, 60F and 100E series can provide network segmentation capabilities that reduce complexity and risk in hybrid IT networks. The FortiGate 40F, 60F and 100E series can segment the network into logical zones based on business needs, and enforce granular policies and controls for each zone. The FortiGate 40F, 60F and 100E series can also provide universal ZTNA enforcement that automatically controls, verifies, and facilitates user access to applications, reducing lateral threats by providing access only to validated users.
Conclusion
The FortiGate 40F, 60F and 100E series are all powerful and flexible solutions for network security that deliver unparalleled performance, security effectiveness and deep visibility. They are part of the Fortinet Security Fabric, which enables end-to-end security across the entire attack surface. They are also independently tested and validated by third-party certifications, and backed by Fortinet’s global support network and threat research team.
The main difference between the three models is that the FortiGate 40F and 60F use the industry’s first SoC4 SD-WAN ASIC, which delivers the industry’s fastest application identification and steering for more than 5,000 applications, while the FortiGate 100E series uses the NP6Lite network processor, which delivers high performance for firewall and VPN throughput. The FortiGate 40F also has a hardware variant with built-in LTE, while the FortiGate 60F has a hardware variant with built-in storage. The FortiGate 100E series has two models: the FG-100E and the FG-100EF. The FG-100EF has built-in storage.
Depending on your network size, performance requirements, connectivity options, storage needs, budget and use cases, you can choose the model that best suits your network security needs. To learn more about the FortiGate 40F, 60F and 100E series
Comments
Post a Comment