Skip to content Skip to navigation Skip to footer

Next-Generation Firewall (NGFW)

Protect any Network Edge at any Scale

Gartner 2020 Magic Quadrant for Network Firewalls
next-generation firewall

What is a Next-Generation Firewall?

Next-generation firewalls (NGFWs) filter network traffic to protect an organization from internal and external threats. Along with maintaining features of stateful firewalls such as packet filtering, IPsec and SSL VPN support, network monitoring, and IP mapping features, NGFWs possess deeper content inspection capabilities. These capabilities provide the ability to identify attacks, malware, and other threats, and allow the NGFW to block these threats. NGFWs provide organizations with SSL inspection, application control, intrusion prevention, and advanced visibility across the entire attack surface. As the threat landscape rapidly expands due to co-location and multi-cloud adoption, and businesses grow to satisfy escalating customer needs, traditional firewalls fall further behind, unable to offer protection at scale, and leading to poor user experience and weak security posture. NGFWs not only block malware, but also include paths for future updates, giving them the flexibility to evolve with the threat landscape and keep the network secure as new threats arise. Next-generation firewalls are a vital component of implementing network security.

     

FortiGate 7121F

FortiGate Next-generation Firewalls are powered by purpose-built security processing units (SPUs), including the latest NP7 (Network Processor 7). They enable security-driven networking, and are ideal network firewalls for hybrid and hyperscale data centers. Fortinet NGFWs reduce cost and complexity by eliminating points products and consolidating industry-leading security capabilities such as secure sockets layer (SSL) inspection including the latest TLS1.3, web filtering, intrusion prevention system (IPS) to provide full visibility and protect any network edge. Fortinet NGFWs uniquely meet the performance needs of hyperscale and hybrid IT architectures, enabling organizations to deliver optimal user experience, and manage security risks for better business continuity.

Watch Now

Securing Your Data Center with FortiGate Network Firewalls

FortiGate Next-generation Firewalls are powered by purpose-built security processing units (SPUs), including the latest NP7 (Network Processor 7). They enable security-driven networking, and are ideal network firewalls for hybrid and hyperscale data centers. Fortinet NGFWs reduce cost and complexity by eliminating points products and consolidating industry-leading security capabilities such as secure sockets layer (SSL) inspection including the latest TLS1.3, web filtering, intrusion prevention system (IPS) to provide full visibility and protect any network edge. Fortinet NGFWs uniquely meet the performance needs of hyperscale and hybrid IT architectures, enabling organizations to deliver optimal user experience, and manage security risks for better business continuity.

Watch Now

FortiGate Next-Generation Firewalls

FortiGate NGFWs are network firewalls powered by purpose-built security processing units (SPUs) including the latest NP7 (Network Processor 7). They enable security-driven networking, and are ideal network firewalls for hybrid and hyperscale data centers.

Fortinet NGFWs reduce cost and complexity by eliminating points products and consolidating industry-leading security capabilities such as secure sockets layer (SSL) inspection including the latest TLS1.3, web filtering, intrusion prevention system (IPS) to provide fully visibility and protect any edge. Fortinet NGFWs uniquely meet the performance needs of hyperscale and hybrid IT architectures, enabling organizations to deliver optimal user experience, and manage security risks for better business continuity.

FortiGate next-generation firewalls inspect traffic at hyperscale as it enters and leaves the network. These inspections happen at unparalleled speed, scale, and performance to ensure that only legitimate traffic is allowed, all without degrading user experience or creating costly downtime.

As an integral part of the Fortinet Security Fabric, FortiGate NGFWs can communicate within the comprehensive Fortinet security portfolio as well as third-party security solutions in a multivendor environment. FortiGate NGFWs seamlessly integrate with artificial intelligence (AI)-driven FortiGuard and FortiSandbox services to protect against known and zero-day threats and improve operational efficiency through integration with Fabric Management Center.

 

2020 Gartner Critical Capabilities for Network Firewalls

Access Report

Learn more about our Next-Generation Firewall Solutions

FortiGate NGFW Use Cases

FortiGate NGFWs help organizations achieve digital transformation by protecting any edge and any application at any scale by improving operational efficiency, automating workflows, and delivering strong security posture with best-of-breed threat protection. FortiGate NGFWs offer the industry’s highest security compute rating and provides the following benefits:

Manage External Security Risks

With the growing amount of HTTPS traffic, organizations without TLS decryption strategies are effectively blind to the near 90% of HTTPS traffic that’s encrypted. Consequently, they are exposed to targeted malware campaigns and data loss. FortiGate NGFWs deliver security-driven networking to achieve full visibility into applications, threats, and networks. This protects any edge, with industry-validated best-of-breed security to keep operations running and achieve business continuity — Get details in the infographic.

Manage Internal Security Risks

Flat networks weaken when attacked because they don’t offer any advanced security inspection. FortiGate NGFWs deliver network-based segmentation to reduce the attack surface and inhibit the ability of an attack to spread laterally within the network, securing any segmentation (micro-, macro-, port- or application-based) with automated workflows, adaptive trust, and high-performance threat protection to achieve defense in depth, compliance and Trusted Application Access.

Manage Vulnerabilities

The majority of malware propagates by using known vulnerabilities and is a major cause of attacks. FortiGate NGFWs offer consolidated IPS without degrading performance to provide virtual patching and prevent against known and zero-day attacks and Reduce Cost & Complexity.

Provide Security at Hyperscale

Traditional firewalls choke when handling the high influx of user traffic required at hyperscale speeds. As a result, user experience suffers. Forgoing security opens the doors to attackers to disrupt your services. Fortinet NGFWs offer unique and unparalleled security to ensure your business web sites remain accessible, responsive, and provide an Optimal User Experience

Secure Cloud On-Ramp

Organizations want to adopt cloud for agility, resiliency, and to scale on demand. Moving data to and from the cloud securely at network speeds is required to maintain both user experience and compliance. Traditional firewalls don’t allow fast transfer of large data sets and as a result, slow down business. Fortinet next-generation firewalls offer rapid transfer of large data sets called Elephant Flows that can reach up to 100Gbps and can be encrypted with IPsec at the same throughput levels. Accelerate Cutting-Edge Research with 1800F.

Features and Benefits

Visibility Management

Full Visibility

Remove uncontrolled blind spots with SSL inspection of all encrypted flows, including TLS 1.3
defense icon

Threat Protection

Industry’s best-of-breed security with automated threat protection
Intelligently share threat information across the entire digital attack surface to provide quick and automated protection
Single console management automation, orchestration, and analytics
Independently certified and continuous threat intelligence updates provide robust protection from known and unknown attacks

FortiGate: Next-Generation Firewall News

Building a Cybersecurity Workforce

Advanced training for security professionals, technical training for IT professionals, and awareness training for teleworkers.

Learn More

Fortinet Security-Driven Networking

Fortinet’s Security-driven Networking strategy tightly integrates an organization’s network infrastructure and security architecture, enabling the network to scale and change without compromising security. This next generation approach is essential for effectively defending today’s highly dynamic environments – not only by providing consistent enforcement across today’s highly flexible perimeters, but by also weaving security deep into the network itself.

Watch Now
Network Firewall

 

Fortinet Network Firewall protects any Edge at Any Scale with Security Driven Networking.

Fortinet’s security-driven networking approach accelerates the convergence of networking and security to protect any edge, including enterprise data center, WAN, and cloud edges - all from a single network firewall platform

 

Network Firewall Use Cases

Security for Hybrid Data Centers

Requires full-visibility, segmentation, consistent end-to-end security, orchestration and automated threat protection irrespective of the location of IT infrastructure. Read how Fortinet can help.

Security for Hyperscale Data Centers

Requires security that can scale with escalating business demands. Read more to see how Fortinet can help.

Security for 5G

5G has the potential to deliver a whole new scope of enterprise-facing, value added services. Explore more for security considerations and requirements.

Secure SD-WAN

Without fully integrated security, SD-WAN becomes just another conduit for malware and cyber criminals to attack the network. Learn how Fortinet’s fully integrated Secure SD-WAN can help you secure the enterprise

FortiGate 1800F

The FortiGate 1800F enables high performance and dynamic Internal segmentation, and elephant flows that provide secure high-speed cloud on ramps. With high-performance IPsec encryption capabilities, enterprises can build massively scalable remote access solutions.

Learn More

FortiGate 4200F

The FortiGate 4200F series disrupts the network firewall marketplace with unprecedented scale and performance for next-generation firewall (NGFW) that protects hybrid and hyperscale data centers for enterprises and service providers. With VXLAN termination and re-origination, it allows enterprises to build highly scalable hybrid IT architectures.

Learn More

FortiGate 4400F

The FortiGate 4400F series introduces the world’s first Hyperscale Firewall that seamlessly enables Security-Driven Networking, manages all security risks for enterprises, and protects 5G networks. With high-port density, it offers encrypted and high-speed data center interconnects.

Learn More

FortiGate 7121F

The FortiGate 7121F series delivers industry’s highest performance for next generation firewall (NGFW) capabilities for large enterprises and service providers. With multiple high-speed interfaces, it is the first and the only NGFW that offers 400G connectivity, and a very high-port density, to provide super fast and secure data center inter-connects and high-throughput, for ideal deployments including enterprise edge, hybrid data center core, and across internal segments.

Learn More

FortiGate: Next-Generation Firewalls Models and Specifications

FortiGate NGFW is available in many different models to meet your needs ranging from entry-level hardware appliances to ultra high-end appliances to meet the most demanding threat protection performance requirements.  This ensures that enterprise campus, core data-center, or internal segments, FortiGate can fit seamlessly into your environment.  

Compare vendors and learn more about network firewall pricing

Compare Products

FortiGate: Chassis-based NGFW

Threat Protection
520Gbps
SSL Inspection Throughput
540Gbps
Interfaces
Multiple 10GE SFP+/SFP, Multiple 40GE QSFP28, Multiple 100GE QSFP28, Multiple 400GE QSFP28
Threat Protection
80 Gbps
SSL Inspection Throughput
79.9 Gbps
Network Interfaces
Multiple 10 GE SFP+/SFP, 40 GE QSFP+, 100 GE CFP2/QSFP28
Threat Protection
40 Gbps
SSL Inspection Throughput
50 Gbps
Network Interfaces
Multiple 10 GE SFP+/SFP, 40 GE QSFP+, 100 GE CFP2/QSFP28
Threat Protection
35 Gbps
SSL Inspection Throughput
50 Gbps
Network Interfaces
Multiple 10 GE SFP+/SFP, 40 GE/100 GE QSFP28
Threat Protection
13.5 Gbps
SSL Inspection Throughput
17 Gbps
Network Interfaces
2x 40GE QSFP+, 2x 10GE SFP+, 2x GE RJ45

Please see the product page for more information on these and many more Product features.  

FortiGate: Ultra high-end NGFW

Threat Protection
60 Gbps
SSL Inspection Throughput
90 Gbps
Network Interfaces
Multiple 40/100 GE QSFP28, 1/10/25 GE SFP28, 1/10 GE SFP+ and GE RJ45
Threat Protection
100 Gbps
SSL Inspection Throughput
130 Gbps
Network Interfaces
Multiple 40/100 GE QSFP28, 1/10/25 GE SFP28, 1/10 GE SFP+ and GE RJ45

Please see the product page for more information on these and many more Product features.  

FortiGate: High-end NGFW

Threat Protection
75 Gbps
SSL Inspection Throughput
70 Gbps
Network Interfaces
Multiple 100 GE/40GE QSFP28, multiple 25GE/10 GE SFP28/SFP+, two 25G SFP28 / 10GE SFP+ HA, multiple 1 GE RJ45
Threat Protection
45 Gbps
SSL Inspection Throughput
50 Gbps
Network Interfaces
Multiple 100 GE/40GE QSFP28, multiple 25GE/10 GE SFP28/SFP+, two 10GE SFP+ HA, multiple 1 GE RJ45
Threat Protection
20 Gbps
SSL Inspection Throughput
32 Gbps
Network Interfaces
10x 100GE QSFP28, 16x 10GE SFP+, 2x GE RJ45
Threat Protection
13.5 Gbps
SSL Inspection Throughput
30 Gbps
Network Interfaces
Multiple 40/100 GE QSFP+/QSFP28, 10 GE SFP+ and GE RJ45
Threat Protection
13 Gbps
SSL Inspection Throughput
24 Gbps
Network Interfaces
Multiple 40 GE QSFP+, 10 GE SFP+ and GE SFP
Threat Protection
30 Gbps
SSL Inspection Throughput
34 Gbps
Network Interfaces
6x 100 GE QSFP28, 32x 25 GE SFP28, 2x GE RJ45
Threat Protection
25 Gbps
SSL Inspection Throughput
30 Gbps
Network Interfaces
4x 100 GE QSFP28, 24x 25 GE SFP28, 2x GE RJ45
Threat Protection
17Gbps
SSL Throughput Inspection
21 Gbps
Network Interfaces
4x 40GE QSFP+, 4x 10GE RJ45, 16x 10GE/25GE SFP+/SFP28, 12x GE RJ45
Threat Protection
15 Gbps
SSL Inspection Throughput
20 Gbps
Network Interfaces
Multiple GE RJ45 and 10 GE SFP+ / GE SFP slots
Threat Protection
13 Gbps
SSL Inspection Throughput
22 Gbps
Network Interfaces
Multiple 10 GE SFP+ | Multiple GE SFP and GE RJ45
Threat Protection
13 Gbps
SSL Inspection Throughput
19 Gbps
Network Interfaces
Multiple 10 GE SFP+ | Multiple GE SFP and GE RJ45
Threat Protection
20 Gbps
SSL Throughput Inspection
20 Gbps
Network Interfaces
4x 100GE QSFP28, 16x 25GE SFP28 / 10GE SFP+, 16x10GE RJ45
Threat Protection
5.4 Gbps
SSL Inspection Throughput
11.5 Gbps
Network Interfaces
10x 10GE SFP+, 2x 10GE SFP+ bypass, 34x GE RJ45
Threat Protection
11 Gbps
SSL Throughput Inspection
17 Gbps
Network Interfaces
4x 40GE QSFP+, 20x 10GE/25GE SFP+/SFP28, 12x GE RJ45
Threat Protection
5.4 Gbps
SSL Inspection Throughput
12.5 Gbps
Network Interfaces
6x 10GE SFP+, , 34x GE RJ45
Threat Protection
9.1 Gbps
SSL Inspection Throughput
17 Gbps
Network Interfaces
Multiple 40 GE QSFP+, multiple 25GE, 10 GE SFP28/SFP+, two 10GE SFP+ HA, multiple 1 GE SFP, multiple 1 GE RJ45
Threat Protection
5 Gbps
SSL Inspection Throughput
10.5 Gbps
Network Interfaces
8x 10GE SFP+/GE SFP, 16x GE SFP, 18x GE RJ45
Threat Protection
4 Gbps
SSL Inspection Throughput
6 Gbps
Network Interfaces
4x 10GE SFP+/GE SFP, 16x GE SFP, 18x GE RJ45
Threat Protection
7.1 Gbps
SSL Throughput Inspection
10 Gbps
Network Interfaces
2x40GE QSFP+, 4x25GE SFP28, 4x10GE SFP+/SFP, 8x1GE SFP, 16xGE RJ45
Threat Protection
4 Gbps
SSL Throughput Inspection
4 Gbps
Network Interfaces
2x 10 GE SFP+, 16x GE SFP, 18x GE RJ45

Please see the product page for more information on these and many more Product features.  

FortiGate: Mid-range NGFW

Threat Protection
3 Gbps
SSL Inspection Throughput
4 Gbps
Network Interfaces
Multiple GE RJ45, GE SFP and 10 GE SFP+ slots
Threat Protection
7Gbps
SSL Inspection Throughput
8 Gbps
Network Interfaces
Multiple GERJ45, Multiple GE SFP, Multiple 10GE SFP+
Threat Protection
5 Gbps
SSL Inspection Throughput
4.8 Gbps
Network Interfaces
Multiple GE RJ45 and Multiple GE SFP Slots
Threat Protection Throughput
3 Gbps
SSL Throughput Inspection
4 Gbps
Network Interfaces
Multiple GE RJ45, Multiple GE SFP, Multiple 10GE SFP+
Threat Protection
1 Gbps
SSL Throughput Inspection
1 Gbps
Network Interfaces
2 x 10GE SFP+ Slots, 18 x GE RJ45 and 8x 1GE SFP and 4x GE RJ45/SFP Shared Media Pairs

Please see the product page for more information on these and many more Product features.  

FortiGate: Entry-level NGFW

Threat Protection
900 Mbps
SSL Inspection Throughput
715 Mbps
Network Interfaces
Multiple GE RJ45, GE SFP Slots, ByPass Variants
Threat Protection
250 Mbps
SSL Inspection Throughput
180 Mbps
Network Interfaces
Multiple GE RJ45 | Varients with internal storage | Variants with PoE/+ interfaces
Threat Protection
700 Mbps
SSL Throughput Inspection
630 Mbps
Network Interfaces
Multiple GE RJ45 | Variants with internal storage
Threat Protection
500 Mbps
SSL Throughput Inspection
460 Mbps
Network Interfaces
3 x GE RJ45, 2x shared media ports
Threat Protection
200 Mbps
SSL Throughput Inspection
175 Mbps
Network Interfaces
Multiple GE RJ45 | WiFi variants | Variants with internal storage | Variants with PoE/+ interfaces
Threat Protection
160 Mbps
SSL Throughput Inspection
185 Mbps
Network Interfaces
Multiple GE RJ45 | WiFi Variants | Variants with dual radios | Variants with internal storage
Threat Protection
600 Mbps
SSL Throughput Inspection
310 Mbps
Network Interfaces
Multiple GE RJ45 | WiFi Variants
Threat Protection
150 Mbps
SSL Throughput Inspection
160 Mbps
Network Interfaces
Multiple GE RJ45 | WiFi Variants

Please see the branch office firewall product page for more information on these and many more Product features.  

Virtual Machines

Throughput
12 Gbps
vCPU
1x vCPU core, (up to) 2 GB RAM
Throughput
12 Gbps
vCPU
1x vCPU core, (up to) 2 GB RAM
Throughput
15 Gbps
vCPU
2x vCPU cores, (up to) 4 GB RAM
Throughput
28 Gbps
vCPU
4x vCPU cores, (up to) 6 GB RAM
Throughput
33 Gbps
vCPU
8x vCPU cores, (up to) 12 GB RAM
Throughput
36 Gbps
vCPU
16x vCPU cores, (up to) 24 GB RAM
Throughput
50 Gbps
vCPU
32x vCPU cores, (up to) 48 GB RAM
vCPU
Unlimited vCPU cores and RAM

“V” Series VMs do not include VDOM licenses by default.  VDOM licenses can be added separately.

Actual performance may vary depending on the network and system configuration.

Performance metrics were observed using a DELL R740 (CPU Intel Xeon Platinum 8168 2.7 GHz, Intel X710 network adapters), running FOS v5.6.3. Tested with VMware vSphere 6.5 Enterprise Plus. SR-IOV is enabled.

Building a Cybersecurity Workforce

Advanced training for security professionals, technical training for IT professionals, and awareness training for teleworkers.

Learn More

Fortinet is proud to announce that, for the second consecutive year, we have been recognized as a Customers’ Choice in the April 2021 Gartner Peer Insights ‘Voice of the Customer’: Network Firewalls report.

The Gartner Peer Insights Customers’ Choice is a recognition of vendors in this market by verified end-user professionals, taking into account both the number of reviews and the overall user ratings. To ensure fair evaluation, Gartner maintains rigorous criteria for recognizing vendors with a high customer satisfaction rate. 

As an integral part of the Fortinet Security Fabric, our FortiGate Next-Generation Firewalls (NGFWs) enable a Security-driven Networking approach to protect any network edge and any user at scale, while ensuring high performance. And powered by Fortinet’s custom built Security Processing Units (SPUs), FortiGate NGFWs offer the industry’s highest security compute rating.

With FortiGate NGFWs, organizations can:  

Manage internal  and external  security  risks: FortiGate NGFWs provide complete visibility into applications, threats, and networks to keep operations running and ensure business continuity. Further, network-based segmentation stops lateral threats and protects against application vulnerabilities with enhanced AI/ML powered by FortiGuard services to thwart cyberattacks.  

Achieve  optimal ROI through consolidation: FortiGate NGFWs seamlessly converge and accelerate networking and multiple security functions into a single solution to reduce cost and optimize user experience. 

Improve operational efficiency: Fortinet’s Fabric Management Center streamlines operations across Security Fabric and extends beyond to 400+ ecosystem integrations with a consolidated view to simplify enterprise-wide workflows.

Here is a small sampling of the top reviews posted by Fortinet customers on the Gartner Peer Insights website*:

★★★★★
"Stable and Reliable Firewall" —  Cloud Infrastructure Engineer  in the  Finance Industry, Firm Size: 50M-250M USD
Overall user rating: 5/5 stars
"We use FortiGate in our company's HQ and many of the branches across the country. For a company that deals mainly with sensitive customers data, we needed to make sure that our networks are protected by the best firewall solution that's available (also thanks to Gartner reviews)." 

★★★★★
Tons Of Value in a Small Package—  Director  of  IT  in the  Retail IndustryFirm Size: 500M-1B USD
Overall user rating: 5/5 stars
"We decided to deploy the full Fortinet network stack including FortiGate 60E's to all 90+ of our retail locations. We further deployed FortiGate 200E's in HA pairs to all datacenter locations. These UTM appliances are some of the best and most feature rich I have ever used." 

★★★★★
Delivered What We Were Looking For— VP, Deputy CIO in the Finance Industry, Firm Size: 1B-3B USD
Overall user rating: 5/5 stars
“Our experience with implementing this solution has been very satisfactory. We went with Fortinet for price and simplicity and have received what we were looking for." 

★★★★★
"Strong Firewall Solution That Protects Your Business Systems" — Programmer  in the  Finance Industry, Firm Size: 50M – 250M USD 
Overall user rating: 5/5 stars

"Very easy to implement and configure, especially if you already have other Fortinet products in your network they all bind in to the one "security fabric" and provide a great overview of all your network devices and events in your network. Also the price is superb for such product."

★★★★★
"NGFW That Needs To Be In Your Company" — PHP Backend Developer  in the Finance Industry, Firm Size: 50M – 250M USD 
Overall user rating: 5/5 stars
"FortiGate NGFW is the main guard of our IT infrastructure. All network goes through it. It can easily handle all our traffic. Now, most of the employees are working from home so VPN is getting hit really bad, but that is not a problem for FortiGate."


Additional Gartner accolades for Fortinet include:

We continue to differentiate ourselves from the competition by accelerating convergence of networking and security using a single platform. 

We are proud to have again been named a Customers’ Choice and would like to thank all our customers who have submitted reviews. 

Learn more about this distinction and write your own review for the FortiGate Next-Generation Firewall on Gartner Peer Insights.

*Reviews have been edited to account for errors and readability.
**This research is currently archived and is only provided here for historical purposes.

The GARTNER PEER INSIGHTS CUSTOMERS’ CHOICE badge is a trademark and service mark of Gartner, Inc. and/or its affiliates and is used herein with permission. All rights reserved. Gartner Peer Insights Customers’ Choice constitute the subjective opinions of individual end-user reviews, ratings, and data applied against a documented methodology; they neither represent the views of, nor constitute an endorsement by, Gartner or its affiliates.Gartner does not endorse any vendor, product or service depicted in its research publications and does not advise technology users to select only those vendors with the highest ratings or other designation. Gartner research publications consist of the opinions of Gartner’s Research & Advisory organization and should not be construed as statements of fact. Gartner disclaims all warranties, expressed or implied, with respect to this research, including any warranties of merchantability or fitness for a particular purpose.

FortiGuard Security Services for FortiGate: Next-Generation Firewalls

FortiGate next-generation firewalls (NGFWs) are the backbone for a security-driven network.  Given the mission-critical role these play in any environment, Fortinet fortifies our leading NGFW's with best-in-class security, support, and cloud-based automation and management. 

Read on to find out how Fortinet subscriptions and services can help you get the most out of your FortiGate NGFW's:

Effective best-in-class security requires timely, global intelligence combined with fast decision-making and response across all critical vectors. Fortinet offers proven and one of the most certified artificial intelligence-driven protection available in the market today powered by FortiGuard Labs.

For customers implementing FortiGates as NGFWs, here’s how FortiGuard subscriptions can help:

  • Application Control: Fortinet boasts one of the largest applications database to safeguard your organization from risky application and allows you visibility and control of applications running in your network
  • Intrusion Prevention: Stop unwanted attempts to access your network that target vulnerabilities and configuration gaps. We block over 10 million intrusion attempts per minute.
  • Advanced Threats: Stop malicious files and payloads moving into your network with FortiGuard’s leading advanced malware, antivirus, and sandboxing capabilities. We stop over 35,000 malicious files per minute.

FortiGuard

Industry Leading AI-driven Protection and Intelligence

FortiCare

World-class Global Support and Professional Services

Mission critical security-driven networks deserve the best support available.  FortiCare provides 24x7 support options to help keep your FortiGates up and running.  We also have services to help you recover in the rare moments when bigger bumps seem to come out of nowhere such as our Premium RMA options with 4-hour replacements. 

Want faster resolution?  Choose our Advanced Support option.

Need help to get going with new deployments and integrations?  FortiCare can do it, too, with Professional Services and Resident Engineers!  Contact Sales to find out how.

Delivering world-class security is not all that we do! We can help our customers lower their total cost of ownership (TCO) and simplify day-to-day security operations through our FortiOps services, which provide cloud-based management, visibility, and automation across their Fortinet Security Fabric.

FortiOps

Cloud-based Management, Visibility, and Operations

Pro-Tips

  • Keep it simple and save some money too! Choose the Unified Protection Bundle for your FortiGates that includes 24x7 FortiCare, all the FortiGuard Services you see here, and more. Customers looking to also lower their TCO can add FortiOps options a-la-carte or order the Enterprise Protection Bundle for the most comprehensive and cost-effective protection and operations for their NGFW.
  • Don’t forget to add FortiCare Advanced Support and Premium RMA for the fastest way to recover from unexpected bumps. We have global team of experts standing by to assist you and global depots to get you parts fast!

Resources

Fuse Community


Product Demo

This full working demo lets you explore the many features of our FortiGate Next-Generation Firewall (NGFW). You’ll quickly see how FortiGate allows you to enable threat protection features such as IPS, Web-Filtering, Anti-Malware, Cloud Sand-box and SSL inspection to stop known and unknown threats. FortiGate also provides the full visibility and identifies applications, users and devices to identify issues quickly and intuitively. Be sure to check out our Security Fabric features to provide end to end topology view, security ratings based on the best practices and automation to reduce complexity. 

NSS Labs Next Generation Intrusion Prevention Systems (NGIPS) 2019

NSS Labs’ Next Generation Intrusion Prevention Systems (NGIPS) focuses on security effectiveness and TCO for NGIPS solutions across selected vendors tested. The Security Value Map (SVM) shows that FortiGate NGIPS achieved a cumulative blocking rate of 99.18% for FortiGate 100F and the lowest TCO at $2 per protected Mbps. Fortinet builds world-class NGIPS appliances that requires highest possible performance, best of breed security and having another “Recommended” IPS rating from NSS Labs is just another proof point.

NSS Labs Next Generation Intrusion Prevention Systems (NGIPS) 2019

 

NSS Labs 2019 NGFW Group Test Results


With these reports, you can see Fortinet’s NGFW strong performance results that were conducted with new traffic mix (70% HTTPS + 30% HTTP) . Fortinet’s NGFW demonstrated high NGFW/SSL performance and low TCO.

Please review the comparative reports to learn more:

 

NSS Labs Breach Prevention Systems (BPS) Test 2019

NSS Labs BPS focuses on both detecting and blocking of exploits, advanced malware, and evasions which is critical in reducing the risk of breaches. This test helps emphasize the importance in the automation of the advanced threat response cycle of prevent-detect-mitigate across a number of threat vectors including web, email, and endpoint. Fortinet's Breach Protection tested solution consists of FortiSandbox, FortiGate, and FortiClient integrated together, earned a Recommended award by achieving an overall Security Effectiveness of 97.8% and offering the lowest 3-year TCO.

 

NSS Labs NGFW/SSL 2018 SVM and Report

NSS Labs Next Generation Firewall (NGFW) focuses on enterprise edge and internal segments along with growing need of SSL inspection. The Security Value Map (SVM) shows that FortiGate 500E achieved high cumulative blocking rate at 99.3% and the lowest TCO at $2.00 per protected Mbps. FortiGate 500E also received high SSL inspection performance and a very minimal performance degradation based on our purpose-built security processor technology. Fortinet received fifth consecutive NSS Labs NGFW “Recommended” rating showcase the consistency and commitment to customer need.

NSS labs 2018 SVM diagram

NSS Labs NGFW 2018 Comparative Reports

NSS Labs NGFW Comparative reports provide detailed comparison of all 10 participated vendors for security, performance and total cost of ownership (TCO). With these reports, you can compare Fortinet’s outstanding results with Palo Alto Networks, Checkpoint, Cisco and many other vendors. In several areas, Fortinet showcased the best results:  

  • High SSL Inspection Performance with industry's least performance degradation
  • Fortinet delivered 100% block rate for live exploits
  • Fortinet showcased highest value among all vendors
  • NGFW performance is 30% better than claimed in data sheet
  • Fortinet delivered best ultra-low latency across different packet sizes

Security - NGFW Comparative Report

Performance - NGFW Comparative Report

TCO - NGFW Comparative Report

SVM - NGFW Comparative Report

NSS Labs DCIPS 2018 SVM and Report

NSS Labs’ Data Center Intrusion Prevention Systems (DCIPS) focuses on data center environments, especially vulnerabilities commonly found in servers. The Security Value Map (SVM) shows that FortiGate IPS achieved the highest cumulative blocking rate at 98.73% and the lowest TCO at $3 per protected Mbps. Fortinet builds world-class IPS appliances and another “Recommended” IPS rating from NSS Labs proves this.

NSS Labs DCSG 2017 SVM and Report

NSS Labs’ DCSG test is a comprehensive Data Center Security Gateway (DCSG) test, including several tests to measure relevant security effectiveness and Intrusion Prevention (IPS) performance using live exploits including “weaponized” exploits (97.9% and 98% block rate respectively for Fortinet FortiGate 7060E and FortiGate 3000D) and resistance to evasion techniques (100% block rate for Fortinet). The FortiGate 7060E and 3000D both achieved “Recommended” status, with a leading combination of Security Effectiveness and Value per protected Megabit Per Second (Mbps) in the NSS Labs Security Value Map (SVM).

NSS Labs NGFW 2017 SVM

FortiGate 3200D and 600D enterprise firewalls both offer a winning combination of security effectiveness, performance, and value, earning Fortinet its fourth consecutive NSS Labs NGFW Recommended rating. Fortinet excelled in continuous live testing, blocking 99.71% of exploits used in active attack campaigns every day and delivered the highest performance scores with 18.5 Gbps throughput and an average latency of 4.6 microseconds, regardless of packet size and including real-world traffic processing.

NSS Labs Breach Prevention Systems (BPS) Test 2017

NSS Labs introduced a new group test, BPS focused on detecting and blocking exploits, advanced malware, and evasions. This helps validate the advanced threat response cycle of prevent-detect-mitigate across a number of threat vectors including web, email, and endpoint. Fortinet's Security Fabric consisting of FortiSandbox, FortiGate, FortiMail, and FortiClient integrated together, earned a Recommended award by achieving a block rate of 99.6% and offering the lowest 3-year TCO.

NSS Labs NGFW 2016 SVM

NSS Labs’ Next Generation Firewall (NGFW) real-world testing reveals that Fortinet delivers a winning combination of security, network performance, and total cost of ownership (TCO). Fortinet was nearly perfect; scoring 99.6% in overall security effectiveness. The FortiGate 3200D was rated by NSS at 19 Gbps, 37% above its data sheet specifications, with excellent TCO where the value increased based on actual performance compared to the claimed specifications.

NSS Labs 2015 Next Generation IPS Test

In 2015, NSS Labs conducted a group test of next generation IPS solutions to assess their abilities to identify both the applications and the users on their internal networks, protect the enterprise user against threats/exploits, and catch sophisticated attacks while producing as few false positives as possible. Demonstrating 99% effectiveness and superior value, Fortinet FortiGate earned the NSS Labs Recommendation.

FortiGate: Next-Generation Firewall Alliance Partners

For a complete list of all the Alliance partners go to www.fortinet.com/fabricready.

Below is a list of current FortiGate Next-Generation Firewall Alliance Partners: