Skip to main content
Authorized Fortinet reseller · DynaScale Technologies888-907-0723 · 24/7[email protected]
FG-200G

FortiGate 200G

11 million sessions and 27.8 Gbps application control in 1 RU

Threat protection
6 Gbps
Firewall throughput
39 Gbps
IPsec VPN
36 Gbps
Concurrent sessions
11 Million

Front panel

Front panel layout for the FortiGate 200G: 8 × 10G SFP+, 8 × 5G RJ45, 10 × 1G RJ45, 4 × 1G SFP8× 10G8× 5G2× 1G8× 1G4× 1G
30 fixed ports. Schematic drawn from the published interface list — port order and physical arrangement are indicative, not to scale.
  • SFP cage
  • RJ45 copper

The 200G more than doubles the 120G's threat protection to 6 Gbps and multiplies application control fourfold to 27.8 Gbps, while lifting the session table from 3 to 11 million and new sessions per second from 140,000 to 400,000. It carries eight 10GE SFP+ ports and eight 5GE copper.

Is this the right model?

Where it fits — and where it stops fitting

Compare the whole range

The natural campus-edge model for a mid-size organisation. The jump from the 120G is large in exactly the areas that matter under real load — sessions, new session rate and application control — for a modest increase in footprint. Its 25 VDOMs also open up per-department segmentation that the 120G's 10 cannot support.

Highlights

  • 6 Gbps threat protection, 27.8 Gbps application control
  • 11 million sessions, 400,000 new sessions/sec
  • 8x 10GE SFP+ and 8x 5GE RJ45
  • Up to 25 VDOMs

Typical deployments

  • Campus edge for organisations of several hundred to a few thousand users
  • Multi-department segmentation using VDOMs
  • Sites with heavy application-control policy
Specifications

The numbers, with their conditions

Every figure below is Fortinet's own, with the test conditions it was measured under.

Performance

Fortinet's published figures. Firewall throughput is measured on UDP with no inspection enabled — size your deployment on threat protection throughput instead, which is measured with firewall, IPS, application control and malware protection all running against an enterprise traffic mix.

Performance
Firewall throughput (1518 / 512 / 64 byte UDP)39 / 39 / 26.5 Gbps
IPsec VPN throughput (512 byte)IPsec VPN performance test uses AES256-SHA256.36 Gbps
IPS throughput (enterprise mix)IPS, application control, NGFW and threat protection are measured with logging enabled.9 Gbps
NGFW throughput (enterprise mix)NGFW performance is measured with firewall, IPS and application control enabled, enterprise mix traffic.7 Gbps
Threat protection throughput (enterprise mix)Threat protection performance is measured with firewall, IPS, application control and malware protection enabled, enterprise mix traffic.6 Gbps
SSL inspection throughput (IPS, avg. HTTPS)SSL inspection performance values use an average of HTTPS sessions of different cipher suites.7 Gbps
Application control throughput (HTTP 64K)27.8 Gbps
Firewall latency4.36 µs

Capacity

Capacity
Concurrent sessions11 Million
New sessions / second400,000
Firewall policies10,000
Max gateway-to-gateway IPsec tunnels2,000
Max client-to-gateway IPsec tunnels16,000
SSL VPN throughput3 Gbps
Concurrent SSL VPN users (recommended max, tunnel mode)500
Virtual domains (default / max)10 / 25

Security Fabric capacity

How much of the rest of the Fabric this model manages directly, with no separate controller.

Security Fabric capacity
Max managed FortiAPs (total / tunnel)256 / 128
Max managed FortiSwitches64
Max FortiTokens5,000

Hardware

Hardware
Interfaces8x 10GE SFP+, 8x 5GE RJ45, 10x GE RJ45, 4x GE SFP
Local storage480 GB (201G)
Power suppliesDual AC PS
Form factor1 RU
Variants

Model-specific caveats

Fortinet conditions that apply to this model in particular. Worth reading before you order.

Model-specific caveats
Note 1Uses an RSA-2048 certificate.

Sources

Reproduced from Fortinet published documentation and subject to change without notice. Where a figure is load-bearing for your design, ask us to confirm it in writing before you order — we will.

Buyers also compare