Skip to main content
Authorized Fortinet reseller · DynaScale Technologies888-907-0723 · 24/7[email protected]
FG-2600F

FortiGate 2600F

The entry point to the high-end range — 25 Gbps inspected in 2 RU

Threat protection
25 Gbps
Firewall throughput
198 Gbps
IPsec VPN
55 Gbps
Concurrent sessions
24 Million

Front panel

Front panel layout for the FortiGate 2600F: 4 × 100G QSFP28, 16 × 25G SFP28, 16 × 10G RJ45, 2 × 10G SFP+, 2 × 1G RJ454× 100G14× 25G2× 25G16× 10G2× 10G2× 1G
40 fixed ports. Schematic drawn from the published interface list — port order and physical arrangement are indicative, not to scale.
  • QSFP cage
  • SFP cage
  • RJ45 copper

The 2600F delivers 25 Gbps threat protection and 20 Gbps SSL inspection with 24 million concurrent sessions, rising to 40 million with Hyperscale. Sixteen 25GE SFP28 and sixteen 10GE copper ports alongside four 100GE QSFP28 make it unusually well-connected for its tier.

Is this the right model?

Where it fits — and where it stops fitting

Compare the whole range

The right first step into the high-end range for a data centre that needs real inspection depth rather than the 1800F's session scale. Its 16x 10GE RJ45 ports are worth noting — copper 10GE at this density is uncommon and saves a great deal on optics if your servers are copper-attached.

Highlights

  • 25 Gbps threat protection, 20 Gbps SSL inspection
  • 16x 10GE RJ45 copper — unusual at this tier, saves on optics
  • 24M sessions, 40M with Hyperscale
  • 500 VDOMs

Typical deployments

  • Mid-size data-centre perimeter with full inspection
  • Copper-attached server environments avoiding an optics refresh
  • Multi-tenant hosting needing up to 500 VDOMs
Specifications

The numbers, with their conditions

Every figure below is Fortinet's own, with the test conditions it was measured under.

Performance

Fortinet's published figures. Firewall throughput is measured on UDP with no inspection enabled — size your deployment on threat protection throughput instead, which is measured with firewall, IPS, application control and malware protection all running against an enterprise traffic mix.

Performance
Firewall throughput (1518 / 512 / 64 byte UDP)198 / 196 / 140 Gbps
IPsec VPN throughput (512 byte)IPsec VPN performance test uses AES256-SHA256.55 Gbps
IPS throughput (enterprise mix)IPS, application control, NGFW and threat protection are measured with logging enabled.31 Gbps
NGFW throughput (enterprise mix)NGFW performance is measured with firewall, IPS and application control enabled, enterprise mix traffic.27 Gbps
Threat protection throughput (enterprise mix)Threat protection performance is measured with firewall, IPS, application control and malware protection enabled, enterprise mix traffic.25 Gbps
SSL inspection throughput (IPS, avg. HTTPS)SSL inspection performance values use an average of HTTPS sessions of different cipher suites.20 Gbps
Application control throughput (HTTP 64K)64 Gbps
Firewall latency3.41 µs

Capacity

Capacity
Concurrent sessions24 Million / 40 Million
New sessions / second1 Million / 2 Million
Firewall policies100,000
Max gateway-to-gateway IPsec tunnels20,000
Max client-to-gateway IPsec tunnels100,000
SSL VPN throughput16 Gbps
Concurrent SSL VPN users (recommended max, tunnel mode)30,000
Virtual domains (default / max)10 / 500

Security Fabric capacity

How much of the rest of the Fabric this model manages directly, with no separate controller.

Security Fabric capacity
Max managed FortiAPs (total / tunnel)4,096 / 2,048
Max managed FortiSwitches196
Max FortiTokens20,000

Hardware

Hardware
Interfaces4x 100GE QSFP28/40GE QSFP+, 16x 25GE SFP28, 16x 10GE RJ45, 2x 10GE SFP+, 2x GE RJ45
Local storage2x 960 GB (2601F)
Power suppliesDual PS
Form factor2 RU
VariantsDC

Model-specific caveats

Fortinet conditions that apply to this model in particular. Worth reading before you order.

Model-specific caveats
Note 1The second figure requires a Hyperscale license.

Sources

Reproduced from Fortinet published documentation and subject to change without notice. Where a figure is load-bearing for your design, ask us to confirm it in writing before you order — we will.

Buyers also compare