FortiGate 60F
Ten-port desktop NGFW — the most widely deployed FortiGate ever built
- Threat protection
- 700 Mbps
- Firewall throughput
- 10 Gbps
- IPsec VPN
- 6.5 Gbps
- Concurrent sessions
- 700,000
Front panel
- RJ45 copper
The 60F is the model most people picture when they say FortiGate. Ten gigabit ports, 10 Gbps firewall throughput, 700 Mbps threat protection, and Fabric capacity for 24 FortiSwitches and 64 FortiAPs — enough to run a real small office network from one box.
Buy it for the port count and the Fabric capacity, not the throughput. Ten ports means small sites need no access switch at all, and it manages three times the FortiSwitches and four times the FortiAPs of a 40F. On raw inspection it is now behind the newer 70G, and on FortiOS 7.6.0+ its 2 GB RAM removes SSL VPN — check that before standardising on it for remote access.
Highlights
- 10x GE RJ45 — no access switch needed at a small site
- Manages 24 FortiSwitches and 64 FortiAPs
- 128 GB storage on the 61F variant
- Enormous installed base — well-understood, widely documented
Typical deployments
- Small offices of 10–50 people running the whole LAN from one device
- Sites needing several separate physical segments — guest, POS, corporate, OT
- Standardised branch refreshes where the 60F is already the estate model
The numbers, with their conditions
Every figure below is Fortinet's own, with the test conditions it was measured under.
Performance
Fortinet's published figures. Firewall throughput is measured on UDP with no inspection enabled — size your deployment on threat protection throughput instead, which is measured with firewall, IPS, application control and malware protection all running against an enterprise traffic mix.
| Firewall throughput (1518 / 512 / 64 byte UDP) | 10 / 10 / 6 Gbps |
|---|---|
| IPsec VPN throughput (512 byte)IPsec VPN performance test uses AES256-SHA256. | 6.5 Gbps |
| IPS throughput (enterprise mix)IPS, application control, NGFW and threat protection are measured with logging enabled. | 1.4 Gbps |
| NGFW throughput (enterprise mix)NGFW performance is measured with firewall, IPS and application control enabled, enterprise mix traffic. | 1 Gbps |
| Threat protection throughput (enterprise mix)Threat protection performance is measured with firewall, IPS, application control and malware protection enabled, enterprise mix traffic. | 700 Mbps |
| SSL inspection throughput (IPS, avg. HTTPS)SSL inspection performance values use an average of HTTPS sessions of different cipher suites. | 630 Mbps |
| Application control throughput (HTTP 64K) | 1.8 Gbps |
| Firewall latency | 3.3 µs |
Capacity
| Concurrent sessions | 700,000 |
|---|---|
| New sessions / second | 35,000 |
| Firewall policies | 2,000 |
| Max gateway-to-gateway IPsec tunnels | 200 |
| Max client-to-gateway IPsec tunnels | 500 |
| SSL VPN throughput | — |
| Concurrent SSL VPN users (recommended max, tunnel mode) | — |
| Virtual domains (default / max) | 10 / 10 |
Security Fabric capacity
How much of the rest of the Fabric this model manages directly, with no separate controller.
| Max managed FortiAPs (total / tunnel) | 64 / 32 |
|---|---|
| Max managed FortiSwitches | 24 |
| Max FortiTokens | 500 |
Hardware
| Interfaces | 10x GE RJ45 |
|---|---|
| Local storage | 128 GB (61F) |
| Power supplies | Single AC PS |
| Form factor | Desktop |
| Variants | WiFi, Storage |
Model-specific caveats
Fortinet conditions that apply to this model in particular. Worth reading before you order.
| Note 1 | Proxy features have limited support on this model — check the data sheet before relying on them. |
|---|---|
| Note 2 | SSL VPN is not supported on FortiOS 7.6.0 and above for models with 2 GB RAM. |
Sources
- Fortinet Product Matrix — FortiGate Network Security Platform (July 2026) — retrieved 2026-09-01
Reproduced from Fortinet published documentation and subject to change without notice. Where a figure is load-bearing for your design, ask us to confirm it in writing before you order — we will.
Buyers also compare
FortiGate 70F
The 60F's port count with 1.5 million sessions and working SSL VPN
FortiGate 70G
Line-rate 10 Gbps firewall with 1.4 Gbps SSL inspection — the entry-level value pick
FortiGate 80F
Bypass, DSL and LTE variants with dual power inputs — the resilient branch box