FortiGate 70G
Line-rate 10 Gbps firewall with 1.4 Gbps SSL inspection — the entry-level value pick
- Threat protection
- 1.3 Gbps
- Firewall throughput
- 10 Gbps
- IPsec VPN
- 7.1 Gbps
- Concurrent sessions
- 1.4 Million
Front panel
- RJ45 copper
The 70G is the strongest price-performance point in the entry-level range. It sustains 10 Gbps of firewall throughput at all three test frame sizes — 1518, 512 and 64 byte — where the 60F and 70F fall to 6 Gbps at 64 byte, and it doubles SSL inspection to 1.4 Gbps. It manages 96 FortiAPs and offers WiFi and PoE variants.
The default recommendation for a new branch build in this tier. It beats the 70F on every inspection metric, adds PoE and WiFi variants the 70F lacks, and handles 100,000 new sessions per second against the 70F's 35,000. The one thing it gives up is published SSL VPN throughput — if local remote-access VPN is required, that pushes you to the 70F or 80F.
Highlights
- 10 Gbps firewall throughput at every tested frame size
- 1.4 Gbps SSL inspection, 3.6 Gbps application control
- 100,000 new sessions/sec — nearly 3x the 70F
- WiFi and PoE variants available
Typical deployments
- New branch and small-campus builds on gigabit fibre
- Sites doing meaningful SSL inspection on a small budget
- Wireless-first small offices via the FortiWiFi 70G variant
The numbers, with their conditions
Every figure below is Fortinet's own, with the test conditions it was measured under.
Performance
Fortinet's published figures. Firewall throughput is measured on UDP with no inspection enabled — size your deployment on threat protection throughput instead, which is measured with firewall, IPS, application control and malware protection all running against an enterprise traffic mix.
| Firewall throughput (1518 / 512 / 64 byte UDP) | 10 / 10 / 10 Gbps |
|---|---|
| IPsec VPN throughput (512 byte)IPsec VPN performance test uses AES256-SHA256. | 7.1 Gbps |
| IPS throughput (enterprise mix)IPS, application control, NGFW and threat protection are measured with logging enabled. | 2.5 Gbps |
| NGFW throughput (enterprise mix)NGFW performance is measured with firewall, IPS and application control enabled, enterprise mix traffic. | 1.5 Gbps |
| Threat protection throughput (enterprise mix)Threat protection performance is measured with firewall, IPS, application control and malware protection enabled, enterprise mix traffic. | 1.3 Gbps |
| SSL inspection throughput (IPS, avg. HTTPS)SSL inspection performance values use an average of HTTPS sessions of different cipher suites. | 1.4 Gbps |
| Application control throughput (HTTP 64K) | 3.6 Gbps |
| Firewall latency | 2.46 µs |
Capacity
| Concurrent sessions | 1.4 Million |
|---|---|
| New sessions / second | 100,000 |
| Firewall policies | 5,000 |
| Max gateway-to-gateway IPsec tunnels | 200 |
| Max client-to-gateway IPsec tunnels | 500 |
| SSL VPN throughput | — |
| Concurrent SSL VPN users (recommended max, tunnel mode) | — |
| Virtual domains (default / max) | 10 / 10 |
Security Fabric capacity
How much of the rest of the Fabric this model manages directly, with no separate controller.
| Max managed FortiAPs (total / tunnel) | 96 / 48 |
|---|---|
| Max managed FortiSwitches | 24 |
| Max FortiTokens | 500 |
Hardware
| Interfaces | 10x GE RJ45 |
|---|---|
| Local storage | 64 GB (71G) |
| Power supplies | Single AC PS |
| Form factor | Desktop |
| Variants | WiFi, PoE |
Sources
- Fortinet Product Matrix — FortiGate Network Security Platform (July 2026) — retrieved 2026-09-01
Reproduced from Fortinet published documentation and subject to change without notice. Where a figure is load-bearing for your design, ask us to confirm it in writing before you order — we will.
Buyers also compare
FortiGate 70F
The 60F's port count with 1.5 million sessions and working SSL VPN
FortiGate 90G
28 Gbps firewall and 25 Gbps IPsec in a desktop chassis — the top of entry-level
FortiGate 60F
Ten-port desktop NGFW — the most widely deployed FortiGate ever built