Skip to main content
Authorized Fortinet reseller · DynaScale Technologies888-907-0723 · 24/7[email protected]
FG-90G

FortiGate 90G

28 Gbps firewall and 25 Gbps IPsec in a desktop chassis — the top of entry-level

Threat protection
2.2 Gbps
Firewall throughput
28 Gbps
IPsec VPN
25 Gbps
Concurrent sessions
3 Million

Front panel

Front panel layout for the FortiGate 90G: 8 × 1G RJ45, 2 × 10G shared port pair8× 1G2× 10G
10 fixed ports. Schematic drawn from the published interface list — port order and physical arrangement are indicative, not to scale.
  • RJ45 copper
  • Shared pair

The 90G is a step change rather than an increment. It nearly triples the 80F's firewall throughput to 28 Gbps, quadruples IPsec VPN to 25 Gbps, and delivers 2.2 Gbps threat protection with 2.6 Gbps SSL inspection — all still in a desktop form factor with two 10GE shared port pairs.

Is this the right model?

Where it fits — and where it stops fitting

Compare the whole range

The right choice for a large branch or a small headquarters that has outgrown the 80F but does not need a rack-mount 120G. Its 25 Gbps IPsec throughput in particular makes it a strong hub for a small hub-and-spoke VPN topology. Note the SSL VPN caveat: it is only supported between FortiOS 7.0.12 and 7.0.15 on this model.

Highlights

  • 28 Gbps firewall, 25 Gbps IPsec VPN — 4x the 80F
  • 2x 10GE shared port pairs alongside 8x GE RJ45
  • 3 million concurrent sessions, 124,000 new sessions/sec
  • Dual power inputs, desktop form factor

Typical deployments

  • Large branches and small head offices on multi-gigabit circuits
  • VPN concentrator for a modest hub-and-spoke estate
  • Sites wanting 10GE uplinks without moving to a rack-mount appliance
Specifications

The numbers, with their conditions

Every figure below is Fortinet's own, with the test conditions it was measured under.

Performance

Fortinet's published figures. Firewall throughput is measured on UDP with no inspection enabled — size your deployment on threat protection throughput instead, which is measured with firewall, IPS, application control and malware protection all running against an enterprise traffic mix.

Performance
Firewall throughput (1518 / 512 / 64 byte UDP)28 / 28 / 27.9 Gbps
IPsec VPN throughput (512 byte)IPsec VPN performance test uses AES256-SHA256.25 Gbps
IPS throughput (enterprise mix)IPS, application control, NGFW and threat protection are measured with logging enabled.4.5 Gbps
NGFW throughput (enterprise mix)NGFW performance is measured with firewall, IPS and application control enabled, enterprise mix traffic.2.5 Gbps
Threat protection throughput (enterprise mix)Threat protection performance is measured with firewall, IPS, application control and malware protection enabled, enterprise mix traffic.2.2 Gbps
SSL inspection throughput (IPS, avg. HTTPS)SSL inspection performance values use an average of HTTPS sessions of different cipher suites.2.6 Gbps
Application control throughput (HTTP 64K)6.7 Gbps
Firewall latency3.23 µs

Capacity

Capacity
Concurrent sessions3 Million
New sessions / second124,000
Firewall policies5,000
Max gateway-to-gateway IPsec tunnels200
Max client-to-gateway IPsec tunnels2,500
SSL VPN throughput1.4 Gbps
Concurrent SSL VPN users (recommended max, tunnel mode)200
Virtual domains (default / max)10 / 10

Security Fabric capacity

How much of the rest of the Fabric this model manages directly, with no separate controller.

Security Fabric capacity
Max managed FortiAPs (total / tunnel)128 / 64
Max managed FortiSwitches24
Max FortiTokens500

Hardware

Hardware
Interfaces8x GE RJ45, 2x 10GE shared port pairs
Local storage120 GB (91G)
Power suppliesSingle AC PS, dual inputs
Form factorDesktop
Variants

Model-specific caveats

Fortinet conditions that apply to this model in particular. Worth reading before you order.

Model-specific caveats
Note 1SSL VPN is only supported between FortiOS 7.0.12 and 7.0.15.

Sources

Reproduced from Fortinet published documentation and subject to change without notice. Where a figure is load-bearing for your design, ask us to confirm it in writing before you order — we will.

Buyers also compare