Fortigate
The Next-Generation Firewall (NGFW)
Unrivaled Security, Unprecedented Performance.
FortiGate Next-Generation Firewalls (NGFWs) provide comprehensive protection for data, assets, and users across today’s increasingly complex and diverse hybrid environments. Designed with patented Fortinet security processors at their core, these firewalls are engineered to deliver enhanced security and networking performance. This enables organizations to manage the ever-growing demands of data-heavy traffic and cloud-based applications more effectively and efficiently.
FortiGate NGFWs are supported by FortiGuard AI-Powered Security Services, which offer advanced threat intelligence and proactive defense mechanisms. These services ensure continuous, real-time protection, enabling organizations to prevent cyberattacks, detect vulnerabilities, and respond rapidly to security incidents. With the ability to address even the most sophisticated and emerging threats, FortiGate NGFWs play a critical role in minimizing risks and maintaining the integrity of your network.
17 X
Faster firewall performance than competition with leading standard CPUs
62%
Average reduction in product energy consumption
99%
Security effectiveness with perfect scores in 3 test scenarios
#1 Network Firewall Worldwide
FortiGate is the most deployed network firewall with over 50% of global market share. As the cornerstone of the Fortinet Security Fabric Platform, FortiGate is fully integrated with Fortinet’s broad portfolio of security and networking products that help organizations optimize security coverage and operational efficiency.
Secure Access from Anywhere
AI-Powered Security
AI-centric treat intelligence offers timely protection, proactive defense, and streamlined operations
Better User Experience
Lower TCO Across Use Cases
Unified management reduces network complexity and automates security posture across all edges
Patented ASICs help create sustainable, scalable networks with faster security processing
Integrated SD-WAN enables simplified orchestration and secure interconnection among offices
The Only Purpose-Built Proprietary ASIC
Fortinet’s ASIC-based security processing units (SPUs) radically increase the speed, scale, efficiency, and value of Fortinet solutions while greatly improving user experience, reducing footprint and power requirements. From branch and campus to data center solutions, SPU-powered Fortinet appliances deliver superior Security Compute Ratings versus industry alternatives.
Network Processor NP7
Network processors operate in-line to deliver unmatched performance for network functions and hyperscale for stateful firewall functions
Content Processor CP9
As a co-processor to the main CPU, content processors offload resource-intensive processing and drive content inspection to accelerate security functions
Security Processor SP5
The security processor consolidates network and content processing, delivering fast application identification, steering, and overlay performance
Security Processing Unit 5 (SP5): Engineered for Efficiency
The fifth generation of the Fortinet Security Processing Unit, SP5, supports customer infrastructure edge transformation with the industry’s highest Security Compute Ratings and power efficiency. SP5 consolidates both network and content processing functions on a single chip, delivering secure computing power that will support the next generation of secure infrastructure.
SP5 is a fully integrated set of security functions, including a Layer 7 firewall, on a fast and cost-effective chip. It meets the high-performance and security requirements for the evolving infrastructure edge to accelerate network and security convergence that delivers best ROI, operational efficiencies and increased security posture.
Advantage
Specification
Security Compute Rating
SP5
Firewall
34 Gbps
8x
IPsec VPN
30 Gbps
4x
Threat protection
4.3 Gbps
9x
SSL inspection
3.3 Gbps
6x
Networking Processing Unit 7 (NP7): Engineered for Hyperscale
NP7 runs at the network layer to speed functions that typically slow CPUs, such as IPv4, IPv6, unicast, and multicast. In addition, NP7 accelerates IPsec decryption, VXLAN termination, and address translation, while providing hardware logging and policy enforcement.
Advantage
Specification
Security Compute Rating
NP7 ASIC
Firewall
198 Gbps
9x
IPsec VPN
55 Gbps
7x
Threat protection
SSL inspection
15 Gbps
17 Gbps
2x
4x
SSL inspection
17 Gbps
4x
Threat protection
17 Gbps
4x
Content Processing Unit 9 (CP9): Engineered for Protection
The ninth generation of Fortinet Content Processor, CP9, is designed for protection. CP9 works as a CPU co-processor, taking on resource-intensive security functions such as Application Identification, IPS (pre-scan, signature correlation, etc.), and antivirus, so the CPU can perform other important tasks.
CP9 also performs pattern matching acceleration, fast inspection of real-time traffic for application identification, all without compromising user experience.
Advantage
*Based on the composite average of the mid-range FortiGate portfolio versus similar competitive products
Specification
Security Compute Rating
CP9 ASIC
IPsec VPN
37 Gbps
12x
SSL Inspection
7 Gbps
9x
*Based on the composite average of the FortiGate data center firewall portfolio versus similar competitive products
Specification
Security Compute Rating
CP9 ASIC
IPsec VPN
223 Gbps
6x
SSL Inspection
71 Gbps
2x