FG-120G

The FortiGate 120G series next-generation firewall (NGFW) combines artificial intelligence (AI)-powered security and machine learning (ML) to deliver threat protection at any scale. Get deeper visibility into your network and see applications, users, and devices before they become threats

Category : Firewalls
Brand : Fortinet
Model : FortiGate 120G

Description

Artificial Intelligence, Machine Learning Security with Deep Visibility

  • The FortiGate 120G series next-generation firewall (NGFW) combines artificial intelligencern(AI)-powered security and machine learning (ML) to deliver threat protection at any scale.rnGet deeper visibility into your network and see applications, users, and devices before theyrnbecome threats.
  • rnPowered by a rich set of AI/ML security capabilities that extend into an integrated securityrnfabric platform, the FortiGate 120G Series delivers secure networking that is broad, deep, andrnautomated. Secure your network end to end with advanced edge protection that includesrnweb, content, and device security, while network segmentation and secure SD-WAN reducerncomplexity and risk in hybrid IT networks. This security fabric seamlessly extends across yourrnentire environment, including a Hybrid Mesh Firewall architecture, ensuring consistent policyrnenforcement and threat protection across all network segments.rn
  • Universal zero-trust network access (ZTNA) automatically controls, verifies, and facilitates userrnaccess to applications, reducing lateral threats by providing access only to validated users.rnUltra-fast threat protection and SSL inspection provides security at the edge you can seernwithout impacting performance.
  • IPS : 5.3 Gbps
  • NGFW :  3.1 Gbps
  • Threat Protection : 2.8 Gbps
  • Interfaces :  Multiple GE RJ45, SFP, and 10GE SFP+ SlotsrnVariants with internal storage

Use Cases

Next Generation Firewall (NGFW)

  •  FortiGuard Labs’ suite of AI-Powered Security Services, natively integrated with your NGFW,rnsecures web, content, and devices and protects networks from ransomware, malware, zerorndays, and sophisticated AI-powered cyberattacks 
  • Real-time SSL inspection (including TLS 1.3) provides full visibility into users, devices, andrnapplications across the attack surface 
  • Fortinet’s patented SPU technology provides industry-leading high-performance protection.

Secure SD-WAN 

  • FortiGate WAN Edge powered by one OS and unified security and management frameworkrnand systems transforms and secures WANs 
  • Delivers superior quality of experience and effective security posture for hybrid workingrnmodels, SD-Branch, and cloud-first WAN use cases 
  • Achieve operational efficiencies at any scale through automation, deep analytics, and selfhealing.

Universal ZTNA 

  • Control access to applications no matter where the user is and no matter where thernapplication is hosted for universal application of access policies 
  • Provide extensive authentications, checks, and enforce policy prior to granting applicationrnaccess every time 
  • Agent-based access with FortiClient or agentless access via proxy portal for guest or BYOD.

FortiGuard AI-Powered Security Servicesrn

  • FortiGuard AI-Powered Security Services is part of Fortinet’s layered defense and tightlyrnintegrated into our FortiGate NGFWs and other products. Infused with the latest threatrnintelligence from FortiGuard Labs, these services protect organizations against modern attackrnvectors and threats, including zero-day and sophisticated AI-powered attacks.

rnNetwork and file security

  • rnNetwork and file security services protect against network and file-based threats. With overrn18,000 signatures, our industry-leading intrusion prevention system (IPS) uses AI/ML modelsrnfor deep packet/SSL inspection, detecting and blocking malicious content, and applying virtualrnpatches for newly discovered vulnerabilities. Anti-malware protection defends against bothrnknown and unknown file-based threats, combining antivirus and sandboxing for multi-layeredrnsecurity. Application control improves security compliance and provides real-time visibility intornapplications and usage.

Web/DNS securityrn

  • Web/DNS security services protect against DNS-based attacks, malicious URLs (includingrnthose in emails), and botnet communications. DNS filtering blocks the full spectrum of DNSbased attacks while URL filtering uses a database of over 300 million URLs to identify andrnblock malicious links. Meanwhile, IP reputation and anti-botnet services guard against botnetrnactivity and DDoS attacks. FortiGuard Labs blocks over 500 million malicious/phishing/rnspam URLs weekly, and blocks 32,000 botnet command-and-control attempts every minute,rndemonstrating the robust protection offered through Fortinet.rn

SaaS and data securityrn

  • SaaS and data security services cover key security needs for application use and datarnprotection. This includes data loss prevention to ensure visibility, management, and protectionrn(blocking exfiltration) of data in motion across networks, clouds, and users. Our inline cloudrnaccess security broker service protects data in motion, at rest, and in the cloud, enforcingrncompliance standards and managing account, user, and cloud app usage. Services also assessrninfrastructure, validate configurations, and highlight risks and vulnerabilities, including IoTrndevice detection and vulnerability correlation.rn

Zero-Day threat prevention

  • rnZero-day threat prevention is achieved through AI-powered inline malware prevention tornanalyze file content to identify and block unknown malware in real time, delivering sub-secondrnprotection across all NGFWs. The service also integrates the MITRE ATT&CK matrix to speedrnup investigations. Integrated into FortiGate NGFWs, the service provides comprehensiverndefense by blocking unknown threats, streamlining incident response, and reducing securityrnoverhead.rn

OT securityrn

  • With over 1000 virtual patches, 1100+ OT applications, and 3300+ protocol rules, integratedrnOT security capabilities detect threats targeting OT infrastructure, perform vulnerabilityrncorrelation, apply virtual patching, and utilize industry-specific protocol decoders for robustrndefense of OT environments and devices.
Specifications
  • Hardware Accelerated GE RJ45 Ports 16
  • GE RJ45 Management / HA 1 / 1rn
  • Hardware Accelerated GE SFP Slots 8rn
  • Hardware Accelerated 10 GE SFP+rnFortiLink Slots (default)rn4
  • rnUSB Ports 1rnConsole (RJ45) Port 1
  • Internal Storage — 1 x 480 GB SSD

System Performance* — Enterprise Traffic Mix

  • IPS Throughput 2 5.3 Gbps
  • rnNGFW Throughput 2, 4 3.1 Gbpsrn
  • Threat Protection Throughput 2, 5 2.8 Gbps

System Performance and Capacity

  • Firewall Throughputrn(1518 / 512 / 64 byte UDP packets)rn39 / 39 / 28 Gbpsrn
  • Firewall Latency (64 byte UDP packets) 3.17 ?srn
  • Firewall Throughputrn(Packets Per Second)rn42 Mpps
  • rnConcurrent Sessions (TCP) 3 M
  • rnNew Sessions/Second (TCP) 140 000rn
  • Firewall Policies 10 000
  • rnIPsec VPN Throughput (512 byte) 1 35 Gbpsrn
  • Gateway-to-Gateway IPsec VPNrnTunnelsrn2000rn
  • Client-to-Gateway IPsec VPN Tunnels 16 000rn
  • SSL-VPN Throughput 1.5 Gbpsrn
  • Concurrent SSL-VPN Usersrn(Recommended Maximum, TunnelrnMode)rn500rnSSL Inspection Throughputrn(IPS, avg. HTTPS) 3rn3 Gbps
  • rnSSL Inspection CPS (IPS, avg. HTTPS) 3 2100rn
  • SSL Inspection Concurrent Sessionrn(IPS, avg. HTTPS) 3rn315 000
  • rnApplication Control Throughputrn(HTTP 64K) 2rn6.7 Gbps
  • rnCAPWAP Throughput (HTTP 64K) 35 Gbpsrn
  • Virtual Domains (Default / Maximum) 10 / 10
  • rnMaximum Number of FortiSwitchesrnSupportedrn48*rn
  • Maximum Number of FortiAPsrn(Total / Tunnel Mode)rn128 / 64
  • rnMaximum Number of FortiTokens 5000rn
  • High Availability Configurations Active-Active, Active-Passive, Clustering