Você está na página 1de 5

DATA SHEET

FortiGate 7000-Series Solution


Next Generation Firewall
Internal Segmentation Firewall
Data Center Firewall

FortiGate 7000-Series Solution

Features and Benefits

High Performance, Scalable Enterprise Firewall

Modular security gateway in


chassis based compact design

Todays borderless networks are creating an expanded attack surface that requires
unprecedented scale, performance and capacity to provide organizations with strong
protection from both known and unknown threats in their networks. The FortiGate 7000E
series of scalable, high-end firewalls combine breakthrough content processing performance
with powerful threat protection to defend against cyber threats, malware, internal attacks and
unauthorized use.

Powered by latest generation of


FortiASIC content processor CP9
Advanced content processing
scale and performance
Industrys fastest SSL
inspectionengine

Advanced Content Processing Enabled by Innovation


Powered by the latest generation of FortiASIC Content Processor CP9 and FortiOS 5.4
operating system, the FortiGate 7000E series delivers multi-fold performance improvements
in layer 7 content processing to accelerate SSL, VPN and IPS traffic. Integrated with Fortinet
Fabric for real-time threat intelligence, the 7000E series delivers reliable protection against
both known and the newest as yet unknown threats.

Integrated with Fortinet Fabric for


real-time threat intelligence
Available in different network
configurations for simplicity and
ease of deployment

Designed as modular security gateways, the FortiGate 7000E series combines the simplicity
of an appliance with the configurability and flexibility of a chassis to deliver both ease of
deployment and investment protection. A single scalable system with consolidated security
services, the 7000E series is capable of inspecting and securing vast amounts of network
traffic at speeds that are several times faster than any comparable solution.

Highlights
Firewall
FG-7040E

FortiGate
Extensions

315 Gbps

IPS

NGFW

Threat Protection

Enterprise traffic Mix

44 Gbps

40 Gbps

38 Gbps

Interfaces
Varied according
toBundles

FortiAP

FortiClient

FortiToken

forti.net/fap

forti.net/fct

forti.net/ftk

DATA SHEET: FortiGate 7000-Series Solution

ec

ur

ity

F
o
rt

iA
na
ly
ze
r

F
o
rt

iM

an
ag
er

DEPLOYMENT

rt
iG

ua

rd

in
g

le

an

la
s

in
g

le

et
w
O or
S k

NGFW

ISFW
ISFW

rk
o
tw
e
g
ne
d
al
E
rn
se
te
ri
In
p
er
nt
E

Figure 1: FortiGate 7000E Series deployment in large campus networks (NGFW, ISFW)

Next Generation Firewall (NGFW)

Data Center Firewall (DCFW)

Internet gateway for large enterprises

High availability, high throughput and low latency for data center

Consolidated next generation firewall and advanced threat

edge and core

protection services

High session scale for accommodating large network and user

Fastest application layer processing engine for encrypted SSL

traffic for internet facing data centers


Real-time threat intelligence and advanced protection from

and VPN traffic.

external and internal threats, stopping cyber criminals, malware


and unauthorized use.

Internal Segmentation Firewall (ISFW)


Custom ASIC powered LAN speeds and ultra-low latency
Visibility and protection for internal segments
Higher port density to protect multiple assets; integrated switch
Layered protection with firewall, application access and
control, IPS (intrusion prevention system) and ATP (advanced
threat protection)

O
S

Rapid deployment near zero configuration.

o
e

G
o
an
P
le

ur

st

in
g

ISFW

ISFW

VFW

VFW

ty

-W

ur
i

-S
,E

ec
S

(N

al

tu

tio

ir
V

o
la

es
t

Is

W
as
tE

ca
si
hy
P

hy

si

ca

lR

lR

es

es

o
ur

o
ur

ce

ce

Is
o

Is
o

la

la

tio

tio

rt
iG

ua

rd

rk

tw

P
e

ne

g
d

al
rn

te

te

In

en

ity

ur

at

ec

st

ru

la

er

o
rt
iA

ss

na

ly
ze

o
rt

iM

an

ag

in
g

er

le

P
S hy
er s
ve ica
r l
F
ar
m

et
w

rk

ec

ur
ity

DCFW
NGFW

Figure 2: FortiGate 7000E Series deployment in data center (DCFW/NGFW, ISFW)

www.fortinet.com

DATA SHEET: FortiGate 7000-Series Solution

SYSTEM
FortiGate 7040E
Next Generation 6U 19-inch 4-slot rack mount chassis with Fortinet Processor Modules (FPM) and Fortinet Interface Modules (FIM).

Push to Unlock

Push to Unlock

Push to Unlock

Push to Unlock

Push to Unlock

Push to Unlock

Push to Unlock

Push to Unlock

FORTIGATE 7040E-3
Hardware Specifications
Module Slots

High Availability Backplane Fabric

Built-in

Shelf Manager

System Performance and Capacity


Firewall Throughput (1518 / 512 / 64 byte, UDP)

315 / 310 / 220 Gbps

Firewall Latency (64 byte, UDP)

7 s

Firewall Throughput (Packet per Second)

330 Mpps

Concurrent Sessions (TCP)

125 Million

New Sessions/Sec (TCP)

950,000

Firewall Policies

100,000

IPsec VPN Throughput (512 byte)

100 Gbps

Gateway-to-Gateway IPsec VPN Tunnels

40,000

Client-to-Gateway IPsec VPN Tunnels

64,000

SSL-VPN Throughput

N.A

Concurrent SSL-VPN Users (Recommended Maximum)

N.A

IPS Throughput (HTTP / Enterprise Mix) 1

250 / 44 Gbps

SSL Inspection Throughput 2

50 Gbps

Application Control Throughput 3

45 Gbps

NGFW Throughput 4

40 Gbps

Threat Protection Throughput 5

38 Gbps

CAPWAP Throughput 6

N.A

Virtual Domains (Default / Maximum)

10 / 500

Maximum Number of FortiAPs (Total / Tunnel Mode)

N.A

Maximum Number of FortiTokens

5,000

Maximum Number of Registered FortiClients

20,000

High Availability Configurations

Inter-Chassis Active-Passive and Active-Active

Dimensions

Height x Width x Length (inches)

10.4 x 17.3 x 25.6

Height x Width x Length (cm)

264 x 440 x 650

Weight

90.3 lbs (41 kg)

DATA SHEET: FortiGate 7000-Series Solution

SYSTEM
FORTIGATE 7040E-3
Power and Environment
Power Required

AC (Comes with 3 PS, future option to add 1 more)

Power Consumption (Maximum / Average) *

2500 / 1800 W

Heat Dissipation (Maximum) *

8,530 BTU/h

Operating Temperature

32104F (040C)

Storage Temperature

-13158F (-2570C)

Humidity

2090% non-condensing

Compliance
Certifications

FCC, ICES, CE, RCM, VCCI, BSMI, UL/cUL, CB

* Based on all default included components.


Note: All performance values are up to and vary depending on system configuration. IPsec VPN performance is based on 512byte UDP packets using AES-256+SHA1. 1. IPS performance is measured using 1 Mbyte HTTP and Enterprise Traffic Mix. 2. SSL Inspection
is measured with IPS enabled and HTTP traffic, using TLS v1.2 with AES256-SHA. 3. Application Control performance is measured with 64 Kbytes HTTP traffic. 4. NGFW performance is measured with IPS and Application Control enabled, based on Enterprise
Traffic Mix. 5. Threat Protection performance is measured with IPS and Application Control and Malware protection enabled, based on Enterprise Traffic Mix. 6. CAPWAP performance is based on 1444 byte UDP packets.
For complete, up-to-date and detailed feature set, please refer to the Administration Handbook and FortiOS Datasheet.

MODULES
Fortinet Processor Module 7620E
Latest purpose-built FortiASIC CP9 accelerated processor module with superior content processing throughput and protection. Runs
onFortiOS 5 the most powerful security operating system in the world.
Status, Alarm
and Power LEDS
Handle
Latch

Handle
Latch

Power
Button

FPM-7620E
Power and Environment

Push to Unlock

Push to Unlock

Retention
Screw

Handle Retention
Screw

Handle
NMI
Button

Power Consumption (Average / Maximum)

320 / 410 W

Heat Dissipation (Average)

1,395 BTU/h

Operating Temperature

32104F (040C)

Storage Temperature

-13158F (-2570C)

Humidity

2090% non-condensing

Compliance
NP6

CP9

Forti
Carrier

Certifications

FCC, ICES, CE, RCM, VCCI, BSMI, UL/cUL, CB

NEBS Certified

Fortinet Interface Module 7910E

FIM-7910E
Interfaces

High performance, FortiASIC DP2 accelerated networking blade


with 4x 100 GE CFP2 slots.

Status, Alarm
HA and Power
LEDS
Handle
Power
Latch
Button

MGMT1 - MGMT4
10/100/1000 Copper
Management Interface

C1 to C4
100Gbps Fabric Channel
CFP2 Network
Interfaces (data)

Handle
Latch

Push to Unlock

4x 100 GE CFP2

Base Channel Interfaces

2x 10 GE SFP+

Management Interfaces

4x GE RJ45

Included Transceivers

2x SFP+ SR

Power and Environment

Push to Unlock

USB
NMI
Retention
Button
Screw
Handle

Fabric Channel Interfaces

Power Consumption (Average / Maximum)

260 / 450 W

Heat Dissipation

1531 BTU/h

Operating Temperature

32104F (040C)

Storage Temperature

-13158F (-2570C)

Humidity

2090% non-condensing

Compliance
M1 and M2 10Gbps Base
Channel SFP+ Interfaces
(heartbeat and management)

Handle

Retention
Screw

Certifications

FCC, ICES, CE, RCM, VCCI, BSMI, UL/cUL, CB

NEBS Certified

www.fortinet.com

DATA SHEET: FortiGate 7000-Series Solution

BUNDLE MATRIX
SKU

COMPONENTS

Bundle

Chassis

Processing Module

I/O Module

Services

FG-7040E-3

FG-7040E**

2x FPM-7620E

2x FIM-7910E

Chassis based pricing Individual and bundled security services and support
subscription services: UTM Bundle, Enterprise Bundle and FortiCare360.
** Not sold separately

ORDER INFORMATION
BUNDLE ITEMS

SKU

DESCRIPTION

FortiGate-7040E-3 Bundle

FG-7040E-3

6U 4-slot chassis with 2x FPM-7620E Processor Module, 2x FIM-7910E I/O Module with 8x 100 GE CFP2/LR4 slots total,
1xManager Module and 3x hot swappable redundant PSU.

OPTIONAL / SPARE ITEMS

SKU

DESCRIPTION

FPM-7620E

Hot swappable processing module for 7000E series FortiASIC NP6 and CP9 hardware accelerated.

FIM-7910E

Hot swappable I/O module for 7000E series 4x GE RJ45 Management ports, 2x 10 GE SFP+ slots and 4x 100 GE CFP2/LR4 slots

100 GE CFP2 Transceivers, Short Range

FG-TRAN-CFP2-SR10

100 GE CFP2 transceivers, 10 channel parallel fiber, short range for all systems with CFP2 slots.

100 GE CFP2 Transceivers, Long Range

FG-TRAN-CFP2-LR4

100 GE CFP2 transceivers, long range, over single mode fiber, for all systems with CFP2 slots.

10 GE SFP+ Transceiver Module, Short Range

FG-TRAN-SFP+SR

10 GE SFP+ transceiver module, short range for all systems with SFP+ and SFP/SFP+ slots.

10 GE SFP+ Transceiver Module, Long Range

FG-TRAN-SFP+LR

10 GE SFP+ transceiver module, long range for all systems with SFP+ and SFP/SFP+ slots.

Processing Module
FPM-7620E Module
I/O Module
FIM-7910E Module
Transceivers

GLOBAL HEADQUARTERS
Fortinet Inc.
899 Kifer Road
Sunnyvale, CA 94086
United States
Tel: +1.408.235.7700
www.fortinet.com/sales

EMEA SALES OFFICE


905 rue Albert Einstein
Valbonne 06560
Alpes-Maritimes, France
Tel: +33.4.8987.0500

APAC SALES OFFICE


300 Beach Road 20-01
The Concourse
Singapore 199555
Tel: +65.6395.2788

LATIN AMERICA SALES OFFICE


Sawgrass Lakes Center
13450 W. Sunrise Blvd., Suite 430
Sunrise, FL 33323
United States
Tel: +1.954.368.9990

Copyright 2016 Fortinet, Inc. All rights reserved. Fortinet, FortiGate, FortiCare and FortiGuard, and certain other marks are registered trademarks of Fortinet, Inc., and other Fortinet names herein may also be registered and/or common law trademarks of Fortinet. All other product or company names may be
trademarks of their respective owners. Performance and other metrics contained herein were attained in internal lab tests under ideal conditions, and actual performance and other results may vary and may be significantly less effective than the metrics stated herein. Network variables, different network environments
and other conditions may negatively affect performance results and other metrics stated herein. Nothing herein represents any binding commitment by Fortinet, and Fortinet disclaims all warranties, whether express or implied, except to the extent Fortinet enters a binding written contract, signed by Fortinets General
Counsel, with a purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and, in such event, only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet and any such commitment
shall be limited by the disclaimers in this paragraph and other limitations in the written contract. For absolute clarity, any such warranty will be limited to performance in the same ideal conditions as in Fortinets internal lab tests, and in no event will Fortinet be responsible for events or issues that are outside of its
reasonable control. Notwithstanding anything to the contrary, Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer, or otherwise revise this publication without notice, and the most current version
of the publication shall be applicable.
FST-PROD-DS-GT7KBUNDLE FG-7KBUNDLE-DAT-R1-201611

Você também pode gostar