
Fortinet FortiGate
TL;DR
Fortinet FortiGate is a next-generation firewall platform delivering threat protection, SD-WAN, VPN, and web filtering from desktop appliances up to carrier-grade data center hardware.
Key Facts
Pricing
Starting at ~$500 (entry hardware) + annual subscription
Desktop Appliances (40F–90G)
- Next-gen firewall & IPS
- SD-WAN included at no extra license
- SSL inspection & web filtering
- Suits branch offices and small sites
Mid-Range Appliances (100F–600G)
- Higher throughput and SSL inspection capacity
- HA clustering support
- Campus and mid-enterprise edge
- Fabric integration with FortiManager
Data Center & Enterprise (1000F+)
- Carrier-grade throughput
- NP7 acceleration ASICs
- Virtual domains (VDOM) segmentation
- Redundant power and modules
FortiGate-VM
- Runs on VMware, Hyper-V, KVM
- Cloud marketplace deployments (AWS, Azure)
- Same FortiOS feature set
- Core or full bundle licensing
Additional Pricing Information
Hardware is bought once; the real cost is the annual FortiGuard security subscription (bundles like UTP add IPS, antivirus, web filtering, sandboxing). Purchases go through resellers, so quotes vary. FortiToken 2FA licenses are a commonly-cited extra cost.
Details
What is Fortinet FortiGate?
FortiGate is Fortinet's flagship next-generation firewall family, running the single FortiOS operating system across everything from a $500 desktop unit to carrier-grade data center chassis and virtual machines. It combines traditional firewalling with intrusion prevention, SSL inspection, web filtering, application control, VPN, and — unusually for the category — SD-WAN at no additional license cost. That bundling, plus custom ASIC acceleration, underpins its reputation for price-to-performance: TrustRadius reviewers score it 8.5 out of 10 across 461 reviews, consistently citing consolidation savings. The trade-offs are familiar to anyone who has administered one: dated documentation, occasional firmware instability, layered subscription costs, and support that can be slow. It remains one of the most deployed firewalls in the world, with over 10,000 tracked installations.
Key Features
- *Next-Gen Firewall** — Application-aware stateful inspection with IPS and advanced threat protection
- *SD-WAN** — Built-in WAN path selection and link load balancing at no extra license cost
- *VPN** — Site-to-site IPsec and SSL remote-access tunnels with MFA via FortiToken
- *Web Filtering & App Control** — Category-based URL filtering and per-application policies
- *SSL Inspection** — Deep inspection of encrypted traffic without a separate proxy
- *FortiGuard Subscriptions** — AI-powered signature updates, sandboxing, and zero-day protection
- *Central Management** — FortiManager and Fabric connectors for multi-device estates
- *Virtual Deployment** — FortiGate-VM images for hypervisors and public clouds
Who is it for?
- Mid-size businesses replacing aging firewalls with one consolidated platform
- Multi-branch organizations that need SD-WAN without per-site license creep
- MSPs standardizing client edge security on one manageable platform
- Enterprises wanting data-center-grade throughput at lower cost than Palo Alto
- Security teams already invested in the wider Fortinet fabric
Who is it NOT for?
- Tiny budgets — pfSense or OPNsense deliver core firewalling free
- Teams wanting zero-maintenance cloud-managed networking — Meraki MX fits better
- Organizations needing best-in-class application-layer research — Palo Alto leads there
- Admins without patch discipline — FortiGate CVE history punishes neglect
- Those needing polished out-of-the-box reporting without extra tools
The Bottom Line
FortiGate is the workhorse firewall of the mid-market, and the value case is simple: you get NGFW, VPN, web filtering, and SD-WAN in one box for less than rivals charge for half of that. Reviewers keep buying it because the ROI shows up within two years. The catches are operational, not functional — keep on top of firmware patches, budget honestly for the FortiGuard renewals, and don't count on snappy vendor support. If you want the cheapest capable firewall, run pfSense; if you want the most advanced engine room, pay for Palo Alto. For everyone in between, FortiGate is the sensible default.
Visit website →