Description
The FortiGate 90G delivers enterprise-grade converged NGFW and SD-WAN with 4.5 Gbps IPS throughput, 25 Gbps IPsec VPN, 2.6 Gbps SSL inspection, and 2x 10GE RJ45/SFP+ WAN ports for high-performance distributed enterprise deployments.
FortiGate 90G Series
Enterprise-Grade Protection for Smaller Networks
Enterprise-Grade Protection for Smaller Networks
The FortiGate 90G delivers a powerful converged next-generation firewall and SD-WAN solution in a compact desktop form factor, engineered for distributed enterprise sites requiring high throughput and advanced security. With 4.5 Gbps IPS throughput, 25 Gbps IPsec VPN, and 10 GE/SFP+ WAN connectivity, the 90G provides a significant performance leap for demanding branch and midsized enterprise deployments.
The 90G series runs on FortiOS, the industry’s first converged networking and security operating system. The SP5 ASIC delivers unprecedented performance acceleration, enabling high-throughput SSL inspection (2.6 Gbps), 41.85 Mpps packet processing, and 300,000 concurrent SSL sessions — all in a compact fanless-capable chassis.
| IPS | NGFW | Threat Protection | Interfaces |
|---|---|---|---|
| 4.5 Gbps | 2.5 Gbps | 2.2 Gbps | 8x GE RJ45 Internal | 2x 10GE RJ45/SFP+ WAN | SSD variant (91G) |
Highlights:

FortiGuard AI-Powered Security Services is part of Fortinet’s layered defense and tightly integrated into our FortiGate NGFWs and other products. Infused with the latest threat intelligence from FortiGuard Labs, these services protect organizations against modern attack vectors and threats, including zero-day and sophisticated AI-powered attacks.
Network and file security services protect against network and file-based threats. With over 18,000 signatures, our industry-leading intrusion prevention system (IPS) uses AI/ML models for deep packet/SSL inspection, detecting and blocking malicious content, and applying virtual patches for newly discovered vulnerabilities. Anti-malware protection defends against both known and unknown file-based threats, combining antivirus and sandboxing for multi-layered security. Application control improves security compliance and provides real-time visibility into applications and usage
Web/DNS security services protect against DNS-based attacks, malicious URLs (including those in emails), and botnet communications. DNS filtering blocks the full spectrum of DNSbased attacks while URL filtering uses a database of over 300 million URLs to identify and block malicious links. Meanwhile, IP reputation and anti-botnet services guard against botnet activity and DDoS attacks. FortiGuard Labs blocks over 500 million malicious/phishing/ spam URLs weekly, and blocks 32,000 botnet command-and-control attempts every minute, demonstrating the robust protection offered through Fortinet.
SaaS and data security services cover key security needs for application use and data protection. This includes data loss prevention to ensure visibility, management, and protection (blocking exfiltration) of data in motion across networks, clouds, and users. Our inline cloud access security broker service protects data in motion, at rest, and in the cloud, enforcing compliance standards and managing account, user, and cloud app usage. Services also assess infrastructure, validate configurations, and highlight risks and vulnerabilities, including IoT device detection and vulnerability correlation.
Zero-day threat prevention is achieved through AI-powered inline malware prevention to analyze file content to identify and block unknown malware in real time, delivering sub-second protection across all NGFWs. The service also integrates the MITRE ATT&CK matrix to speed up investigations. Integrated into FortiGate NGFWs, the service provides comprehensive defense by blocking unknown threats, streamlining incident response, and reducing security overhead.
With over 1000 virtual patches, 1100+ OT applications, and 3300+ protocol rules, integrated OT security capabilities detect threats targeting OT infrastructure, perform vulnerability correlation, apply virtual patching, and utilize industry-specific protocol decoders for robust defense of OT environments and devices.

FortiOS, Fortinet’s Real-Time Network Security Operating System
FortiOS is the operating system that powers Fortinet Security Fabric platform, enabling enforcement of security policies and holistic visibility across the entire attack surface. FortiOS provides a unified framework for managing and securing networks, cloud-based, hybrid, or a convergence of IT, OT, and IoT. FortiOS enables seamless and efficient interoperation across Fortinet products with consistent and consolidated AI-powered protection across today’s hybrid environments.
Unlike traditional point solutions, Fortinet adopts a holistic approach to cybersecurity, aiming to reduce complexities, eliminate security silos, and improve operational efficiencies. By consolidating security functions into a single platform, FortiOS simplifies management, reduces costs, and enhances overall security posture. Together, FortiGate and FortiOS create intelligent, adaptive protection to help organizations reduce complexity, eliminate security silos, and optimize user experience.
By integrating generative AI (GenAI), FortiOS further enhances the ability to analyze network traffic and threat intelligence, detects deviations or anomalies more effectively, and provides more precise remediation recommendations, ensuring minimum performance impact without compromising security.
Available in:






Intuitive easy to use view into the network and endpoint vulnerabilities

Comprehensive view of network performance, security, and system status

Powered by the only purpose-built SPU
Traditional firewalls cannot protect against today’s content and connection-based threats because they rely on off-the-shelf general-purpose central processing units (CPUs), leaving a dangerous security gap. Fortinet’s custom SPUs deliver the power you need to radically increase speed, scale, and efficiency while greatly improving user experience and reducing footprint and power requirements. Fortinet’s SPUs deliver up to 520 Gbps of protected throughput to detect emerging threats and block malicious content while ensuring your network security solution does not become a performance bottleneck.
Fortinet ASICs are designed to be energy-efficient, leading to lower power consumption and improved TCO. They deliver industry-leading throughput, handle more traffic and perform security inspections faster, reduce latency for quicker packet processing and minimize network delays.
Fortinet SPUs are designed with integrated security functions like zero trust, SSL, IPS, and VXLAN to name but a few, dramatically improving the performance of these functions that competitors traditionally implement in software.
Secure SD-WAN ASIC SP5




Interfaces
Specifications
| FortiGate 90G | FortiGate 91G | |
|---|---|---|
| 10/5/2.5GE RJ45 or 10GE SFP+ Shared Media Pairs | 2 | 2 |
| GE RJ45 Internal Ports | 8 | 8 |
| USB Ports | 1 | 1 |
| Console Port (RJ45) | 1 | 1 |
| Internal Storage | u2013 | 1 x 120 GB SSD |
| Trusted Platform Module (TPM) | u2713 | u2713 |
| Bluetooth Low Energy (BLE) | u2713 | u2713 |
| FortiGate 90G | FortiGate 91G | |
|---|---|---|
| IPS Throughput | 4.5 Gbps | |
| NGFW Throughput | 2.5 Gbps | |
| Threat Protection Throughput | 2.2 Gbps | |
| FortiGate 90G | FortiGate 91G | |
|---|---|---|
| Firewall Throughput (1518 / 512 / 64 byte UDP packets) | 28/28/27.9 Gbps | |
| Firewall Latency (64 byte UDP packets) | 3.23 u03bcs | |
| Firewall Throughput (Packets Per Second) | 41.85 Mpps | |
| Concurrent Sessions (TCP) | 1,500,000 | |
| New Sessions/Second (TCP) | 124,000 | |
| Firewall Policies | 5,000 | |
| IPsec VPN Throughput (512 byte) | 25 Gbps | |
| Gateway-to-Gateway IPsec VPN Tunnels | 200 | |
| Client-to-Gateway IPsec VPN Tunnels | 2,500 | |
| SSL-VPN Throughput | 1.4 Gbps | |
| Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode) | 200 | |
| SSL Inspection Throughput (IPS, avg. HTTPS) | 2.6 Gbps | |
| SSL Inspection CPS (IPS, avg. HTTPS) | 300,000 | |
| SSL Inspection Concurrent Session (IPS, avg. HTTPS) | 390,000 | |
| Application Control Throughput (HTTP 64K) | 6.7 Gbps | |
| CAPWAP Throughput (HTTP 64K) | 23.6 Gbps | |
| Virtual Domains (Default / Maximum) | 10 / 10 | |
| Maximum Number of FortiSwitches Supported | 24 | |
| Maximum Number of FortiAPs (Total / Tunnel Mode) | 96 / 48 | |
| Maximum Number of FortiTokens | 500 | |
| High Availability Configurations | Active-Active, Active-Passive, Clustering | |
| FortiGate 90G | FortiGate 91G | |
|---|---|---|
| Height x Width x Length (inches) | 1.65 x 8.5 x 7.0 | |
| Height x Width x Length (mm) | 42 x 216 x 178 | |
| Weight | 2.47 lbs (1.12 kg) | |
| Form Factor | Desktop | |
| FortiGate 90G | FortiGate 91G | |
|---|---|---|
| Power Rating | 12V DC, 5A (dual redundancy optional) | |
| Power Consumption (Average / Maximum) | 19.9 W / 20.53 W | 22.4 W / 23.5 W |
| Heat Dissipation | 70.01 BTU/hr | 80.14 BTU/hr |
| Operating Temperature | 32u00b0 to 104u00b0F (0u00b0 to 40u00b0C) | |
| Storage Temperature | -31u00b0 to 158u00b0F (-35u00b0 to 70u00b0C) | |
| Humidity | 10% to 90% non-condensing | |
| Noise Level | 21.73 dBA | |
| Operating Altitude | Up to 10,000 ft (3,048 m) | |
| Compliance | FCC, ICES, CE, RCM, VCCI, BSMI, UL/cUL, CB | |
| Certifications | USGv6/IPv6 | |
Products
| FortiGate 90G Base Appliance | ||
| FortiGate-90G 8 x GE RJ45 Internal Ports, 2 x 10GE RJ45/SFP+ Shared Media WAN Ports | #FG-90G | |
| FortiGate-90G Hardware plus FortiCare Premium and FortiGuard Enterprise Protection | ||
| Includes: Hardware Unit, FortiCare Premium Ticket Handling, Advanced Hardware Replacement (NBD), Firmware and General Upgrades, Enterprise Services Bundle plus term of contract | ||
| FortiGate-90G Hardware plus 1 Year FortiCare Premium and FortiGuard Enterprise Protection | #FG-90G-BDL-809-12 | |
| FortiGate-90G Hardware plus 3 Year FortiCare Premium and FortiGuard Enterprise Protection | #FG-90G-BDL-809-36 | |
| FortiGate-90G Hardware plus 5 Year FortiCare Premium and FortiGuard Enterprise Protection | #FG-90G-BDL-809-60 | |
| FortiGate-90G Hardware plus FortiCare Premium and FortiGuard Unified Threat Protection (UTP) | ||
| Includes: Hardware Unit, FortiCare Premium Ticket Handling, Advanced Hardware Replacement (NBD), Firmware and General Upgrades, UTP Services Bundle plus term of contract | ||
| FortiGate-90G Hardware plus 1 Year FortiCare Premium and FortiGuard Unified Threat Protection (UTP) | #FG-90G-BDL-950-12 | |
| FortiGate-90G Hardware plus 3 Year FortiCare Premium and FortiGuard Unified Threat Protection (UTP) | #FG-90G-BDL-950-36 | |
| FortiGate-90G Hardware plus 5 Year FortiCare Premium and FortiGuard Unified Threat Protection (UTP) | #FG-90G-BDL-950-60 | |
| FortiGate-90G Advanced Threat Protection | ||
| FortiGate-90G 1 Year Advanced Threat Protection (IPS, Advanced Malware Protection Service, Application Control, and FortiCare Premium) | #FC-10-0090G-928-02-12 | |
| FortiGate-90G 3 Year Advanced Threat Protection | #FC-10-0090G-928-02-36 | |
| FortiGate-90G 5 Year Advanced Threat Protection | #FC-10-0090G-928-02-60 | |
| FortiGate-90G Unified Threat Protection (UTP) | ||
| FortiGate-90G 1 Year Unified Threat Protection (UTP) | #FC-10-0090G-950-02-12 | |
| FortiGate-90G 3 Year Unified Threat Protection (UTP) | #FC-10-0090G-950-02-36 | |
| FortiGate-90G 5 Year Unified Threat Protection (UTP) | #FC-10-0090G-950-02-60 | |
Pricing Notes:
Resources
The FortiGate 91G is identical to the 90G in all performance and connectivity aspects, with one key addition: 1 x 120 GB onboard SSD storage for extended local logging, event retention, and compliance reporting.
The FortiGate 90G features 2x 10GE RJ45/SFP+ Shared Media WAN ports, supporting both copper 10 GE RJ45 and fibre 10 GE SFP+ connections. This enables high-speed 10 Gigabit WAN connectivity in either copper or fibre without additional modules.
The FortiGate 90G delivers significantly higher performance: IPS throughput increases from 2.5 Gbps to 4.5 Gbps, IPsec VPN throughput rises from 7.1 Gbps to 25 Gbps, and SSL inspection throughput grows from 1.4 Gbps to 2.6 Gbps. The 90G also adds 10 GE WAN ports and supports 124,000 new sessions per second versus 100,000 on the 70G.
For high-security enterprise branch deployments, the Enterprise Protection bundle is recommended u00e2u20acu201d it includes IPS, AI-based malware prevention, DLP, CASB, application control, URL/DNS filtering, antispam, attack surface security, and FortiCare Premium support.
The FortiGate 90G delivers enterprise-grade converged NGFW and SD-WAN with 4.5 Gbps IPS throughput, 25 Gbps IPsec VPN, 2.6 Gbps SSL inspection, and 2x 10GE RJ45/SFP+ WAN ports for high-performance distributed enterprise deployments.