Description
FortiGate mid-range firewalls are designed for organizations that need stronger performance and more advanced security capabilities than entry-level models can deliver, but without the footprint or cost of high-end enterprise appliances. These devices provide powerful next-generation firewall features, including high-speed intrusion prevention, deep SSL/TLS inspection, advanced malware protection, and granular application control. Thanks to Fortinet's purpose-built security processors, mid-range FortiGates maintain impressive throughput even when multiple security services are enabled, making them ideal for environments where performance and protection must coexist.
What really distinguishes the mid-range lineup is its ability to support more complex, distributed, and bandwidth-intensive networks. These models integrate seamlessly with secure SD-WAN, zero-trust network access, and the broader Fortinet Security Fabric, giving organizations unified visibility and coordinated threat response across their entire infrastructure. With strong VPN capabilities, high availability options, and flexible deployment models, FortiGate mid-range firewalls offer a scalable, future-ready platform for businesses that are growing, modernizing, or consolidating their security architecture.
| FortiGate 120G | FortiGate 121G | |
|---|---|---|
| Hardware Specifications | ||
| Hardware Accelerated GE RJ45 Ports | 16 | 16 |
| Hardware Accelerated GE RJ45 Management / HA Ports | 2 | 2 |
| Hardware Accelerated GE SFP Slots | 8 | 8 |
| Hardware Accelerated 10 GE SFP+ FortiLink Slots (default) | 4 | 4 |
| USB Ports | 1 | 1 |
| Console (RJ45) | 1 | 1 |
| Internal Storage | - | 1 x 480 GB SSD |
| Trusted Platform Module (TPM) | Yes | Yes |
| Bluetooth Low Energy (BLE) | Yes | Yes |
| System Performance* Enterprise Traffic Mix | ||
| IPS Throughput | 5.3 Gbps | |
| NGFW Throughput | 3.1 Gbps | |
| Threat Protection Throughput | 2.8 Gbps | |
| System Performance and Capacity | ||
| Firewall Throughput (1518 / 512 / 64 byte UDP packets) | 39 / 39 / 28 Gbps | |
| Firewall Latency (64 byte UDP packets) | 3.17 Ç?¶¬s | |
| Firewall Throughput (Packets Per Second) | 42 Mpps | |
| Concurrent Sessions (TCP) | 3 M | |
| New Sessions/Second (TCP) | 140 000 | |
| Firewall Policies | 10 000 | |
| IPsec VPN Throughput (512 byte) | 35 Gbps | |
| Gateway-to-Gateway IPsec VPN Tunnels | 2000 | |
| Client-to-Gateway IPsec VPN Tunnels | 16 000 | |
| SSL-VPN Throughput | 1.5 Gbps | |
| Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode) | 500 | |
| SSL Inspection Throughput (IPS, avg. HTTPS) | 3 Gbps | |
| SSL Inspection CPS (IPS, avg. HTTPS) | 2100 | |
| SSL Inspection Concurrent Session (IPS, avg. HTTPS) | 315 000 | |
| Application Control Throughput (HTTP 64K) | 6.7 Gbps | |
| CAPWAP Throughput (HTTP 64K) | 35 Gbps | |
| Virtual Domains (Default / Maximum) | 10 / 10 | |
| Maximum Number of FortiSwitches Supported | 32 | |
| Maximum Number of FortiAPs (Total / Tunnel Mode) | 128 / 64 | |
| Maximum Number of FortiTokens | 5000 | |
| High Availability Configurations | Active-Active, Active-Passive, Clustering | |
| Dimensions | ||
| Height x Width x Length (inches) | 1.73 x 17 x 10 | |
| Height x Width x Length (mm) | 44 x 432 x 254 | |
| Weight | 12.17 lbs (5.52 kg) | |
| Form Factor | Rack Mount, 1RU | |
| Operating Environment and Certifications | ||
| Input Rating | 100-120VAC, 1A-.5A Max, 50-60Hz | |
| Redundant Power Supplies | Yes (Default dual non-swappable AC PSU for 1+1 Redundancy) | |
| Power Supply Efficiency Rating | N/A | |
| Maximum Current | 100VAC@1A,120V@0.5A | |
| Power Consumption (Average / Maximum) | 38 W / 40 W | 43 W / 47 W |
| Heat Dissipation | 138 BTU/hr | 159 BTU/h |
| Operating Temperature | 32°—104°F (0°—40°C) | |
| Storage Temperature | -31°—158°F (-35°—70°C) | |
| Humidity | 20%—90% noncondensing | 10—90% non-condensing |
| Noise Level | 49 dBA | |
| Air Flow | Side to back | |
| Operating Altitude | Up to 10 000 ft (3048 m) | |
| Compliance | FCC Part 15B, Class A, CE, RCM, VCCI, UL/cUL, CB, BSMI | |
| Certifications | USGv6/IPv6 | |

