Description
6:51 pm
FortiGate 400E-Bypass Inline NGFW with 16 Hardware Bypass Pairs for Transparent Network Insertion
The FortiGate 400E-Bypass is a 1RU inline NGFW delivering 6.5 Gbps IPS and 4 Gbps threat protection throughput x purpose-built for transparent, fail-safe deployment in access layer and data centre environments with 16 hardware GE RJ45 bypass port pairs, NP6 and CP9 ASICs, and dual redundant AC power supplies.
Key Performance
- 6.5 Gbps IPS throughput
- 5.5 Gbps NGFW throughput
- 4 Gbps Threat Protection throughput
- 32 Gbps firewall throughput (1518 byte)
- 20 Gbps IPsec VPN throughput
- 4.5 Gbps SSL-VPN throughput
- 4.8 Gbps SSL inspection throughput
- 3.5 million concurrent sessions
- 310,000 new sessions/second
- 2.22 µs firewall latency
- 10,000 firewall policies
Interfaces & Hardware
- 32x GE RJ45 ports configured as 16x hardware bypass pairs
- 2x GE RJ45 Management/HA ports
- 2x USB ports
- 1x RJ45 Console port
- NP6 network processor: ultra-low latency firewall, VPN/CAPWAP/IP tunnel acceleration, anomaly-based IPS
- CP9 content processor: accelerated SSL/TLS 1.3 decryption, IPS pre-scan, pattern matching
- Dual built-in AC power supplies (non-hot-swappable, 1+1 redundancy)
- 1RU rack mount form factor
Bypass Functionality
- 16 dedicated hardware bypass port pairs allow traffic to pass through uninspected in the event of appliance failure or power loss
- Enables transparent, inline deployment without disrupting network connectivity
- FortiLink-enabled ports can be reconfigured as standard ports as needed
Capacity
- Up to 72 FortiSwitches
- Up to 512 FortiAPs (256 tunnel mode)
- Up to 5,000 FortiTokens
- Up to 25 virtual domains (VDOMs)
- 2,000 gateway-to-gateway IPsec VPN tunnels
- 50,000 client-to-gateway IPsec VPN tunnels
- 500 concurrent SSL-VPN users
Security Features
- FortiGuard AI-powered IPS with 18,000+ signatures and virtual patching
- Anti-malware: AV, sandboxing, AI-based heuristics, Content Disarm and Reconstruct
- Web/DNS/video filtering across 300M+ URL database
- AI-based inline malware prevention x sub-second zero-day blocking
- Data Loss Prevention (DLP) and inline CASB
- OT security with 1,000+ virtual patches and 3,300+ protocol rules
- Real-time SSL/TLS 1.3 deep inspection
Networking & SD-WAN
- Full SD-WAN built into FortiOS at no extra cost
- Universal ZTNA x agent-based via FortiClient or agentless via proxy portal
- VXLAN segmentation bridging physical and virtual domains
- FortiLink for converged wired/wireless management
- Active-Active, Active-Passive, and Clustering HA
Management
- Managed via FortiManager (enterprise) or FortiGate Cloud
- FortiAnalyzer Cloud and FortiManager Cloud available
- GenAI-assisted configuration and troubleshooting via FortiAI
- FortiConverter Service for migration from legacy firewalls
Environment
- Operating temperature: 0°C to 40°C
- Power consumption: 112W average / 214W maximum
- Input: 100240V AC, 50/60Hz, 6A maximum
- Heat dissipation: 730 BTU/h
- Noise: 48 dBA, side and front-to-back airflow
- Operating altitude: up to 2,250m
View data sheet: FortiGate 400E Bypass Datasheet

