Fortinet FortiGate 4400F Series (FG-4400F / FG-4401F + DC variants)
Overview
The FortiGate 4400F Series is a hyperscale next-generation firewall built for high-throughput data centre and hybrid environments. It underpins Hybrid Mesh Firewall architecture by weaving security deep across the network edge, core, and multi-cloud. With integrated FortiGuard AI/ML services and Security Fabric integration, it delivers coordinated, automated threat protection at scale. It also includes integrated Zero Trust Network Access (ZTNA) enforcement inside the NGFW to verify users and tightly control application access—reducing lateral movement without disrupting user experience.
Highlights
-
Gartner® Magic Quadrant™ Leaders for both Network Firewalls and SD-WAN
-
Converged networking + security with FortiOS
-
SPU / vSPU accelerated performance (NP7 + CP9)
-
Consolidated AI/ML-powered FortiGuard services
-
Hyperscale security for any edge at any scale
Enterprise Traffic Mix Performance
-
IPS Throughput: 94 Gbps
-
NGFW Throughput: 82 Gbps
-
Threat Protection Throughput: 75 Gbps
-
SSL Inspection Throughput (IPS, avg HTTPS): 86 Gbps
-
SSL Inspection CPS (IPS, avg HTTPS): 70,000
-
SSL Inspection Concurrent Sessions (IPS, avg HTTPS): 9 Million
(Performance values are “up to” and vary by configuration; IPS/NGFW/Threat Protection measured with logging enabled.)
Interfaces & Connectivity (High Density 25G + 100G)
Built for high-speed core segmentation and data centre scale designs:
-
12 × 100GE QSFP28 / 40GE QSFP+ slots
-
16 × 25GE SFP28 / 10GE SFP+ / GE SFP slots
-
2 × 25GE SFP28 / 10GE SFP+ / GE SFP HA slots
-
2 × 25GE SFP28 / 10GE SFP+ / GE SFP AUX slots
-
2 × GE RJ45 management ports
-
USB (3.0): 1
-
Console port: 1
-
Included transceivers: 2 × SFP+ (SR 10GE)
System Performance & Scale
-
IPv4 Firewall Throughput (1518 / 512 / 64 byte UDP): 1.15 / 1.14 / 0.50 Tbps
-
IPv6 Firewall Throughput (1518 / 512 / 86 byte UDP): 1.15 / 1.14 / 0.50 Tbps
-
Firewall Latency (64 byte UDP): 2.98 μs
-
Firewall Throughput: 750 Mpps
-
Concurrent Sessions (TCP): 210 Million / 700 Million*
-
New Sessions/Second (TCP): 1 Million / 10 Million*
-
Firewall Policies: 400,000
* Requires Hyperscale Firewall License.
VPN & Remote Access
-
IPsec VPN Throughput (512 byte): 310 Gbps
-
Gateway-to-Gateway IPsec VPN tunnels: 40,000
-
Client-to-Gateway IPsec VPN tunnels: 200,000
-
SSL-VPN Throughput: 16 Gbps
-
Recommended concurrent SSL-VPN users (Tunnel mode): 30,000
Wireless & Endpoint Scale (Security Fabric capacity)
-
Max FortiSwitches supported: 300
-
Max FortiAPs (Total / Tunnel): 8192 / 4096
-
Max FortiTokens: 20,000
-
Max registered FortiClients: 20,000
SPU Acceleration + Hyperscale Firewall License
The 4400F uses NP7 (network processor) + CP9 (content processor) to accelerate firewall performance, SSL/TLS inspection (including TLS 1.3), IPS, and other high-load security functions.
Hyperscale Firewall License (LIC-FGT-HYPSC) enables hardware acceleration for CGNAT capabilities via NP7, including:
-
hardware session setup
-
firewall session logging
-
NAT acceleration
Hardware, Form Factor & Power
-
Form factor: Rack mount, 4RU
-
Onboard storage: 4400F: none | 4401F: 2 × 1.92TB SSD
-
Noise: 68.9 dBA
-
Airflow: front-to-back
-
Altitude note: operating at max temperature derates 1.5°C per 1000 ft (305 m)
Power
-
FG-4400F/-DC: 1533W avg / 1875W max
-
FG-4401F/-DC: 1539W avg / 1881W max
-
Redundant PSUs: 2+2 (AC), 1+1 (DC), hot swappable
-
DC input (DC variants): -48V to -60V DC (32A avg / 100A peak)
-
Heat dissipation: ~6398–6418 BTU/h
Models & SKUs
-
FG-4400F: 12× 100GE/40GE QSFP28 + 18× 25GE/10GE SFP28, NP7 + CP9, AC PSU
-
FG-4400F-DC: same + DC PSU
-
FG-4401F: same + 2× 1.92TB storage, AC PSU
-
FG-4401F-DC: same + 2× 1.92TB storage, DC PSU
-
LIC-FGT-HYPSC: Hyperscale Firewall License (for session setup acceleration + logging)

