AVFirewalls.com is a Fortinet Gold Partner

AVFirewalls.com is a Fortinet Certified Network Security Professional



Leasing options available! Click here to request more information.

Fortinet - Multi-threat Security Systems For Real Time Network Protection, Network Virus Protection, VPN, Intrusion Detection & Prevention

Fortinet FortiGate 3040B

10-GbE Consolidated Security Appliances

Fortinet FortiGate 3040B

Fortinet Products
FortiGate-3040B
Fortinet FortiGate-3040B Firewall #FG-3040B
Our Price: $39,995.00
FortiGate-3040B 8x5 Enhanced Bundle
Fortinet FortiGate-3040B 8x5 Enhanced Bundle, 1 Year
*Includes Hardware Unit, Return and Replace, Firmware Upgrades, 8x5 Enhanced Support, Antivirus, IPS, Web Content Filtering, & Antispam
#FG-3040B-BDL
Our Price: $57,995.00
FortiGate-3040B 24x7 Comprehensive Bundle
Fortinet FortiGate-3040B 24x7 Comprehensive Bundle, 1 Year
*Includes Hardware Unit, Advanced Hardware Replacement (NBD), Firmware Upgrades, 24X7 Comprehensive Support, Antivirus, IPS, Web Content Filtering, & Antispam
#FG-3040B-BDL-950-12
Our Price: $64,835.00

Click here to jump to more pricing!

FREE Fortinet Duffle Bag & Book With Select Purchases!

Live Demo! Click here to loadOverview:

Whether protecting traditional, virtualized, or cloud-based infrastructure, the FortiGate-3040B's eight (8) 10-GbE ports and up to 40 Gbps of firewall throughput make it ideal or securing your large, low-latency networks. The purpose-built FortiGate-3040B delivers superior performance through a combination of custom hardware, high port density and consolidated security features.

FortiGate-3040B and FortiGate-3140B consolidated security appliances offer exceptional levels of performance, deployment flexibility, and security for large enterprise networks. Built from the ground up by Fortinet, these appliances deliver superior performance through a combination of custom hardware, including FortiASIC™ processors, high port density, and consolidated security features from the FortiOS™ operating system. Whether protecting virtualized infrastructure, cloud-providing infrastructure, or traditional IT infrastructure, 10-Gigabit Ethernet (10-GbE) ports and up to 58 Gbps of firewall throughput make these appliances ideal for securing high-bandwidth networks.

FortiGate-3040 Features & Benefits:

  • Eight (8) 10-GbE and twelve (12) GbE ports deliver superior firewall performance and scalability to handle your large network deployments
  • Advanced FortiASIC™ processors maximize throughput and deliver wire-speed firewall performance at 10-GbE and GbE link speeds
  • Rich feature set to protect next generation networks includes integrated IPS, application control, user-based policies, and endpoint policy enforcement
  • Available FortiManager and FortiAnalyzer integration simplifies your security management, reporting, and analysis
  • Redundant, hot-swappable power supplies minimize single-point failures
  • IPv6-ready platform with strong authentication options for secure network access and security policy compliance

High Performance Hardware

The FortiGate-3140B appliance provides up to 58 Gbps of firewall throughput and the FortiGate-3040B delivers up to 40 Gbps of firewall performance through the use of innovative FortiASIC processors and the latest generation of general purpose CPUs. Impressive consolidated security performance and support for a variety of configurations ensure that essential security functions keep up with the rest of your network.

High 10-GbE Port Density

You can protect your data center and other high-bandwidth applications with the 10-GbE interfaces that ship standard on the FortiGate-3040B/3140B appliances. Each platform includes system ports supporting SFP+, SFP, and RJ-45 connections, providing maximum flexibility.

Consolidated Security

Using the advanced FortiOS operating system, FortiGate-3040B/3140B appliances effectively neutralize a wide range of network security threats. Whether deployed as high-performance firewalls or as comprehensive multi-threat security solutions, these dedicated appliances protect assets with some of the most effective security available today.

FortiGate-3040B/3140B Diagram

The FortiASIC Advantage

FortiGate-3040B/3140B appliances include our latest FortiASIC Network Processors (NP) and Content Processors (CP). These purpose-built, highperformance processors use proprietary digital engines to accelerate resourceintensive security services.

The FortiASIC NP4 works inline with firewall and VPN functions delivering:

  • Wire-speed firewall performance at any packet size
  • VPN acceleration
  • Anomaly-based intrusion prevention, checksum offload, and packet defragmentation
  • Traffic shaping and priority queuing
The FortiASIC CP7 works outside of the direct flow of traffic, providing highspeed cryptography and content inspection services including:
  • Encryption and decryption offloading
  • Signature-based content inspection acceleration

FortiGate-3140B appliance includes the custom FortiASIC Security Processor (SP) chip. The FortiASIC SP2 provides additional intrusion prevention system (IPS) and firewall acceleration for the most demanding environments.

FortiASIC

Fortinet Multi-Threat SecurityFortiOS Software:


Integrated Multi-Threat Protection

The FortiGate product family provides cost-effective, comprehensive protection against network, content, and application-level threats. It defends your environment from complex, sophisticated attacks without degrading network availability and affecting application performance.

FortiGate platforms combine the purpose-built FortiOS™ security operating system with custom FortiASIC processors and other hardware to provide a comprehensive and highperformance array of security and networking functions.

The FortiGate product family delivers the highest level of network, content, and application security for enterprises of all sizes, while reducing total cost of ownership. With Fortinet, you deploy the network security you need to protect your intellectual property, preserve the privacy of critical customer information, and maintain regulatory compliance.

Fortinet’s ASIC-Based Advantage

FortiASIC is the foundation of Fortinet’s unique hardware technology. FortiASIC is a family of purpose built, high-performance network and content processors that uses an intelligent proprietary content scanning engine and multiple algorithms to accelerate computeintensive security services. FortiASIC provides the performance required to deliver enterprise and carrier-class UTM services. Coupled with the FortiOS security hardened Operating System, FortiASIC delivers extreme performance and security.

FortiOS 5.0 Software

FortiOS 5.0, the world's most powerful security operating system, is the foundation for all Fortinet FortiGate integrated security platforms. It provides more security, intelligence and control to help enterprises be better protected against today's advanced threats and enable more secure BYOD environments.

More Security More Security Fighting Advanced Threats
More Security to fight advanced threats. A client reputation feature gives enterprises a cumulative security ranking of each device based on a range of behaviors and provides specific, actionable information that enables organizations to identity compromised systems and potential zero-day attacks in real time. The new advanced anti-malware detection system adds an on-device behavior-based heuristic engine and cloud-based AV services that includes an operating system sandbox and botnet IP reputation database. Together with superior industry-validated AV signatures, FortiOS 5.0 delivers unbeatable multi-layered protection against today's sophisticated malware.
  • Client Reputation with Cumulative Rankings
  • OS Sandbox
  • Advanced Botnet Protection
More Control More Control Securing Mobile Devices
More Control to secure mobile devices and BYOD environments by identifying devices and applying specific access policies as well as ecurity profiles, according to the device type or device group, location and usage.
  • Device Identification & Visibility
  • New Identity Based Policies
  • Endpoint Control
More Intelligence More Intelligence Build Smart Policies
More Intelligence with automatic adjustment of role-based policies for users and guests based on location, data and application profile. Enhanced reporting and analysis also provides administrators with more intelligence on the behavior of their network, users, devices, applications and threats.
  • Provide Guest Access with Confidence
  • Enhanced Visibility & Reporting and Overal User Experience
  • Extended Single Sign On Capabilities

FortiOS Security Services
Firewall
  • ICSA Labs Certified (Enterprise Firewall)
  • NAT, PAT, Transparent (Bridge)
  • Routing Mode (RIP, OSPF, BGP, Multicast)
  • Policy-Based NAT
  • Virtual Domains (NAT/Transparent mode)
  • VLAN Tagging (802.1Q)
  • Group-Based Authentication & Scheduling
  • SIP/H.323 NAT Traversal
  • WINS Support
  • Explicit Proxy Support (Citrix/TS etc.)
  • VoIP Security (SIP Firewall/RTP Pinholing)
  • Granular Per-Policy Protection Profiles
  • Identity/Application-Based Policy
  • Vulnerability Management
  • IPv6 Support (NAT/Transparent mode)

Virtual Private Network (VPN)

  • ICSA Labs Certified (IPSec)
  • PPTP, IPSec, and SSL Dedicated Tunnels
  • SSL-VPN Concentrator (incl. iPhone client support)
  • DES, 3DES, and AES Encryption Support
  • SHA-1/MD5 Authentication
  • PPTP, L2TP, VPN Client Pass Through
  • Hub and Spoke VPN Support
  • IKE Certificate Authentication (v1 & v2)
  • IPSec NAT Traversal
  • Automatic IPSec Configuration
  • Dead Peer Detection
  • RSA SecurID Support
  • SSL Single Sign-On Bookmarks
  • SSL Two-Factor Authentication
  • LDAP Group Authentication (SSL)

Networking/Routing

  • Multiple WAN Link Support
  • DHCP Client/Server
  • Policy-Based Routing
  • Dynamic Routing for IPv4 and IPv6 (RIP, OSPF, BGP, & Multicast for IPv4)
  • Multi-Zone Support
  • Route Between Zones
  • Route Between Virtual LANs (VDOMS)
  • Multi-Link Aggregation (802.3ad)
  • IPv6 Support (Firewall, DNS, Transparent Mode, SIP, Dynamic Routing, Admin Access, Management)
  • VRRP and Link Failure Control
  • sFlow Client

User Authentication Options

  • Local Database
  • Windows Active Directory (AD) Integration
  • External RADIUS/LDAP Integration
  • Xauth over RADIUS for IPSEC VPN
  • Xauth over RADIUS for IPSEC VPN
  • RSA SecurID Support
  • LDAP Group Support

Data Center Ootimization

  • Web Server Caching
  • TCP Multiplexing
  • HTTPS Offloading
  • WCCP Support
Antivirus/Antispyware
  • ICSA Labs Certified (Gateway Antivirus)
  • Includes AntiSpyware and Worm Prevention: HTTP/HTTPS, SMTP/SMTPS, POP3/POP3S, IMAP/IMAPS, FTP, IM protocols
  • Flow-Based Antivirus Scanning Mode
  • Automatic “Push” Content Updates
  • File Quarantine Support
  • Databases: Standard, Extended, Extreme, Flow IPv6 Support

Web Filtering

  • 76 Unique Categories
  • FortiGuard Web Filtering Service Categorizes over 2 Billion Web pages
  • HTTP/HTTPS Filtering
  • Web Filtering Time-Based Quota
  • URL/Keyword/Phrase Block
  • URL Exempt List
  • Content Profiles
  • Blocks Java Applet, Cookies, Active X
  • MIME Content Header Filtering
  • IPv6 Support

Application Controll

  • Identify and Control Over 1400 Applications
  • Control Popular IM/P2P Applications Regardless of Port/Protocol:
  • AOL-IM, Yahoo, MSN, KaZaa, ICQ, Gnutella, BitTorrent, MySpace, WinNY, Skype, eDonkey, Facebook

High Availability (HA)

  • Active-Active, Active-Passive
  • Stateful Failover (FW and VPN)
  • Device Failure Detection and Notification
  • Link Status Monitor
  • Link failover
  • Server Load Balancing
Wan Optimization
  • Bi-directional / Gateway to Client/Gateway
  • Integrated Caching and Protocol Optimization
  • Accelerates CIFS/FTP/MAPI/HTTP/HTTPS/Generic TCP

Virtual Domains (VDOMs)

  • Separate Firewall/Routing domains
  • Separate Administrative domains
  • Separate VLAN interfaces
  • 10 VDOM License Std. (more can be added)

Wireless Controller

  • Unified WiFi and Access Point Management
  • Automatic Provisioning of APs
  • On-wire Detection and Blocking of Rogue APs
  • Virtual APs with Different SSIDs
  • Multiple Authentication Methods

Traffic Shaping

  • Policy-based Traffic Shaping
  • Application-based and Per-IP Traffic Shaping
  • Differentiated Services (DiffServ) Support
  • Guarantee/Max/Priority Bandwidth
  • Shaping via Accounting, Traffic Quotas
Intrusion Prevention System (IPS)
  • ICSA Labs Certified (NIPS)
  • Protection From Over 3000 Threats
  • Protocol Anomaly Support
  • Custom Signature Support
  • Automatic Attack Database Update
  • IPv6 Support

Data Loss Prevention (DLP)

  • Identification and Control Over Sensitive Data in Motion
  • Built-in Pattern Database
  • RegEx-based Matching Engine for Customized Patterns
  • Configurable Actions (block/log)
  • Supports IM, HTTP/HTTPS, and More
  • Many Popular File Types Supported
  • International Character Sets Supported

Antispam

  • Support for SMTP/SMTPS, POP3/POP3S, IMAP/IMAPS
  • Real-Time Blacklist/Open Relay Database Server
  • MIME Header Check
  • Keyword/Phrase Filtering
  • IP Address Blacklist/Exempt List
  • Automatic Real-Time Updates From FortiGuard Network

Endpoint Compliance And Control

  • Monitor & Control Hosts Running FortiClient Endpoint Security

Management/Administration Options

  • Console Interface (RS-232)
  • WebUI (HTTP/HTTPS)
  • Telnet / Secure Command Shell (SSH)
  • Command Line Interface
  • Role-Based Administration
  • Multi-language Support: English, Japanese, Korean, Spanish, Chinese (Simplified & Traditional), French
  • Multiple Administrators and User Levels
  • Upgrades and Changes Via TFTP and WebUI
  • System Software Rollback
  • Configurable Password Policy
  • Optional FortiManager Central Management
Logging/Monitoring/
Vulnerability
  • Local Event Logging
  • Log to Remote Syslog/WELF server
  • Internal Logging
  • Graphical Real-Time and Historical Monitoring
  • SNMP Support
  • Email Notification of Viruses And Attacks
  • VPN Tunnel Monitor
  • Optional FortiAnalyzer Logging/Reporting
  • Optional FortiGuard Analysis and Management Service

Technology:

Firewall

Fortinet firewall technology delivers complete content and network protection by combining stateful inspection with a comprehensive suite of powerful security features. Application control, antivirus, IPS, Web filtering and VPN, along with advanced features such as an extreme threat database, vulnerability management, flowbased inspection and active profiling work in concert to identify and mitigate the latest complex security threats. The securityhardened FortiOS operating system works together with purposebuilt FortiASIC processors to accelerate inspection throughput and identification of malware.

Features:

  • NAT, PAT and Transparement (Bridge)
  • Policy-Based NAT
  • SIP/H.323/SCCP NAT Traversal
  • VLAN Tagging (802.1Q)
  • Vulnerability Management
  • IPv6 Support

Firewall (1518 Byte): 40 Gbps (FG-3040B)/58 Gbps (FG-3140B)
Firewall (512 Byte): 40 Gbps (FG-3040B)/55 Gbps (FG-3140B)
Firewall (64 Byte): 40 Gbps (FG-3040B)/43 Gbps (FG-3140B)

Antivirus / Antispyware

Antivirus content inspection technology protects against viruses, spyware, worms, and other forms of malware which can infect network infrastructure and endpoint devices. By intercepting and inspecting application-based traffic and content, antivirus protection ensures that malicious threats hidden within legitimate application content are identified and removed from data streams before they can cause damage. FortiGuard subscription services ensure that FortiGate devices are updated with the latest malware signatures for high levels of detection and mitigation.

Features Supported:

  • Automatic Database Updates
  • Proxy Antirus
  • Flow-based Antirus
  • File Quarantine
  • IPv6 Support

Antivirus (Proxy-based): 1.2 Gbps (FG-3040B)/1.2 Gbps (FG-3140B)
Antivirus (Flow-based): 2 Gbps (FG-3040B)/2 Gbps (FG-3140B)

VPN

Fortinet VPN technology provides secure communications between multiple networks and hosts, using SSL and IPsec VPN technologies. Both services leverage our custom FortiASIC processors to provide acceleration in the encryption and decryption steps. The FortiGate VPN service enforces complete content inspection and multithreat protections including antivirus, intrusion prevention and Web filtering. Traffic optimization provides prioritization for critical communications traversing VPN tunnels.

Features:

  • IPSec and SSL VPN
  • DES, 3DES, AES and SHA-1/MD5 Authentication
  • PPTP, L2TP, VPN Client Pass Through
  • SSL Single Sign-On Bookmarks
  • Two-Factor Authentication

IPSec VPN Throughput: 17 Gbps (FG-3040B)/22 Gbps (FG-3140B)
SSL VPN Throughput: 500 Mbps (FG-3040B)/500 Mbps (FG-3140B)
SSL VPN Users Recommended (Max): 22,000 (FG-3040B)/22,000 (FG-3140B)

Intrusion Prevention

IPS technology protects against current and emerging networklevel threats. In addition to signature-based threat detection, IPS performs anomaly-based detection which alerts users to any traffic that matches attack behavior profiles. The Fortinet threat research team analyzes suspicious behavior, identifies and classifies emerging threats, and generate new signatures to include with FortiGuard Service updates.

Features Supported:

  • Automatic Attack Database Update
  • Protocol Anomaly Support
  • IPS and DoS Prevention Sensor
  • Custom Signature Support
  • IPv6 Support

IPS Throughput: 6 Gbps (FG-3040B)/7 Gbps (FG-3140B)

WAN Optimization

Wide Area Network (WAN) optimization accelerates applications over geographically dispersed networks, while ensuring multithreat inspection of all network traffic. WAN optimization eliminates unnecessary and malicious traffic, optimizes legitimate traffic, and reduces the amount of bandwidth required to transmit data between applications and servers. Improved application performance and delivery of network services reduces bandwidth and infrastructure requirements, along with associated expenditures.

Features:

  • Gateway-to-Gateway Optimization
  • Bi-directional Gateway-to-client Optimization
  • Web Caching
  • Secure Tunnel
  • Transparent Mode

SSL-Encrypted Traffic Inspection

SSL-Encrypted Traffic Inspection protects clients and web and application servers from malicious SSL-encrypted traffic, to which many security devices are blind. SSL Inspection intercepts encrypted traffic and inspects it for threats, prior to routing it to its final destination. SSL Inspection applies to both client-oriented SSL traffic (such as users connecting to an SSL-encrypted hosted CRM site) and inbound traffic destined an organization’s own web and application servers. You now have the ability to enforce appropriate use policies on inappropriate encrypted web content, and protect servers from threats within encrypted traffic flows.

Features:

  • Protocol: HTTPS, SMTPS, POP3S, IMAPS
  • Inspection support: Antivirus, Web Filtering, Antispam, Data Loss Prevention, SSL Offload

End-Point NAC

Endpoint NAC can enforce the use of FortiClient Endpoint Security for users connecting to corporate networks. Endpoint NAC verifies FortiClient Endpoint Security installation, firewall operation and upto- date antivirus signatures before allowing network access. Noncompliant endpoints, such as endpoints running applications that violate security policies can be quarantined or sent to remediation.

Features:

  • Monitor & Control Hosts Running FortiClient
  • Vulnerability Scanning of Network Nodes
  • Quarantine Portal
  • Application Detection and Control
  • Built-in Application Database

Data Loss Prevention

DLP uses a sophisticated pattern-matching engine to identify and prevent the transfer of sensitive information outside of your network perimeter, even when applications encrypt their communications. In addition to protecting your organization's critical data, Fortinet DLP provides audit trails to aid in policy compliance. You can select from a wide range of configurable actions to log, block, and archive data, and quarantine or ban users.

Features:

  • Identification And Control Over Data in Motion
  • Built-in Pattern Database
  • RegEx Based Matching Engine
  • Common File Format Inspection
  • International Character Sets Supported
  • Flow-based DLP

Logging, Reporting & Monitoring

FortiGate consolidated security appliances provide extensive logging capabilities for traffic, system, and network protection functions. They also allow you to assemble drill-down and graphical reports from detailed log information. Reports can provide historical and current analysis of network activity to aid with identification of security issues and to prevent network misuse and abuse.

Features:

  • Internal Log storage and Report Generation
  • Graphical Real-Time and Historical Monitoring
  • Graphical Report Scheduling Support
  • Graphical Drill-down Charts
  • Optional FortiAnalyzer Logging (including per VDOM)
  • Optional FortiGuard Analysis and Management Service

Web Filtering

Web filtering protects endpoints, networks and sensitive information against Web-based threats by preventing users from accessing known phishing sites and sources of malware. In addition, administrators can enforce policies based on Website categories to easily prevent users from accessing inappropriate content and clogging networks with unwanted traffic.

Features:

  • HTTP/HTTPS Filtering
  • URL / Keyword / Phrase
  • Block Blocks Java Applet, Cookies or Active X
  • MIME Content Header Filtering
  • Flow-based Web Filtering
  • IPv6 Support

Virtual Domains

Virtual Domains (VDOMs) enable a single FortiGate system to function as multiple independent virtual FortiGate systems. Each VDOM contains its own virtual interfaces, security profiles, routing table, administration, and many other features. FortiGate VDOMs reduce the complexity of securing disparate networks by virtualizing security resources on the FortiGate platform, greatly reducing the power and footprint required as compared to multiple point products. Ideal for large enterprise and managed service providers.

Features:

  • Separate Firewall / Routing Domains
  • Separate Administrative Domains
  • Separate VLAN Interfaces
  • Maximum VDOMs: 250
  • Default VDOMs: 10

Application Control

Application control enables you to define and enforce policies for thousands of applications running across networks regardless of port or the protocol used for communication. The explosion of new Internet-based and Web 2.0 applications bombarding networks today make application control essential, as most application traffic looks like normal Web traffic to traditional firewalls. Fortinet application control provides granular control of applications along with traffic shaping capabilities and flow-based inspection options.

Features:

  • Identify and Control Over 1000 Applications
  • Traffic Shaping (Per Application)
  • Control Popular IM/P2P Apps Regardless of Port / Protocol
  • Popular Applications include: AOL-IM, Yahoo, MSN, KaZaa, ICQ, Gnutella, BitTorrent, MySpace, WinNY, Skype, eDonkey, Facebook, and more

High Availability

High Availability (HA) configurations enhance reliability and increase performance by clustering multiple FortiGate appliances into a single entity. FortiGate High Availability supports Active-Active and Active-Passive options to provide maximum flexibility for utilizing each member within the HA cluster. The HA feature is included as part of the FortiOS operation system and is available with most FortiGate appliances.

Features:

  • Active-Active and Active-Passive
  • Stateful Failover (FW and VPN)
  • Link State Monitor and Failover
  • Device Failure Detection and Notification
  • Server Load Balancing

Setup / Configuration Options

Fortinet provides administrators with a variety of methods and wizards for configuring FortiGate appliances during deployment. From the easy-to-use Web-based interface to the advanced capabilities of the command-line interface, FortiGate systems offer the flexibility and simplicity you need.

Features:

  • Web-based User Interface
  • Command Line Interface (CLI) over serial connection
  • Pre-Configured settings from USB drive

Wireless Controller

All FortiGate and FortiWiFi consolidated security platforms have an integrated wireless controller, enabling centralized management of FortiAP™ secure access points and wireless LANs. Unauthorized wireless traffic is blocked, while allowed traffic is subject to identityaware firewall policies and multi-threat security inspection. From a single console you can control network access, update security policies, and enable automatic identification and suppression of rogue access points.

Features:

  • Unified WiFi and Access Point Management
  • Automatic Provisioning of APs
  • On-wire Detection and Blocking of Rogue APs
  • Supports Virtual APs with Different SSIDs
  • Supports Multiple Authentication Methods

 


Technical Specifications:

FortiGate-3040B Front and Back

FortiGate Model FortiGate-3040B FortiGate-3140B
  FortiGate-3040B FortiGate-3140B
Interfaces and Modules
Total Network Interfaces 20 22
Hardware Accelerated 10-GbE SFP+ Interfaces 8 10
Hardware Accelerated 1-GbE SFP Interfaces 10 10
Non-Accelerated 10/100/1000 Interfaces 2 2
Transceivers Included 2 SR SFP+ 2 SR SFP+
Fortinet Storage Module (FSM) Expansion Slot 4 4
Local Solid State Disk Storage Included 64 GB SSD (1x FSM-064) 64 GB SSD (1x FSM-064)
USB Server 2 2
RJ45 Serial Console 1 1
System Performance
Firewall Throughput (1518 byte UDP packets) 40 Gbps 58 Gbps
Firewall Throughput (512 byte UDP packets) 40 Gbps 55 Gbps
Firewall Throughput (64 byte UDP packets) 40 Gbps 43 Gbps
IPSec VPN Throughput (AES256+SHA1) 17 Gbps 22 Gbps
IPS Throughput 6 Gbps 7 Gbps
Antivirus Throughput (Proxy-based) 1.2 Gbps 1.2 Gbps
Antivirus Throughput (Flow-based) 2 Gbps 2 Gbps
Static IPSec VPN Tunnels (System / VDOM) 10,000 / 5,000 10,000 / 5,000
Concurrent IPSec VPN Tunnels 64,000 64,000
Concurrent Sessions 4.0 Million 4.0 Million
New Sessions/Sec 100,000 100,000
Concurrent SSL-VPN Users (Recommended Max) 22,000 22,000
SSL-VPN Throughput 500 Mbps 500 Mbps
Firewall Policies (VDOM/System) 50,000 / 100,000 50,000 / 100,000
Virtual Domains (Max / Default) 250 / 10 250 / 10
Wireless Access Points Controlled 1,024 1,024
Unlimited User Licenses Yes Yes
Redundant Power Supplies (Hot Swappable) Yes Yes
Dimensions
Dimensions H x W x L 3.46 x 17.40 x 21.85 in
(88 x 442 x 555 mm)
3.46 x 17.40 x 21.85 in
(88 x 442 x 555 mm)
Weight 35 lb (15.9 Kg) 41 lb (18.6 kg)
Rack Mountable Yes Yes
Environmental
Power Source 100 - 240 VAC, 50-60 Hz 100 - 240 VAC, 50-60 Hz
Current (Max) 3.50A /110V, 1.75A /220V 4.18A /110V, 2.09A /220V
Power Consumption (AVG) 315 W 383 W
Power Consumption (Max) 378 W 460 W
Heat Dissipation 1290 BTU/h 1570 BTU/h
Operating Temperature 32 – 104°F (0 – 40°C)
Storage Temperature -13 to 158°F (-35 to 70°C)
Humidity 20 to 90% non-condensing
Compliance
Regulatory Compliance FCC Class A Part 15, UL/CUL, C Tick, VCCI

FortiGate-3040B/3140B consolidated security appliances also include:

  • Multiple deployment modes (Transparent/ Routing) for ease of installation
  • Integrated Switch Fabric for very low latency
  • Advanced Layer-2/3 routing for data center traffic optimization
  • High Availability (Active/Active, Active/Passive, Clustering) for maximum uptime
  • Virtual Domains (VDOMs) for multi-tenant environments
  • Traffic Shaping and Prioritization ensure performance of critical traffic
  • WAN Optimization and Web Caching for improved performance and lower costs
  • Local event logging and reporting for compliance and auditing
Management Options:
  • Local Web-Based Management Interface
  • Command Line Management Interface (CLI)
  • Centralized management and analysis by

Deployments:

FortiGate multi-threat security solutions are designed for enterprise networks.

Secure Network Perimeters / Internal Segmentation

FortiGate Deployment

Firewall and VPN services are deployed at the perimeter of the internal network to securely connect remote offices and mobile users to an organization’s private resources while at the same time preventing any other unauthorized access. Intrusion prevention, antivirus and Web filtering services ensure that network-based threats and contentbased threats are stopped inbound as well as outbound.

Inside the network, segmentation can be achieved using firewall, intrusion prevention and antivirus technologies. Internal segmentation effectively isolates outbreaks before they are allowed to spread throughout an organization’s network.

Virtual Security Domains / Distributed Enterprises

FortiGate Deployment

FortiGate platforms support multiple security zones and virtual security domains to customize a network’s security policy anywhere requirements demand. Virtual Domains (VDOMs) can also be used to provision services for external customers.

All FortiGate solutions start from the same flexible high performance architecture. Core networking features found in every model such as High Availability (HA) and support for dynamic routing protocols enable the FortiGate to be deployed into highly distributed and fully meshed network environments.

Datacenter and Critical Applications Security

FortiGate Deployment

Effectively protecting an organization’s mission critical applications from a new generation of application-based threats that are now targeting Web 2.0, VoIP and even IPTV applications requires a comprehensive security strategy that contains multiple layers of network-based defenses. Unfortunately, many of these new applications are time-critical, forcing administrators to choose between performance and security. The FortiGate family of multi-gigabit performance solutions deliver real-time protection against multi-layered security threats which target application servers. In addition to protecting against these new threat types, advanced antispam filtering relieves the ever evolving problem of unsolicited bulk mail while also filtering mail for spyware and security policy violating content.

Services & Support:

FortiGuard Security Subscription Services

FortiGuard Security Subscription Services deliver dynamic, automated updates for Fortinet products. The Fortinet Global Security Research Team creates these updates to ensure up-to-date protection against sophisticated threats. Subscriptions include antivirus, intrusion prevention, web filtering, antispam, vulnerability and compliance management, application control, and database security services.

FortiCare Support Services

FortiCare Support Services provide global support for all Fortinet products and services. FortiCare support enables your Fortinet products to perform optimally. Support plans start with 8x5 Enhanced Support with "return and replace" hardware replacement or 24x7 Comprehensive Support with advanced replacement. Options include Premium Support, Premium RMA, and Professional Services. All hardware products include a 1-year limited hardware warranty and 90-day limited software warranty.

FortiGuard Subscription Services
Product Antivirus Intrusion Prevention Web Filtering Antispam Application Control Vulnerability & Compliance
FortiGate-3040B Supported Supported Supported Supported Supported Supported
FortiGate-3140B Supported Supported Supported Supported Supported Supported

Documentation:

PDF File
Download the Fortinet FortiGate 3040B/3140B Datasheet (.PDF)

Fortinet FortiGate 3040B-DC (FG-3040B-DC) is also available with DC Power,
Request a Quote for Pricing here!

Fortinet Products
FortiGate-3040B
Fortinet FortiGate-3040B Firewall #FG-3040B
Our Price: $39,995.00
FortiGate-3040B 8x5 Enhanced Bundle
Fortinet FortiGate-3040B 8x5 Enhanced Bundle, 1 Year
*Includes Hardware Unit, Return and Replace, Firmware Upgrades, 8x5 Enhanced Support, Antivirus, IPS, Web Content Filtering, & Antispam
#FG-3040B-BDL
Our Price: $57,995.00
Fortinet FortiGate-3040B 8x5 Enhanced Bundle, 2 Year
*Includes Hardware Unit, Return and Replace, Firmware Upgrades, 8x5 Enhanced Support, Antivirus, IPS, Web Content Filtering, & Antispam
#FG-3040B-BDL-900-24
Our Price: $73,745.00
Fortinet FortiGate-3040B 8x5 Enhanced Bundle, 3 Year
*Includes Hardware Unit, Return and Replace, Firmware Upgrades, 8x5 Enhanced Support, Antivirus, IPS, Web Content Filtering, & Antispam
#FG-3040B-BDL-900-36
Our Price: $84,995.00
FortiGate-3040B 24x7 Comprehensive Bundle
Fortinet FortiGate-3040B 24x7 Comprehensive Bundle, 1 Year
*Includes Hardware Unit, Advanced Hardware Replacement (NBD), Firmware Upgrades, 24X7 Comprehensive Support, Antivirus, IPS, Web Content Filtering, & Antispam
#FG-3040B-BDL-950-12
Our Price: $64,835.00
Fortinet FortiGate-3040B 24x7 Comprehensive Bundle, 2 Year
*Includes Hardware Unit, Advanced Hardware Replacement (NBD), Firmware Upgrades, 24X7 Comprehensive Support, Antivirus, IPS, Web Content Filtering, & Antispam
#FG-3040B-BDL-950-24
Our Price: $85,310.00
Fortinet FortiGate-3040B 24x7 Comprehensive Bundle, 3 Year
*Includes Hardware Unit, Advanced Hardware Replacement (NBD), Firmware Upgrades, 24X7 Comprehensive Support, Antivirus, IPS, Web Content Filtering, & Antispam
#FG-3040B-BDL-950-36
Our Price: $99,935.00
FortiGate-3040B 1 Year Hardware Bundle Upgrade
1 Year Hardware Bundle Upgrade from 8x5 to 24x7 FortiCare Contract for FortiGate-3040B #FC-10-03040-274-01-12
Our Price: $6,840.00
Fortinet Bundle Renewals
FortiGate-3040B 8x5 Bundle Subscription Renewal
The 8x5 Bundle Subscription renewal includes 8X5 Hardware Return and Replace (3 Days), Firmware Upgrades, 8x5 Enhanced Support, Anti-Virus, IPS, Content Filtering and Anti-Spam.
8x5 for FortiGate-3040B, 1-Year Bundle Renewal #FC-10-03040-900-02-12
Our Price: $18,000.00
8x5 for FortiGate-3040B, 2-Year Bundle Renewal #FC-10-03040-900-02-24
Our Price: $33,750.00
8x5 for FortiGate-3040B, 3-Year Bundle Renewal #FC-10-03040-900-02-36
Our Price: $47,250.00
FortiGate-3040B 24x7 Bundle Subscription Renewal
The 24x7 Bundle Subscription renewal includes Advanced Hardware Replacement (NBD), Firmware Upgrades, 24X7 Comprehensive Support, Anti-Virus, IPS, Content Filtering and Anti-Spam.
24x7 for FortiGate-3040B, 1-Year Bundle Renewal #FC-10-03040-950-02-12
Our Price: $23,400.00
24x7 for FortiGate-3040B, 2-Year Bundle Renewal #FC-10-03040-950-02-24
Our Price: $43,875.00
24x7 for FortiGate-3040B, 3-Year Bundle Renewal #FC-10-03040-950-02-36
Our Price: $61,425.00
Fortinet FortiGuard Subscriptions Renewal
FortiGuard Subscriptions 1-Year Renewal
AntiVirus (AV) Service for FortiGate-3040B, 1-Year Renewal #FC-10-03040-100-02-12
Our Price: $9,999.00
IPS Service for FortiGate-3040B, 1-Year Renewal #FC-10-03040-108-02-12
Our Price: $7,999.00
Web Service for FortiGate-3040B, 1-Year Renewal #FC-10-03040-112-02-12
Our Price: $15,998.00
AntiSpam (AS) Service for FortiGate-3040B, 1-Year Renewal #FC-10-03040-114-02-12
Our Price: $7,200.00
AV, IPS, Web, and AS Service for FortiGate-3040B, 1-Year Renewal #FC-10-03040-107-02-12
Our Price: $28,837.00
Fortinet FortiCare 8x5 Subscriptions
FortiGate-3040B FortiCare 8x5, Renewals
The FortiCare 8x5 Renewal includes 8x5 Enhanced Support, Return and Replace, Firmware Upgrades, VPN, Traffic Management
8x5 FortiCare for FortiGate-3040B, 1-Year Renewal #FC-10-03040-311-02-12
Our Price: $6,000.00
8x5 FortiCare for FortiGate-3040B, 2-Year Renewal #FC-10-03040-311-02-24
Our Price: $11,250.00
8x5 FortiCare for FortiGate-3040B, 3-Year Renewal #FC-10-03040-311-02-36
Our Price: $15,750.00
Fortinet FortiCare 24x7 Subscriptions
FortiGate-3040B FortiCare 24x7, Renewals
The FortiCare 24x7 Renewal includes 24x7 Comprehensive Support, Advanced Hardware Replacement (NBD), Firmware Upgrades, VPN, and Traffic Management
24x7 FortiCare for FortiGate-3040B, 1-Year Renewal #FC-10-03040-247-02-12
Our Price: $9,999.00
24x7 FortiCare for FortiGate-3040B, 2-Year Renewal #FC-10-03040-247-02-24
Our Price: $18,749.00
24x7 FortiCare for FortiGate-3040B, 3-Year Renewal #FC-10-03040-247-02-36
Our Price: $26,248.00