Fortinet FortiGate Virtual Appliances
Unified Threat Management Solutions
Subscriptions and Support sold seperately, please contact us for pricing.
| Fortinet Products | ||
|---|---|---|
| FortiGate-Virtual Appliances | ||
| FortiGate-VM00 FortiGate-VM software "virtual appliance" designed for VMware ESX and ESXi platforms. 1 x vCPU core, 512MB RAM only and Extreme DB NOT supported |
#FG-VM00 Our Price: $1,495.00 |
|
| FortiGate-VM01 FortiGate-VM software "virtual appliance" designed for VMware ESX and ESXi platforms. 1 x vCPU core (FortiOS 4.0 MR3 patch 1 or later) |
#FG-VM01 Our Price: $3,495.00 |
|
| FortiGate-VM02 FortiGate-VM software "virtual appliance" designed for VMware ESX and ESXi platforms. 2 x vCPU core |
#FG-VM02 Our Price: $6,995.00 |
|
| FortiGate-VM04 FortiGate-VM software "virtual appliance" designed for VMware ESX and ESXi platforms. 4 x vCPU core |
#FG-VM04 Our Price: $13,995.00 |
|
| FortiGate-VM08 FortiGate-VM software "virtual appliance" designed for VMware ESX and ESXi platforms. 8 x vCPU core |
#FG-VM08 Our Price: $27,995.00 |
|
Click here to jump to more pricing!
Overview:
FortiGate virtual appliances allow you to mitigate blind spots by implementing critical security controls within your virtual infrastructure. They also allow you to rapidly provision security infrastructure whenever and wherever it is needed. Moreover, FortiGate virtual appliances feature all of the security and networking services common to traditional hardware-dbased FortiGate appliances. With the addition of virtual appliances from Fortinet, you can deploy a mix of hardware and virtual appliances, operating together and managed from a common centralized management platform.
FortiGate Virtual Appliance Features & Benefits:
FortiGate virtual appliances offer protection from a broad array of threats, with support for all of the security and networking services offered by the FortiOS operating system. In addition, the appliances offer these benefits:
- Increased visibility and control over communications within the virtualized infrastructure
- Rapid security deployment capability
- Ability to manage virtual security appliances and physical security appliances from a single pane of glass management platform
- Simple licensing with no per-user fees
Proven Success in Virtual Environments
Fortinet introduced Virtual Domain (VDOM) technology in 2004. Since that time, we have offered virtualized security to service providers and enterprises alike. With the addition of the virtual appliance form factor, Fortinet now provides greater choice and flexibility to customer by providing the ability to deploy our security solution within an existing virtualization infrastructure.
Choice of Form Factor
Very few organizations use 100% hardware IT infrastructure or 100% virtual IT infrastructure today, creating a need for both hardware appliances and virtual appliances in your security strategy. Fortinet allows you to build the security solution that's right for your environment, which often includes a mix of virtual and physical IT infrastructure. We also allow you to manage your Fortinet security from a single pane of glass management platform, allowing you to control and manage hardware appliances, virtual appliances, or a combination of both.
Multi-Threat Security
Using the advanced FortiOS operating system, FortiGate appliances effectively neutralize a wide range of security threats facing your virtualized environment. Whether deployed at the edge as a front-line defense, or deep within the virtual infrastructure for inter-zone security, FortiGate appliances protect your infrastructure with some of the most effective security available today.

FortiGate Virtual Appliances deployed inside the virtual infrastructure
FortiOS Software:
Integrated Multi-Threat Protection
The FortiGate product family provides cost-effective, comprehensive protection against network, content, and application-level threats. It defends your environment from complex, sophisticated attacks without degrading network availability and affecting application performance.
FortiGate platforms combine the purpose-built FortiOS™ security operating system with custom FortiASIC processors and other hardware to provide a comprehensive and highperformance array of security and networking functions.
The FortiGate product family delivers the highest level of network, content, and application security for enterprises of all sizes, while reducing total cost of ownership. With Fortinet, you deploy the network security you need to protect your intellectual property, preserve the privacy of critical customer information, and maintain regulatory compliance.
Fortinet’s ASIC-Based Advantage
FortiASIC is the foundation of Fortinet’s unique hardware technology. FortiASIC is a family of purpose built, high-performance network and content processors that uses an intelligent proprietary content scanning engine and multiple algorithms to accelerate computeintensive security services. FortiASIC provides the performance required to deliver enterprise and carrier-class UTM services. Coupled with the FortiOS security hardened Operating System, FortiASIC delivers extreme performance and security.
FortiOS 5.0 Software
FortiOS 5.0, the world's most powerful security operating system, is the foundation for all Fortinet FortiGate integrated security platforms. It provides more security, intelligence and control to help enterprises be better protected against today's advanced threats and enable more secure BYOD environments.
| More Security Fighting Advanced Threats More Security to fight advanced threats. A client reputation feature gives enterprises a cumulative security ranking of each device based on a range of behaviors and provides specific, actionable information that enables organizations to identity compromised systems and potential zero-day attacks in real time. The new advanced anti-malware detection system adds an on-device behavior-based heuristic engine and cloud-based AV services that includes an operating system sandbox and botnet IP reputation database. Together with superior industry-validated AV signatures, FortiOS 5.0 delivers unbeatable multi-layered protection against today's sophisticated malware.
|
|
| More Control Securing Mobile Devices More Control to secure mobile devices and BYOD environments by identifying devices and applying specific access policies as well as ecurity profiles, according to the device type or device group, location and usage.
|
|
| More Intelligence Build Smart Policies More Intelligence with automatic adjustment of role-based policies for users and guests based on location, data and application profile. Enhanced reporting and analysis also provides administrators with more intelligence on the behavior of their network, users, devices, applications and threats.
|
| FortiOS Security Services | ||
|---|---|---|
Firewall
Virtual Private Network (VPN)
Networking/Routing
User Authentication Options
Data Center Optimization
|
Antivirus/Antispyware
Web Filtering
Application Control
High Availability (HA)
WAN Optimization
Virtual Domains (VDOMs)
Wireless Controller
Traffic Shaping
|
Intrustion Prevention System (IPS)
Data Loss Prevention (DLP)
AntiSpam
Endpoint Compliance and Control
Management/Administration
Logging/Monitoring
|
Technology:
FirewallFortinet firewall technology delivers complete content and network protection by combining stateful inspection with a comprehensive suite of powerful security features. Application control, antivirus, IPS, Web filtering and VPN, along with advanced features such as an extreme threat database, vulnerability management and flowbased inspection work in concert to identify and mitigate the latest complex security threats. The security-hardened FortiOS operating system works together with purpose-built FortiASIC processors to accelerate inspection throughput and identification of malware. Features:
Firewall Throughput: |
Antivirus / AntispywareAntivirus content inspection technology protects against viruses, spyware, worms, and other forms of malware which can infect network infrastructure and endpoint devices. By intercepting and inspecting application-based traffic and content, antivirus protection ensures that malicious threats hidden within legitimate application content are identified and removed from data streams before they can cause damage. FortiGuard subscription services ensure that FortiGate devices are updated with the latest malware signatures for high levels of detection and mitigation. Features Supported:
Antivirus Performance: |
||||
VPNFortinet VPN technology provides secure communications between multiple networks and hosts, using SSL and IPsec VPN technologies. Both services leverage our custom FortiASIC processors to provide acceleration in the encryption and decryption steps. The FortiGate VPN service enforces complete content inspection and multithreat protections including antivirus, intrusion prevention and Web filtering. Traffic optimization provides prioritization for critical communications traversing VPN tunnels. Features:
|
Intrusion PreventionIPS technology protects against current and emerging networklevel threats. In addition to signature-based threat detection, IPS performs anomaly-based detection which alerts users to any traffic that matches attack behavior profiles. The Fortinet threat research team analyzes suspicious behavior, identifies and classifies emerging threats, and generate new signatures to include with FortiGuard Service updates. Features Supported:
IPS Throughput: |
||||
WAN OptimizationWide Area Network (WAN) optimization accelerates applications over geographically dispersed networks, while ensuring multithreat inspection of all network traffic. WAN optimization eliminates unnecessary and malicious traffic, optimizes legitimate traffic, and reduces the amount of bandwidth required to transmit data between applications and servers. Improved application performance and delivery of network services reduces bandwidth and infrastructure requirements, along with associated expenditures. Features:
|
SSL-Encrypted Traffic InspectionSSL-Encrypted Traffic Inspection protects clients and web and application servers from malicious SSL-encrypted traffic, to which many security devices are blind. SSL Inspection intercepts encrypted traffic and inspects it for threats, prior to routing it to its final destination. SSL Inspection applies to both client-oriented SSL traffic (such as users connecting to an SSL-encrypted hosted CRM site) and inbound traffic destined an organization’s own web and application servers. You now have the ability to enforce appropriate use policies on inappropriate encrypted web content, and protect servers from threats within encrypted traffic flows. Features:
|
||||
End-Point NACEndpoint NAC can enforce the use of FortiClient Endpoint Security for users connecting to corporate networks. Endpoint NAC verifies FortiClient Endpoint Security installation, firewall operation and upto- date antivirus signatures before allowing network access. Noncompliant endpoints, such as endpoints running applications that violate security policies can be quarantined or sent to remediation. Features:
|
Data Loss PreventionDLP uses a sophisticated pattern-matching engine to identify and prevent the transfer of sensitive information outside of your network perimeter, even when applications encrypt their communications. In addition to protecting your organization's critical data, Fortinet DLP provides audit trails to aid in policy compliance. You can select from a wide range of configurable actions to log, block, and archive data, and quarantine or ban users. Features:
|
||||
Logging, Reporting & MonitoringFortiGate consolidated security appliances provide extensive logging capabilities for traffic, system, and network protection functions. They also allow you to assemble drill-down and graphical reports from detailed log information. Reports can provide historical and current analysis of network activity to aid with identification of security issues and to prevent network misuse and abuse. Features:
|
Web FilteringWeb filtering protects endpoints, networks and sensitive information against Web-based threats by preventing users from accessing known phishing sites and sources of malware. In addition, administrators can enforce policies based on Website categories to easily prevent users from accessing inappropriate content and clogging networks with unwanted traffic. Features:
|
||||
Virtual DomainsVirtual Domains (VDOMs) enable a single FortiGate system to function as multiple independent virtual FortiGate systems. Each VDOM contains its own virtual interfaces, security profiles, routing table, administration, and many other features. FortiGate VDOMs reduce the complexity of securing disparate networks by virtualizing security resources on the FortiGate platform, greatly reducing the power and footprint required as compared to multiple point products. Ideal for large enterprise and managed service providers. Features:
|
Application ControlApplication control enables you to define and enforce policies for thousands of applications running across networks regardless of port or the protocol used for communication. The explosion of new Internet-based and Web 2.0 applications bombarding networks today make application control essential, as most application traffic looks like normal Web traffic to traditional firewalls. Fortinet application control provides granular control of applications along with traffic shaping capabilities and flow-based inspection options. Features:
|
||||
Setup / Configuration OptionsFortinet provides administrators with a variety of methods and wizards for configuring FortiGate appliances during deployment. From the easy-to-use Web-based interface to the advanced capabilities of the command-line interface, FortiGate systems offer the flexibility and simplicity you need. Features:
|
High AvailabilityHigh Availability (HA) configurations enhance reliability and increase performance by clustering multiple FortiGate appliances into a single entity. FortiGate High Availability supports Active-Active and Active-Passive options to provide maximum flexibility for utilizing each member within the HA cluster. The HA feature is included as part of the FortiOS operation system and is available with most FortiGate appliances. Features:
|
||||
Wireless ControllerAll FortiGate and FortiWiFi consolidated security platforms have an integrated wireless controller, enabling centralized management of FortiAP™ secure access points and wireless LANs. Unauthorized wireless traffic is blocked, while allowed traffic is subject to identityaware firewall policies and multi-threat security inspection. From a single console you can control network access, update security policies, and enable automatic identification and suppression of rogue access points. Features:
|
Technical Specifications:
| FortiGate | FG-VM00 | FG-VM01 | FG-VM02 | FG-VM04 | FG-VM08 |
|---|---|---|---|---|---|
| Technical Specifications | |||||
| Hypervisors Supported | VMware ESX/ESXi 3.5/4.0/4.1 | VMware ESX/ESXi 3.5/4.0/4.1 | VMware ESX/ESXi 3.5/4.0/4.1 | VMware ESX/ESXi 3.5/4.0/4.1 | VMware ESX/ESXi 3.5/4.0/4.1 |
| Max vCPUs Supported | 1 | 1 | 2 | 4 | 8 |
| Max Network Interfaces Supported | 10 | 10 | 10 | 10 | 10 |
| Max VM Memory Support | 512 MB | 1 GB | 3 GB | 4 GB | 4 GB |
| VM Memory Required (Minimum) | 512 MB | 512 MB | 512 MB | 512 MB | 512 MB |
| VM Storage Required (Minimum) | 30 GB | 30 GB | 30 GB | 30 GB | 30 GB |
| System Performance | |||||
| Firewall Throughput (UDP packets) | 500 Mbps | 1.0 Gbps | 1.6 Gbps | 2.0 Gbps | 4.0 Gbps* |
| IPSec VPN Throughput (AES256+SHA1) | 100 Mbps | 125 Mbps | 150 Mbps | 175 Mbps | 200 Mbps |
| IPS Throughput | 200 Mbps | 400 Mbps | 600 Mbps | 800 Mbps | 1.0 Gbps |
| Antivirus Throughput | 100 Mbps | 200 Mbps | 350 Mbps | 500 Mbps | 600 Mbps |
| Gateway-to-Gateway IPSec VPN Tunnels (System / VDOM) | 1,500 / 1,500 | 6,000 / 3,000 | 10,000 / 5,000 | 10,000 / 5,000 | 10,000 / 5,000 |
| Client-to-Gateway IPSec VPN Tunnels | 1,500 | 3,000 | 20,000 | 30,000 | 64,000 |
| Concurrent Sessions | 400,000 | 600,000 | 800,000 | 1.1 Million | 1.2 Million |
| New Sessions/Sec | 10,000 | 20,000 | 25,000 | 75,000 | 100,000 |
| Concurrent SSL-VPN Users (Recommended Max) | 500 | 1,500 | 3,000 | 10,000 | 25,000 |
| SSL VPN Throughput | 150 Mbps | 170 Mbps | 300 Mbps | 450 Mbps | 550 Mbps |
| Firewall Policies (VDOM/System) | 5,000 | 20,000 / 40,000 | 50,000 / 100,000 | 50,000 / 100,000 | 50,000 / 100,000 |
| Virtual Domains (Max / Default) | 1 | 10 / 10 | 25 / 10 | 50 / 10 | 250 / 10 |
| Wireless Access Points Controlled | 32 | 256 | 512 | 512 | 1,024 |
| Unlimited User Licenses | Yes | Yes | Yes | Yes | Yes |
| Available for Order | Yes | Yes | Yes | Yes | Yes |
Actual performance values may vary depending on the network traffic and system configuration. Performance metrics were observed using a Dell PowerEdge R715 server (AMD Opteron Processor 6128 CPU 2 GHz, 4 physical 1 GBe interfaces - 2 in / 2 out) running ESXi v4.1 update 1 with max vRAM assigned to each FortiGate virtual appliance.
Antivirus performance is measured based on HTTP traffic with 32 KB file attachments.
* Tested on Dell M910 (Intel Xeon Processor E7-4830 CPU 2.13 GHz, 2 physical 10 GBe interfaces) and optimized traffic flow.
Deployments:

The Fortinet Virtual Appliance Family
FortiGate-VM multi-threat security
FortiManager-VM centralized management
FortiAnalyzer-VM centralized reporting
FortiAuthenticator-VM user identity management
|
FortiMail-VM messaging security
FortiWeb-VM web application firewall
FortiScan-VM vulnerability management
|

Services & Support:
FortiGuard Security Subscription Services
FortiGuard® Security Subscription Services deliver dynamic, automated updates for Fortinet products. The Fortinet Global Security Research Team creates these updates to ensure up-to-date protection against sophisticated threats. Subscriptions include antivirus, intrusion prevention, web filtering, antispam, vulnerability and compliance management, application control, and database security services.
FortiCare Support Services
FortiCare™ Support Services provide global support for all Fortinet products and services. FortiCare support enables your Fortinet products to perform optimally. Support plans start with 8x5 Enhanced Support with return and replace hardware support or 24x7 Comprehensive Support with advanced hardware replacement. Options include Premium Support, Premium RMA, and Professional Services. All hardware products include a 1-year limited hardware warranty and a 90-day limited software warranty.
| FortiGuard Subscription Services | ||||||
|---|---|---|---|---|---|---|
| Product | Antivirus | Intrusion Prevention | Web Filtering | Antispam | Application Control | Vulnerability & Compliance |
| FortiGate Virtual Appliance | Supported | Supported | Supported | Supported | Supported | Supported |
Documentation:
![]()
Download the Fortinet FortiGate Virtual Appliance Series Datasheet (.PDF)
Subscriptions and Support sold seperately, please contact us for pricing.
| Fortinet Products | ||
|---|---|---|
| FortiGate-Virtual Appliances | ||
| FortiGate-VM00 FortiGate-VM software "virtual appliance" designed for VMware ESX and ESXi platforms. 1 x vCPU core, 512MB RAM only and Extreme DB NOT supported |
#FG-VM00 Our Price: $1,495.00 |
|
| FortiGate-VM01 FortiGate-VM software "virtual appliance" designed for VMware ESX and ESXi platforms. 1 x vCPU core (FortiOS 4.0 MR3 patch 1 or later) |
#FG-VM01 Our Price: $3,495.00 |
|
| FortiGate-VM02 FortiGate-VM software "virtual appliance" designed for VMware ESX and ESXi platforms. 2 x vCPU core |
#FG-VM02 Our Price: $6,995.00 |
|
| FortiGate-VM04 FortiGate-VM software "virtual appliance" designed for VMware ESX and ESXi platforms. 4 x vCPU core |
#FG-VM04 Our Price: $13,995.00 |
|
| FortiGate-VM08 FortiGate-VM software "virtual appliance" designed for VMware ESX and ESXi platforms. 8 x vCPU core |
#FG-VM08 Our Price: $27,995.00 |
|



