Fortinet FortiSwitch 224D-POE
Secure Access Switches
Sorry, this product is no longer available. Please Contact Us for a replacement.
Click here to jump to more pricing!
FortiSwitch Secure Access switches deliver outstanding security, performance and manageability for threat conscious small to mid-sized businesses, distributed enterprises and branch offices. Tightly integrated into the FortiGate® Network Security Platform, the FortiSwitch Secure Access switches can be managed directly from the familiar FortiGate interface. This single pane of glass management provides complete visibility and control of all users and devices on the network, regardless of how they connect.
When a device connects to a Secure Access Switch Ethernet port, it is first identified, and then the user is authenticated. Once authenticated, access to the network is granted based on pre-defined security policy from the FortiGate, ensuring secure network access across the enterprise, without impacting the user experience.
Secure Managed Switches for Wire Closet InstallationThe FortiSwitch D-Series switches are ideal for the next generation applications, where increased productivity can be achieved through faster network access speeds via dedicated Gigabit Ethernet ports. With a compact 1RU form factor, these switches are ideally suited for high density enterprise or classroom wire closet installations, delivering a truly secure network access platform for wired Ethernet devices.
Simple Network Deployment and Compliance
The Power over Ethernet (PoE) capability enables simple installation of wireless Access Points and IP phones in the network, with power and data being delivered over the same network cable. There is no need to contract electricians to install power for your PoE capable devices anymore, reducing your overall network TCO.
By leveraging the FortiSwitch VLAN segmentation feature of the switches, enterprise networks can support the convergence of voice, data and wireless traffic onto a single network platform. FortiSwitch network segmentation can even be managed from the FortiGate interface, simplifying the process of meeting compliance requirements for data separation.
- Secure Access switches suitable for wire closet and desktop installations.
- Devices are identified and users authenticated prior to being granted access to the network.
- Centralized security management and reporting from FortiGate interface.
- Up to 48 ports in a compact 1 RU form factor.
- Power over Ethernet capable, including PoE+.
- Ideal for converged network environments; enabling voice, data and wireless traffic to be delivered across a single network.
|Key Features & Benefits|
|Single Management Framework||Reduces complexity and decreases management cost with network security functions managed through a single console.|
|Single Policy Provisioning||The same security policy can apply to a user or device regardless of how or where they connect to the network.Enables access to certain network ports based on the role of a user within the organization, such as in shared conference rooms or engineering facilities.|
|Centralized Authentication||All users are authenticated against the same user database, regardless of whether they connect to the wired or wireless network, including temporary guest users.|
|Role-Based Ports||Enables access to certain network ports based on the role of a user within the organization, such as in shared conference rooms or engineering facilities..|
Capabilities: Fortilink Mode vs. Standalone Mode:
|Standalone Switch||FortiLink Mode (FortiGate)|
|802.1x Port Authentication||Yes||Yes|
|MAC Address-Based Authentication||No||Yes|
|MAC Black/White Listing||No||Yes|
|Layer 3,4 Stateful Firewall to Control Access||No||Yes|
|TACACS+/RADIUS Admin Access||Yes||Yes|
|DHCP Relay/DHCP Snooping||No||Yes|
|Layer 3, Dynamic Routing||No||Yes|
|Auto Discovery of Multiple Switches||1||16 (model dependent)|
|Software Upgrade of Switches||1 switch||Central upgrade of each switch|
|VLAN Configuration||1 switch||Central VLAN provisioning of entire switch network|
|Policy Control of Users and Devices||No||Yes|
|Syslog Collection||Yes||Yes (FortiGate syslog only)|
|Switch POE Control||Yes||Yes**|
|LAG support from FortiSwitch to FortiGate||Yes||Yes**|
|Support for FortiGate in HA cluster||Yes||Yes**|
|IPS, AV, Application Control||No||Yes|
** Roadmap: enabled with FOS 5.4 release
FortiSwitch Deployment Example:
Software Features (standalone Mode):
|Auto-negotiation for port speed and duplex||Yes|
|IEEE 802.1D MAC Bridging/STP (will interoperate)||Yes|
|IEEE 802.1w Rapid Spanning Tree Protocol (RSTP, will interoperate)||Yes|
|IEEE 802.1s Multiple Spanning Tree Protocol (MSTP)||Yes|
|IEEE 802.1p Mapping to Priority Queue||Not supported|
|Edge Port / Port Fast||Yes|
|IEEE 802.1Q VLAN Tagging||Yes|
|Private VLAN||Not supported on FS-108D-POE, FS-224D-POE|
|IEEE 802.3ad Link Aggregation with LACP||Yes|
|Unicast/Multicast traffic balance over trunking port||Yes|
|(dst-ip, dst-mac, src-dst-ip, src-dst-mac, src-ip, src-mac)||(MAC only)|
|IEEE 802.1AX Link Aggregation||Yes|
|Spanning Tree Instances (MSTP/CST)||15/1|
|IEEE 802.3x Flow Control and back-pressure||Yes|
|IEEE 802.3 10Base-T||Yes|
|IEEE 802.3u 100Base-TX||Yes|
|IEEE 802.3z 1000Base-SX/LX||Yes|
|IEEE 802.3ab 1000Base-T||Yes|
|802.3ae 10 Gigabit Ethernet||in FS-5xx, 4xx family|
|802.3 CSMA/CD Access Method and Physical Layer Specifications||Yes|
|IEEE 802.3af-2003/2009 POE||Not supported on FS-124D|
|Storm Control||Yes (except FS-108D-POE, FS-224D-POE)|
|Static Routing (Software-based only)||Up to 64 static routes, usable for software routing (like management traffic)|
|Static Routing (Hardware-based)||64 static routes (16K on FS-5xx family)*|
|L3 Host/ARP Entries||4K on FS-1xx, 2xx, 4xx family*
24K on FS-5xx family
|IGMP Snooping (v1/v2/v3)||1023 groups on FS-1xx, 2xx, 4xx, 5xx. Not supported on FS-108D-POE, FS-224D-POE|
|Admin Authentication Via RFC 2865 RADIUS||Yes|
|802.1x authentication with port-based assignment||Yes|
|sFlow||Yes, All models except FS-108D-POE, FS-224D-POE|
|ACL Tables||1K entries on FS-5xx family
512 on FS-1xx, 2xx, 4xx, 5xx families
Not supported on FS-108D-POE, FS-224D-POE
|Telnet / SSH||Yes|
|HTTP / HTTPS||Yes|
|LLDP (802.1ab, Link Layer Discovery Protocol) (receive and transmit)||Yes|
|Standard CLI and web GUI interface||Yes|
|Software download/upload: TFTP/FTP/GUI||Yes|
|Managed from FortiGate||Yes|
|RFC and MIB Support**|
|RFC 2571 Architecture for Describing SNMP Framework||Yes|
|RFC 854 Telnet Server||Yes|
|RFC 2865 RADIUS||Yes|
|RFC 1643 Ethernet-like Interface MIB||Yes|
|RFC 1213 MIB-II||Yes|
|RFC 1354 IP Forwarding Table MIB||Yes|
|RFC 2572 SNMP Message Processing and Dispatching||Yes|
|RFC 1573 SNMP MIB II||Yes|
|RFC 1157 SNMPv1/v2c||Yes|
|RFC 2030 SNTP||Yes|
* Check Release notes/Admin guide for Static Routing release details.
** MIBs have been tested with Solarwinds NPM tool.
|FortiSwitch 124D||FortiSwitch 124D-POE||FortiSwitch 108D-POE||FortiSwitch 224D-POE||FortiSwitch 224D-FPOE||FortiSwitch 248D-FPOE|
|Total Network Interfaces||24x GE/RJ45 ports and 2x GE SFP ports||24x GE/RJ45 ports and 2x GE SFP ports||8x GE RJ45 ports and 2x GE RJ45/SFP combo ports||20x GE RJ45 ports and 4x GE RJ45/SFP combo ports||24x GE RJ45 ports and 4x GE SFP ports||48x GE RJ45 and 4x GE SFP ports|
|Dedicated Management 10/100/1000 Ports||0||1||0||0||1||1|
|RJ-45 Serial Console Port||1||1||0||1||1||1|
|Form Factor||1 RU Rack Mount Appliance||1 RU Rack Mount Appliance||1 RU Rack Mount||1 RU Rack Mount||1 RU Rack Mount||1 RU Rack Mount|
|Power over Ethernet (PoE) Ports||0||12 (802.3af/802.3at)||8 (802.3af)||12 (802.3af)||24 (802.3af/802.3at)||48 (802.3af/802.3at)|
|PoE Power Budget||0||100 W||75 W||180 W (802.11af)||370 W||370 W|
|Mean Time Between Failures||> 10 years||> 10 years||> 10 years||> 10 years||> 10 years||> 10 years|
|Switch Type||Web and CLI Managed||Web and CLI Managed||Web and CLI Managed||Web and CLI Managed||Web and CLI Managed||Web and CLI Managed|
|Switching Capacity||52 Gbps||52 Gbps||20 Gbps||48 Gbps||56 Gbps||104 Gbps|
|Packets Per Second||77 Mpps||77 Mpps||40 Mpps||71 Mpps||83 Mpps||155 Mpps|
|MAC Address Storage||8K||16K||16K||16K||16K||16K|
|Network Latency||< 1µs||< 1µs||< 2µs||< 2µs||< 1µs||< 1µs|
|Link Aggregation Group Size||12||12||8||8||12||12|
|Total Link Aggregation Groups||12||12||4||12||14||26|
|Packet Buffers||1.5 MB||1.5 MB||1 MB||1 MB||1.5 MB||1.5 MB|
|DRAM||512 MB||512 MB||256 MB||512 MB||512 MB||512 MB|
|FLASH||64 MB||64 MB||32 MB||128 MB||128 MB||128 MB|
|Height x Width x Length (inches)||1.7 x 17.3 x 5.5||1.7 x 13 x 9||1.7 x 13 x 7.9||1.7 x 17.3 x 10.1||1.7 x 12.2 x 17.3||1.7 x 17.3 x 16.1|
|Height x Width x Length (mm)||44 x 440 x 140||44 x 330 x 230||44 x 330 x 200||44 x 440 x 257||44 x 310 x 440||44 x 440 x 410|
|Weight||3.74 lbs (1.7 kg)||5.4 lbs (2.4 kg)||4.19 lbs (1.9 kg)||8.49 lbs (3.85 kg)||10.64 lbs (4.83 kg)||15.4 lbs (7.01 kg)|
|Power Required||100–240V AC, 50–60 Hz||100–240V AC, 50–60 Hz||100–240V AC, 50–60 Hz||100–240V AC, 50–60 Hz||100–240V AC, 50–60 Hz||100–240V AC, 50–60 Hz|
|Power Supply||AC built in||AC built in + RPS option||AC built in||AC built in||AC built in + RPS option||AC built in + RPS option|
|Power Consumption (Average / Maximum)||14 W / 19 W||19 W / 131 W||52.8 W / 95.1 W||190 W / 225 W||380 W / 397 W||410 W /411 W|
|Heat Dissipation||64.81 BTU/h||77 BTU/h||324.32 BTU/h||255 BTU/h||85 BTU/h||188 BTU/h|
|Operating Temperature||32–122°F (0–50°C)||32–122°F (0–50°C)||32–113°F (0–45°C)||32–104°F (0–40°C)||32–122°F (0–50°C)||32–122°F (0–50°C)|
|Storage Temperature||-4–158°F (-20–70°C)||-4–158°F (-20–70°C)||-13–158°F (-25–70°C)||-4–158°F (-20–70°C)||-4–158°F (-20–70°C)||-4–158°F (-20–70°C)|
|Humidity||10–90% non-condensing||10–90% non-condensing||5–90% non-condensing||10–90% non-condensing||10–90% non-condensing||10–90% non-condensing|
|Certification and Compliance|
|FCC, CE, RCM, VCCI, BSMI, UL, CB, RoHS2|
|Fortinet Warranty||Limited lifetime* warranty on all models|
Download the Fortinet FortiSwitch D-Series Datasheet (PDF).
- Pricing and product availability subject to change without notice.