AITI Tech Limited is one of the leading manufacturers and suppliers of fortigate 90g next-generation firewall. With over 20 years' experience, we warmly welcome you to buy bulk cheap fortigate 90g next-generation firewall in stock here from our factory. All our products are with high quality and low price. Contact us for pricelist.
Product Positioning
The FortiGate 90G is an ultra-high-performance security gateway purpose-built by Fortinet for core data centers of large enterprises, regional headquarters, high-density campus networks and internet boundaries. Powered by Fortinet's 8th-generation proprietary SPU security processors and unified FortiOS operating system, it deeply integrates NGFW, native SD-WAN, VPN, application delivery, unified wired and wireless management capabilities into a 2U rack-mount appliance. Through hardware acceleration, it achieves high-concurrency and low-latency traffic processing capabilities, making it the flagship all-in-one solution for building "Security-Driven Networking" for backbone networks with high bandwidth and high-security requirements.




Hardware Port Configuration
24 x 10G/1G SFP+ fiber ports (8 of which support 10G SFP+ or 1G SFP optical modules), covering high-bandwidth interconnection requirements of core links
4 x 40G QSFP+ fiber ports, supporting core aggregation or high-density server access ports, meeting high-speed data exchange within data centers
2 x RJ45 Console management interfaces (one as a management serial port, one supporting out-of-band management), realizing both local and remote device initialization and configuration debugging
1 x RJ45 FortiLink dedicated interface for directly connecting FortiSwitch switches, achieving unified management and policy linkage of all wired devices across the network
2 x RJ45 Gigabit Ethernet ports for device in-band management, log synchronization or backup link access
2 x USB 3.0 interfaces, supporting external storage devices to expand log capacity, or connecting 4G/5G modules to realize wireless backup links
Core Implemented Technologies
- Adopts Fortinet's 8th-generation proprietary SPU (Security Processing Unit) architecture, with hardware acceleration from both CP9 (Content Processor) and NP8 (Network Processor), combined with a dedicated security co-processor (SCP), drastically reducing general-purpose CPU load and achieving line-rate deep inspection of TLS 1.3 encrypted traffic. It maintains microsecond-level latency forwarding even when all full security features are enabled simultaneously.
- Official published standard performance metrics: Firewall layer 4 throughput of 100 Gbps, IPS throughput of 45 Gbps, NGFW throughput of 30 Gbps, threat protection throughput of 25 Gbps, IPsec VPN throughput of 65 Gbps, supporting 12,000,000 concurrent TCP sessions and 1,000,000 new TCP sessions per second.
- Native seamless SD-WAN capability that natively integrates all NGFW security features into the wide area network. Without additional paid licenses, it supports intelligent path selection for up to 32 links, real-time link health detection and dynamic service quality optimization, automatically scheduling core business traffic to the optimal link and achieving millisecond-level path switching.
- Full-series support for advanced dynamic routing including BGP and OSPF, IPsec VPN and SSL VPN functions, with a maximum of 2000 gateway-to-gateway IPsec tunnels and 1000 SSL VPN user access channels, meeting the high-speed encrypted interconnection requirements between multiple data centers and regional branches.
- Built-in FortiSwitch management capability that can centrally control up to 128 FortiSwitch switches; built-in wireless controller capability that can manage up to 512 FortiAP access points (256 of which support tunnel mode), realizing unified operation and maintenance and policy linkage for all wired and wireless devices across the network.
- Compatible with the FortiConverter configuration migration tool, which can import core configurations from existing third-party firewalls with one click, greatly shortening the new device deployment cycle. Paired with Fortinet's globally synchronized firmware update mechanism, it guarantees long-term stable operation of the device.
- Fully integrated with the Fortinet Security Fabric unified security architecture, seamlessly connecting to FortiManager, FortiAnalyzer and FortiPortal centralized management platforms to realize unified policy distribution, centralized log storage and global security situational visualization for all devices across the network, supporting automated security orchestration and response.
- Supports high-availability active-standby deployment (A-P, A-A modes), realizing state synchronization and traffic load balancing between two devices via dedicated HA ports. It can complete failover within milliseconds when a single device fails, avoiding business interruption caused by single points of failure and meeting the high-reliability operation requirements of core sites.
- Supports hardware expandable slots, which can additionally extend 40G/100G interface cards and SSD storage cards, meeting future business expansion needs for bandwidth and log storage.
Core Security Features
1.Built-in ultra-high-performance Intrusion Prevention System (IPS) that can identify and block more than 10,000 known vulnerability attacks, worms, DDoS attacks and network intrusion behaviors in real time, covering full-dimensional threats at both the network and application layers, with an IPS throughput of up to 45 Gbps.
2.Integrated with FortiGuard global AI-powered threat intelligence services, leveraging machine learning engines to automatically synchronize real-time updated virus databases and threat signature libraries, providing real-time defense against ransomware, zero-day vulnerabilities and malware variants, with a threat protection throughput of up to 25 Gbps.
3.Supports bidirectional deep packet inspection, performing full-dimensional content scanning on all versions of encrypted traffic including TLS 1.3, identifying and blocking malicious activities hidden in HTTPS encrypted traffic, with an SSL deep inspection throughput of up to 30 Gbps.
4.Built-in full-protocol high-performance antivirus engine that covers virus filtering for mainstream protocols including HTTP, FTP, SMTP, POP3, IMAP and SMB, effectively preventing viruses from spreading across the intranet through paths such as web downloads, email transmission and internal file sharing.
5.Integrated with web filtering, application control and DNS filtering functions, with an application control throughput of up to 60 Gbps. It can precisely control employees' web access behaviors and usage permissions for more than 10,000 applications, avoiding security risks brought by phishing websites and non-work applications from the source.
6.Supports native Zero Trust Network Access (ZTNA) capability, dynamically assigning minimum permissions based on user identity, device status and access scenarios, realizing identity-aware secure access without exposing core intranet resources to the public internet.
7.Supports virtual domain division, with a maximum of 100 independent virtual security domains, realizing logical network isolation between different business departments and different tenants, meeting the differentiated security requirements of multi-service partition protection and multi-tenant operation.
8.Comes with a built-in generative AI security assistant that can automatically complete security log analysis, threat event judgment and response policy generation, greatly lowering the security operation threshold for large sites and improving threat response efficiency.
9.Supports FortiToken two-factor authentication, with a maximum of 5000 bound tokens, providing strong identity verification for VPN access, administrator login and core system access to prevent unauthorized access caused by account leakage.
10.Built-in advanced threat sandbox detection capability, which can perform dynamic behavior analysis on unknown suspicious files, identifying zero-day malicious programs that cannot be covered by traditional signature libraries, and forming a closed-loop security protection system of "defense - detection - response".
11.Supports hardware-level security isolation, realizing key management, certificate storage and encryption/decryption operations through dedicated security chips, preventing sensitive data from being maliciously stolen or tampered with.
Hot Tags: fortigate 90g next-generation firewall, fortigate 90g next-generation firewall suppliers
