Fortigate 2600f Series
Fortigate 2600f Series
services
31 Gbps 27 Gbps 25 Gbps Multiple GE RJ45, 25 GE SFP28 / 10 GE SFP+/
Hyperscale security to GE SFP and 100 GE QSFP28 / 40 GE QSFP+
secure any edge at any slots
scale
FortiGate 2600F Series Data Sheet
Use Cases
Next Generation Firewall (NGFW)
• FortiGuard Labs’ suite of AI-Powered Security Services, natively integrated with your NGFW,
secures web, content, and devices and protects networks from ransomware, malware, zero
days, and sophisticated AI-powered cyberattacks
• Real-time SSL inspection (including TLS 1.3) provides full visibility into users, devices, and
applications across the attack surface
• Fortinet’s patented SPU technology provides industry-leading high-performance protection
Segmentation
• Dynamic segmentation adapts to any network topology to deliver true end-to-end security
from the branch to the data center and across multi-cloud environments
• Ultra-scalable, low latency, VXLAN segmentation bridges physical and virtual domains with
Layer 4 firewall rules
• Prevents lateral movement across the network with advanced, coordinated protection from
FortiGuard Security Services, detects and prevents known, zero-day, and unknown attacks
Secure SD-WAN
• FortiGate WAN Edge powered by one OS and unified security and management framework
and systems transforms and secures WANs
• Delivers superior quality of experience and effective security posture for hybrid working
models, SD-Branch, and cloud-first WAN use cases
• Achieve operational efficiencies at any scale through automation, deep analytics, and self-
healing
Hyperscale
• Purpose-built SPUs power FortiOS to consolidate networking and security and deliver ultra-
scalable secure networks.
• Unparalleled ultra-high performance offers the industry’s highest number of connections
and connections per second performance combined with security-enabled performance to
safeguard business-critical applications.
• Hardware assisted anti-DDoS prevents volumetric attacks and delivers a strong security
posture.
2
FortiGate 2600F Series Data Sheet
Web/DNS security
Web/DNS security services protect against DNS-based attacks, malicious URLs (including
those in emails), and botnet communications. DNS filtering blocks the full spectrum of DNS-
based attacks while URL filtering uses a database of over 300 million URLs to identify and
block malicious links. Meanwhile, IP reputation and anti-botnet services guard against botnet
activity and DDoS attacks. FortiGuard Labs blocks over 500 million malicious/phishing/
spam URLs weekly, and blocks 32,000 botnet command-and-control attempts every minute,
demonstrating the robust protection offered through Fortinet.
OT security
With over 1000 virtual patches, 1100+ OT applications, and 3300+ protocol rules, integrated
OT security capabilities detect threats targeting OT infrastructure, perform vulnerability
correlation, apply virtual patching, and utilize industry-specific protocol decoders for robust
defense of OT environments and devices.
3
FortiGate 2600F Series Data Sheet
FortiOS Everywhere
FortiOS, Fortinet’s Real-Time Network Security Operating System
FortiOS is the operating system that powers Fortinet Security Fabric platform, enabling
enforcement of security policies and holistic visibility across the entire attack surface.
Available in FortiOS provides a unified framework for managing and securing networks, cloud-based,
hybrid, or a convergence of IT, OT, and IoT. FortiOS enables seamless and efficient
interoperation across Fortinet products with consistent and consolidated AI-powered
protection across today’s hybrid environments.
Appliance Unlike traditional point solutions, Fortinet adopts a holistic approach to cybersecurity,
aiming to reduce complexities, eliminate security silos, and improve operational efficiencies.
By consolidating security functions into a single platform, FortiOS simplifies management,
reduces costs, and enhances overall security posture. Together, FortiGate and FortiOS create
intelligent, adaptive protection to help organizations reduce complexity, eliminate security
silos, and optimize user experience.
Virtual
By integrating generative AI (GenAI), FortiOS further enhances the ability to analyze network
traffic and threat intelligence, detects deviations or anomalies more effectively, and provides
more precise remediation recommendations, ensuring minimum performance impact without
compromising security.
Cloud
Intuitive easy to use view into the network and Comprehensive view of network performance,
Container endpoint vulnerabilities security, and system status
4
FortiGate 2600F Series Data Sheet
Fortinet ASICs are designed to be energy-efficient, leading to lower power consumption and
improved TCO. They deliver industry-leading throughput, handle more traffic and perform
security inspections faster, reduce latency for quicker packet processing and minimize network
delays.
Fortinet SPUs are designed with integrated security functions like zero trust, SSL, IPS, and
VXLAN to name but a few, dramatically improving the performance of these functions that
competitors traditionally implement in software.
• Pattern matching acceleration and fast inspection of real-time traffic for application
identification
• IPS pre-scan/pre-match, signature correlation offload, and accelerated antivirus processing
5
FortiGate 2600F Series Data Sheet
FortiManager
Centralized management at scale for distributed enterprises
FortiManager, powered by FortiAI, is a centralized management solution for the Fortinet
Security Fabric. It streamlines mass provisioning and policy management for FortiGate,
FortiGate VM, cloud security, SD-WAN, SD-Branch, FortiSASE, and ZTNA in hybrid
environments. Additionally, FortiManager provides real-time monitoring of the entire managed
infrastructure and automates network operation workflows. Leveraging GenAI in FortiAI, it
further enhances Day 0–1 configurations and provisioning, and Day N troubleshooting and
maintenance, unlocking the full potential of the Fortinet Security Fabric and significantly
boosting operational efficiency.
FortiConverter Service
Migration to FortiGate NGFW made easy
The FortiConverter Service provides hassle-free migration to help organizations transition
quickly and easily from a wide range of legacy firewalls to FortiGate NGFWs. The service
eliminates errors and redundancy by employing best practices with advanced methodologies
and automated processes. Organizations can accelerate their network protection with the
latest FortiOS technology.
FortiCare Services
Expertise at your service
Fortinet prioritizes customer success through FortiCare Services, optimizing the Fortinet
Security Fabric solution. Our comprehensive life-cycle services include Design, Deploy,
Operate, Optimize, and Evolve. The FortiCare Elite, one of the service offerings, provides
heightened SLAs and swift issue resolution with a dedicated support team. This advanced
support option includes an extended end-of-engineering support of 18 months, providing
flexibility and access to the intuitive FortiCare Elite portal for a unified view of device and
security health, streamlining operational efficiency and maximizing Fortinet deployment
performance.
6
FortiGate 2600F Series Data Sheet
Hardware
FortiGate 2600F Series
Interfaces
FortiGate 2600F
STATUS
ALARM
GE SFP HA Slots
HA
3. 16 x 10 GE / GE RJ45 Ports
POWER
USB MGMT2 HA2 2 4 6 8 10 12 14 16 18 20 22 24 26 28 30 32 34 36
4. 16 x 25 GE SFP28 /
1 2 3 4 5 10 GE SFP+ / GE SFP Slots
5. 4 x 100 GE QSFP28 /
CAUTION/ATTENTION
SHOCK HAZARD. DISCONNECT ALL POWER SOURCES.
40 GE QSFP+ Slots
RISQUE D’ÉLECTROCUTION. DÉBRANCHEZ TOUTES LES
SOURCES D’ALIMENTATION.
PSU2 PSU1
Hardware Features
7
FortiGate 2600F Series Data Sheet
Specifications
FG-2600F/-DC FG-2601F/-DC FG-2600F/-DC FG-2601F/-DC
Interfaces and Modules Dimensions and Power
Hardware Accelerated 10 GE / GE RJ45 Ports 16 Height x Width x Length (inches) 3.5 x 17.25 x 21.1
Hardware Accelerated 25 GE SFP28 / 10 GE 16 Height x Width x Length (mm) 88.4 x 438 x 536
SFP+ / GE SFP Slots
Weight 30.6 lbs (13.9 kg) 30.9 lbs (14.0 kg)
Hardware Accelerated 100 GE QSFP28 / 4
40 GE QSFP+ Slots Form Factor Rack Mount, 2RU
(supports EIA/non-EIA standards)
Hardware Accelerated 10 GE SFP+ / GE SFP 2
HA Slots AC Power Supply 100–240VAC, 47/63 Hz
GE RJ45 Management Ports 2 Power Consumption (Average / Maximum) 416 W / 510 W 420.3 W / 513.7 W
Signed Firmware Hardware Switch — Power Supply Efficiency Rating 80Plus Compliant
System Performance — Enterprise Traffic Mix Operating Temperature 32°F to 104°F (0°C to 40°C)
System Performance and Capacity Forced Airflow Side and Front to Back
IPv4 Firewall Throughput 198 / 196 / 140 Gbps Operating Altitude Up to 10 000 ft (3048 m)
(1518 / 512 / 64 byte, UDP)
Compliance FCC Part 15 Class A, RCM, VCCI,
IPv6 Firewall Throughput 198 / 196 / 140 Gbps CE, UL/cUL, CB
(1518 / 512 / 86 byte, UDP)
Certifications USGv6/IPv6
Firewall Latency (64 byte, UDP) 3.41 μs
Firewall Throughput (Packet per Second) 210 Mpps * Requires Hyperscale Firewall License
Concurrent Sessions (TCP) 24 Million / 40 Million*
New Sessions/Second (TCP) 1 Million / 2 Million*
Firewall Policies 100 000
IPsec VPN Throughput (512 byte)1 55 Gbps
Gateway-to-Gateway IPsec VPN Tunnels 20 000
Client-to-Gateway IPsec VPN Tunnels 100 000
SSL-VPN Throughput 16 Gbps
Concurrent SSL-VPN Users 30 000
(Recommended Maximum, Tunnel Mode)
SSL Inspection Throughput (IPS, avg HTTPS)3 20 Gbps
SSL Inspection CPS (IPS, avg. HTTPS)3 16 000
SSL Inspection Concurrent Session 2.7 Million
(IPS, avg HTTPS)3
Application Control Throughput (HTTP 64K)2 64 Gbps
CAPWAP Throughput (HTTP 64K) 62.5 Gbps
Virtual Domains (Default / Maximum) 10 / 500
Maximum Number of FortiSwitches 196
Supported
Maximum Number of FortiAPs (Total /Tunnel) 4096 / 2048
Maximum Number of FortiTokens 20 000
Maximum Number of Registered FortiClients 20 000
High Availability Configurations Active-Active, Active-Passive, Clustering
Note: All performance values are “up to” and vary depending on system configuration.
1
IPsec VPN performance test uses AES256-SHA256. 4
NGFW performance is measured with Firewall, IPS and Application Control enabled.
2
IPS (Enterprise Mix), Application Control, NGFW and Threat Protection are measured 5
Threat Protection performance is measured with Firewall, IPS, Application Control and
with Logging enabled. Malware Protection enabled.
3
SSL Inspection performance values use an average of HTTPS sessions of different
cipher suites.
8
FortiGate 2600F Series Data Sheet
Subscriptions
Bundles
SD-WAN and SASE SD-WAN Underlay Bandwidth and Quality Monitoring Models up to FG/
Services FWF-60F series
SD-WAN Underlay and Application Monitoring Service FG-70F series
and above
SD-WAN Overlay-as-a-Service •
SASE expansion for SD-WAN (SD-WAN SPA Connector license plus Selected
FortiSASE starter kit for n* users) 2 models only2
SASE connector for FortiSASE Secure Edge Management Desktop
(with 10Mbps Bandwidth) models only
NOC and SOC FortiConverter Service for one time configuration conversion • •
Services
Managed FortiGate Service—available 24x7, with Fortinet NOC experts •
performing device setup, network, and policy change management
FortiGate Cloud—Management, Analysis, and One Year Log Retention •
FortiManager Cloud •
FortiAnalyzer Cloud •
FortiGuard SOCaaS—24x7 cloud-based managed log monitoring, •
incident triage, and SOC escalation service
Hardware and FortiCare Essentials Desktop
Software Support models only
FortiCare Premium • • • •
FortiCare Elite •
Base Services Device/OS Detection, GeoIPs, Trusted CA Certificates, Internet
Services and Botnet IPs, DDNS (v4/v6), Local Protection, PSIRT Check, ------------included with FortiCare Subscription------------
Anti-Phishing
FortiGuard Bundles
FortiGuard AI-Powered Security Bundles provide a comprehensive and meticulously curated selection of security
services to combat known, unknown, zero-day, and emerging AI-based threats. These services are designed
to prevent malicious content from breaching your defenses, protect against web-based threats, secure devices
throughout IT/OT/IoT environments, and ensure the safety of applications, users, and data. All bundles include
FortiCare Premium Services featuring 24x7x365 availability, one-hour response for critical issues, and next-
business-day response for noncritical matters.
9
FortiGate 2600F Series Data Sheet
Ordering Information
Product SKU Description
FortiGate 2600F FG-2600F 4x 100GE/40GE QSFP28 slots, 16x 25GE/10GE SFP28 slots, 16x 10GE RJ45 ports, 2x 10G SFP+ HA
slots, 2x 1G MGMT ports, SPU NP7 and CP9 hardware accelerated, and dual AC power supplies.
FortiGate 2600F-DC FG-2600F-DC 4x 100GE/40GE QSFP28 slots, 16x 25GE/10GE SFP28 slots, 8x 10GE SFP+ slots, 16x 10GE RJ45
ports, 2x 10G SFP+ HA slots, 2x 1G MGMT ports, SPU NP7 and CP9 hardware accelerated, and dual
DC power supplies.
FortiGate 2601F FG-2601F 4x 100GE/40GE QSFP28 slots, 16x 25GE/10GE SFP28 slots, 16x 10GE RJ45 ports, 2x 10G SFP+ HA
slots, 2x 1G MGMT ports, SPU NP7 and CP9 hardware accelerated, and dual AC power supplies with
2x 960GB onboard storage.
FortiGate 2601F-DC FG-2601F-DC 4x 100GE/40GE QSFP28 slots, 16x 25GE/10GE SFP28 slots, 8x 10GE SFP+ slots, 16x 10GE RJ45
ports, 2x 10G SFP+ HA slots, 2x 1G MGMT ports, SPU NP7 and CP9 hardware accelerated, and dual
DC power supplies with 2x 960GB onboard storage.
Hyperscale Firewall License FG1KF2KF LIC-FGT-HYPSC-1K2K Hyperscale Firewall License for FortiGate FG1800F/FG1801F/ FG2600F/ FG2601F Series for hardware
acceleration.
www.fortinet.com
Copyright © 2025 Fortinet, Inc. All rights reserved. Fortinet®, FortiGate®, FortiCare® and FortiGuard®, and certain other marks are registered trademarks of Fortinet, Inc., and other Fortinet names herein may also be registered and/or common law trademarks of Fortinet. All other product
or company names may be trademarks of their respective owners. Performance and other metrics contained herein were attained in internal lab tests under ideal conditions, and actual performance and other results may vary. Network variables, different network environments and other
conditions may affect performance results. Nothing herein represents any binding commitment by Fortinet, and Fortinet disclaims all warranties, whether express or implied, except to the extent Fortinet enters a binding written contract, signed by Fortinet’s SVP Legal and above, with a
purchaser that expressly warrants that the identified product will perform according to certain expressly-identified performance metrics and, in such event, only the specific performance metrics expressly identified in such binding written contract shall be binding on Fortinet. For absolute
clarity, any such warranty will be limited to performance in the same ideal conditions as in Fortinet’s internal lab tests. Fortinet disclaims in full any covenants, representations, and guarantees pursuant hereto, whether express or implied. Fortinet reserves the right to change, modify, transfer,
or otherwise revise this publication without notice, and the most current version of the publication shall be applicable.
April 3, 2025
FG-2600F-DAT-R27-20250403