FG-600D - Fortinet NGFW Middle-range Series FortiGate 600D

Mfr. Part #: FG-600D
Brand: Fortinet
Condition: Refurbished
  • Warranty: 90-day return/replacement

    Click here to read our Return Policy for returns/replacements.

FG-600D

FG-600D - Fortinet NGFW Middle-range Series FortiGate 600D
Free ground shipping within the
United States
Sam Gov

Government, Federal & Education Procurement

We support quotes, POs, stock docs, and compliance invoicing.

Email: support@buyrouterswitch.com SAM.gov Registered Vendor CAGE Code : 23P86
overview
specifications
faqs
reviews

FG-600D Overview

Fortinet FG-600D 2 x 10GE SFP+ slots, 8 x GE RJ45 ports, 8 x GE SFP slots, SPU NP6 and CP8 hardware accelerated, 120GB onboard SSD storage FG-600D

Overview
FG-600D Overview

Fortinet FortiGate 600D, 36 Gbit/s, 20 Gbit/s, 4000 Mbit/s, 650 BTU/h, 45 dB, 128-bit AES, SHA-256

FG-600D is the Fortinet NGFW Middle-range Series FortiGate 600D firewall. The FortiGate 600D delivers next generation firewall capabilities for mid-sized to large enterprises, with the flexibility to be deployed at the campus or data center edge and internal segments.

Quick Spec

Sku

FG-600D

Firewall

36 Gbps

IPS

4 Gbps

NGFW

3.8 Gbps

Threat Protection

3 Gbps

Interfaces

2 x 10GE SFP+ slots

8 x GE SFP slots

8 x GE RJ45 ports

2 x GE RJ45 management ports

Product Details

Figure 1 shows the front view of FG-600D.

Fortinet FG-600D Front View

Note:

Console Port

2 USB Ports

2x GE RJ45 Management Ports

8x GE SFP Slots

8x GE RJ45 Ports

2x 10 GE SFP+ Slots

Figure 2 shows the rear view of FG-600D.

Fortinet FG-600D Rear View

Note: ① FRPS Connector

The Optional Accessories & Spares

Optional Accessories & Spares

SKU

Description

1 GE SFP LX Transceiver Module

FG-TRAN-LX

1 GE SFP LX transceiver module for all systems with SFP and SFP/SFP+ slots

1 GE SFP RJ45 Transceiver Module

FG-TRAN-GC

1 GE SFP RJ45 transceiver module for all systems with SFP and SFP/SFP+slots

1 GE SFP SX Transceiver Module

FG-TRAN-SX

1 GE SFP SX transceiver module for all systems with SFP and SFP/SFP+ slots

10 GE SFP+ Transceiver Module, Short Range

FG-TRAN-SFP+SR

10 GE SFP+ transceiver module, short range for all systems with SFP+ and SFP/SFP+ slots

10 GE SFP+ Transceiver Module, Long Range

FG-TRAN-SFP+LR

10 GE SFP+ transceiver module, long range for all systems with SFP+ and SFP/SFP+ slots

10 GE SFP+ Active Direct Attach Cable, 10m / 32.8 ft

SP-CABLE-ADASFP+

10 GE SFP+ active direct attach cable, 10m / 32.8 ft for all systems with SFP+ and SFP/SFP+ slots

External Redundant AC Power Supply

FRPS-100

External redundant AC power supply for up to 4 units: FG-300C, FG-310B, FS-348B and FS-448B. Up to 2 units: FG-200B, FG-200D, FG-240D and FG-300D, FG-400D, FG-500D, FG-600D, FHV-500D, FDD-200B, FDD-400B, FDD-600B and FDD-800B

Compare to Similar Item

Sku

FG-900D

FG-600D

Firewall

52 Gbps

36 Gbps

IPS

4.2 Gbps

4 Gbps

NGFW

4 Gbps

3.8 Gbps

Threat Protection

3 Gbps

3 Gbps

Interfaces

2 x 10GE SFP+ slots

16 x GE SFP slots

16 x GE RJ45 ports

2 x GE RJ45 management ports

2 x 10GE SFP+ slots

8 x GE SFP slots

8 x GE RJ45 ports

2 x GE RJ45 management ports

2x 10 GE SFP+ slots, 10x GE RJ45 ports, 8x GE SFP slots, SPU NP6 and CP8 hardware accelerated, 120 GB onboard SSD storage w/

  • 1U Firewall throughput: 36000 Mbit/s
  • 650 BTU/h
  • Wired
  • Total storage capacity: 120 GB

Summary Description

Fortinet FortiGate 600D, 36 Gbit/s, 20 Gbit/s, 4000 Mbit/s, 650 BTU/h, 45 dB, 128-bit AES, SHA-256

Need help with FG-600D?

Get pricing, availability, lead time, and compatible options from our team. Chat with us live or email support@buyrouterswitch.com

Specification

FG-600D Specification

FG-600D Specification

Type

FORTIGATE 600D

Interfaces and Modules

Hardware Accelerated GE SFP Slots

2

Hardware Accelerated GE RJ45 Ports

8

GE RJ45 Management Ports

2

USB Ports (Client / Server)

1 / 2

Console Port

1

Onboard Storage

1x 120 GB SSD

Included Transceivers

2

System Performance and Capacity

IPv4 Firewall Throughput (1518 / 512 / 64 byte, UDP)

36 / 36 / 24 Gbps

IPv6 Firewall Throughput (1518 / 512 / 86 byte, UDP)

36 / 36 / 24 Gbps

Firewall Latency (64 byte, UDP)

3 μs

Firewall Throughput (Packet per Second)

36 Mpps

Concurrent Sessions (TCP)

5.5 Million

New Sessions/Second (TCP)

270,000

Firewall Policies

10,000

IPsec VPN Throughput (512 byte)

20 Gbps

Gateway-to-Gateway IPsec VPN Tunnels

2,000

Client-to-Gateway IPsec VPN Tunnels

50,000

SSL-VPN Throughput

2.2 Gbps

Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode)

5,000

SSL Inspection Throughput (IPS, avg. HTTPS)  

3.5 Gbps

SSL Inspection CPS (IPS, avg. HTTPS)

2,400

Application Control Throughput (HTTP 64K)

9 Gbps

CAPWAP Throughput (1444 byte, UDP)

10 Gbps

Virtual Domains (Default / Maximum)

10 / 10

Maximum Number of FortiSwitches Supported

64

Maximum Number of FortiAPs (Total / Tunnel)

1024 / 512

Maximum Number of FortiTokens

1,000

Maximum Number of Registered FortiClients

2,000

High Availability Configurations

Active-Active, Active-Passive, Clustering

System Performance — Optimal Traffic Mix

IPS Throughput

7 Gbps

System Performance — Enterprise Traffic Mix

IPS Throughput

4 Gbps

NGFW Throughput

3.8 Gbps

Threat Protection Throughput

3 Gbps

Dimensions and Power

Height x Width x Length

1.75 x 17 x 12.68 inches

44.45 x 432 x 322 mm

Form Factor

1 RU

AC Power Supply

100–240V AC, 60–50 Hz

Power Consumption (Average / Maximum)

126 W / 191 W

Current (Maximum)

110V/4A, 220V/2A

Heat Dissipation

650 BTU/h

Redundant Power Supplies

Supports FRPS-100

Operating Environment and Certifications

Operating Temperature

32–104°F (0–40°C)

Storage Temperature

-31–158°F (-35–70°C)

Humidity

10–90% non-condensing

Noise Level

45 dBA

Operating Altitude

Up to 9,843 ft (3,000 m)

Compliance

FCC Part 15 Class A, C-Tick, VCCI, CE, UL/cUL, CB

Certifications

ICSA Labs: Firewall, IPsec, IPS, Antivirus, SSL-VPN; USGv6/IPv6

Frequently Asked Questions

How does the FG-600D leverage hardware acceleration for network performance? +
The FortiGate 600D integrates specialized SPU NP6 and CP8 processors to offload resource-intensive traffic. The Network Processor (NP6) handles high-speed packet processing, while the Content Processor (CP8) accelerates security functions like SSL inspection and IPsec VPN encryption. This architecture ensures line-rate performance and low latency, preventing the firewall from becoming a bottleneck in high-throughput enterprise network environments.
What kind of port density can I expect from the FortiGate 600D? +
The FG-600D provides robust physical interface options to support varied network topologies. It features two 10GE SFP+ slots for high-speed uplink capacity, eight GE SFP slots for flexible fiber connectivity, and eight GE RJ45 ports for standard copper deployments. This hybrid configuration allows for seamless integration into existing core or distribution layer infrastructures requiring high port density.
Is the 120GB SSD in the FG-600D sufficient for logging and reporting? +
The onboard 120GB SSD provides ample local storage for storing FortiView data, detailed traffic logs, and comprehensive threat reports directly on the appliance. This local logging capability is ideal for immediate forensic analysis and audit compliance without needing to offload every packet to an external server immediately, ensuring visibility even during temporary management network outages.
What is the primary use case for the FortiGate 600D in an enterprise network? +
The FG-600D is designed for mid-to-large enterprise edge deployments where high-performance threat protection is mandatory. With its hardware-accelerated architecture, it serves effectively as a Next-Generation Firewall for branch offices or data centers requiring deep packet inspection, application control, and encrypted traffic visibility without compromising overall network throughput or user experience.
Can the FG-600D handle encrypted traffic inspection at scale? +
Absolutely. By utilizing the dedicated CP8 content processor, the FG-600D offloads the heavy computational load associated with SSL/TLS decryption. This enables the firewall to perform deep inspection of encrypted traffic flows, effectively identifying malware hidden in HTTPS sessions while maintaining the throughput levels necessary to support demanding business applications.
How should I plan for mounting and power for the FG-600D? +
The FG-600D is designed for standard 19-inch rack-mount deployments. Given its high-performance hardware, ensure that your rack provides sufficient airflow for the chassis ventilation system. When planning power, consider the power consumption profile of the NP6 and CP8 processors, and always use a redundant power configuration if your specific environment requires high availability for mission-critical security services.
How do the SFP and SFP+ ports on the FG-600D impact my deployment flexibility? +
The inclusion of both 10GE SFP+ and GE SFP ports allows the FG-600D to adapt to diverse fiber-optic infrastructures. You can connect directly to high-speed core switches via 10GE uplinks while simultaneously utilizing the eight GE SFP ports for long-reach connectivity to distributed departmental switches or secondary network segments, maximizing the utility of your existing fiber cabling investment.
Are the security features of the FG-600D managed via a centralized platform? +
The FG-600D is fully compatible with Fortinet’s centralized management solutions, allowing you to unify security policies across your entire fleet. Whether you are managing a single appliance via the intuitive web-based GUI or coordinating hundreds of devices through FortiManager, you gain consistent visibility and control over your security posture, simplifying administrative overhead for your network operations team.
How can I obtain a bulk quote for multiple FG-600D units? +
For organizations planning large-scale deployments, BuyRouterSwitch.com offers streamlined bulk pricing to support your enterprise budget requirements. Simply reach out to our dedicated sales team with your specific quantity requirements, and we will prepare a customized quote tailored to your project scope, ensuring you receive competitive pricing on your Fortinet hardware investment.
Why should IT buyers choose BuyRouterSwitch.com for their Fortinet procurement? +
BuyRouterSwitch.com serves as a trusted partner for enterprise-grade networking and security equipment. We focus on providing a secure, reliable procurement experience for IT professionals who require authentic, high-quality hardware. When you source your infrastructure from us, you benefit from our commitment to logistical excellence and our specialized focus on the enterprise networking market.

Need Help Choosing the Right Part? Talk to an Expert

  • +1 (800) 870-9487
    Mon-Fri 8am-5pm EST
  • support@buyrouterswitch.com
    Technical support
People