August 5, 2022

FortiGate 7121F Series

FortiGate 7121F Series

J&M Eastern Group is a FortiGate supplier in Malaysia that specialises in FortiGate Solutions. As a Fortinet partner and reseller in Malaysia, we carry a wide range of Fortinet products to meet your requirements and quickly respond to the demands of your business.

To be effective against today's evolving threat landscape, your security solution needs to reliably control high volumes of network and cloud traffic through awareness of applications, users, and content. To be efficient in large enterprise and service provider dynamic environments, it needs to be consolidated, simple to manage, easily scalable, and future-proof.

FortiGate chassis-based next-generation firewalls deliver scalable threat protection and high reliability for the most demanding networks. Extensive network interfaces, consolidated security services and simplified management deliver uncompromising protection from cyber threats and malware, at the edge, in the data center and core network.

FortiGate chassis-based network security delivers:

  • Industry’s fastest and most advanced NGFW for protecting against advanced threats
  • Top-rated protection tested by NSS Labs, Virus Bulletin, and AV Comparatives
  • Deep visibility and granular control of applications, devices, and users
  • Simplified, scalable security in an easy-to-manage, modular chassis system with high speed connectivity
  • Single-pane-of-glass management, threat analytics, and actionable reports to enforce policies, understand targeted threats, and meet compliance

FortiGate® 7121F Series

The FortiGate 7121F series delivers high performance next generation firewall (NGFW) capabilities for large enterprises and service providers. With multiple high-speed interfaces, high port density, and high throughput, ideal deployments are at the enterprise edge, hybrid data center core, and across internal segments. Leverage industry-leading IPS, SSL inspection, and advanced threat protection to optimize your network performance. Fortinet’s security-driven networking approach provides tight integration with the new security generation.

Security

  • Identifies thousands of applications inside network traffic for deep inspection and granular policy enforcement
  • Protects against malware, exploits, and malicious websites in both encrypted and non-encrypted traffic
  • Prevent and detect against known and unknown attacks using continuous threat intelligence from AI-powered FortiGuard Labs security services

Performance

  • Delivers industry’s best threat protection performance and ultra-low latency using purpose-built security processor (SPU) technology
  • Provides industry-leading performance and protection for SSL encrypted traffic

Certification

  • Independently tested and validated for best-in-class security effectiveness and performance
  • Received unparalleled third-party certifications from NSS Labs

Networking

  • Delivers advanced networking capabilities that seamlessly integrate with advanced layer 7 security and virtual domains (VDOMs) to offer extensive deployment flexibility, multi-tenancy and effective utilization of resources
  • Delivers high-density, flexible combination of various high-speed interfaces to enable best TCO for customers for data center and WAN deployments

Management

  • Includes a management console that is effective, simple to use, and provides comprehensive network automation and visibility
  • Provides Zero Touch Integration with Fortinet’s Security Fabric’s Single Pane of Glass Management
  • Predefined compliance checklist analyzes the deployment and highlights best practices to improve overall security posture

Security Fabric

  • Enables Fortinet and Fabric-ready partners’ products to provide broader visibility, integrated end-to-end detection, threat intelligence sharing, and automated remediation
FIREWALL*IPS*NGFW*THREAT PROTECTION*INTERFACES
1.89 Tbps675 Gbps550 Gbps520 Gbps25 GE SFP28 / 10 GE SFP+ / GE SFP 100 GE QSFP28 / 40 GE QSFP+ 400 GE QSFP-DD

* Refer to specification table for details

DEPLOYMENT

Next Generation Firewall (NGFW)

  • Reduce the complexity and maximize your ROI by integrating threat protection security capabilities into a single high-performance network security appliance, powered by Fortinet’s Security Processing Unit (SPU)
  • Full visibility into users, devices, and applications across the entire attack surface, and consistent security policy enforcement irrespective of asset location
  • Protect against network exploitable vulnerabilities with industry-validated IPS that offers low latency and optimized network performance
  • Automatically block threats on decrypted traffic using the industry’s highest SSL inspection performance, including the latest TLS 1.3 standard with mandated ciphers
  • Proactively block newly discovered sophisticated attacks in real-time with AI-powered FortiGuard Labs and advanced threat protection services included in the Fortinet Security Fabric

Segmentation

  • Segmentation that adapts to any network topology, delivering end-to-end security from the branch level to data centers and extending to multiple clouds
  • Reduce security risks by improving network visibility from the components of the Fortinet Security Fabric, which adapt access permissions to current levels of trust and enforce access control effectively and efficiently
  • Delivers defense in depth security powered by high-performance L7 inspection and remediation by Fortinet’s SPU, while delivering third party validated TCO of per protected Mbps
  • Protects critical business applications and helps implement any compliance requirements without network redesigns

IPS

  • Purpose-built security processors delivering industry validated IPS performance with high throughput and low latency
  • Deploy virtual patches at the network level to protect against network exploitable vulnerabilities and optimize network protection time
  • Deep packet inspection at wire speeds offers unparalleled threat visibility into network traffic including traffic encrypted with the latest TLS 1.3
  • Proactively block newly discovered sophisticated attacks in real-time with advanced threat protection provided by the intelligence services of the Fortinet Security Fabric

Mobile Security for 4G, 5G, and IOT

  • SPU accelerated, high performance CGNAT and IPv6 migration option including: NAT44, NAT444, NAT64/DNS64, NAT46 for 4G Gi/sGi and 5G N6 connectivity and security
  • User plane security enabled by full Threat Protection and visibility into GTP-U inspection
  • 4G and 5G security for user and data plane traffic including SCTP, GTP-U, and SIP that provides protection against attacks
  • 4G and 5G cores IoT signaling storm protection
  • High-speed interfaces to enable deployment flexibility

Data Center Deployment (IPS/NGFW, Intent-based Segmentation)

FORTINET SECURITY FABRIC

Security Fabric

The industry’s highest-performing cybersecurity platform, powered by FortiOS, with a rich ecosystem designed to span the extended digital attack surface, delivering fully automated, self-healing network security.

  • Broad: Coordinated detection and enforcement across the entire digital attack surface and lifecycle with converged networking and security across edges, clouds, endpoints and users
  • Integrated: Integrated and unified security, operation, and performance across different technologies, location, deployment options, and the richest Ecosystem
  • Automated: Context aware, self-healing network & security posture leveraging cloud-scale and advanced AI to automatically deliver near-real-time, user-to-application coordinated protection across the Fabric

The Fabric empowers organizations of any size to secure and simplify their hybrid infrastructure on the journey to digital innovation.

FortiOS™ Operating System

FortiOS, Fortinet’s leading operating system enable the convergence of high performing networking and security across the Fortinet Security Fabric delivering consistent and context-aware security posture across network endpoints, and clouds. The organically built best of breed capabilities and unified approach allows organizations to run their businesses without compromising performance or protection, supports seamless scalability, and simplifies innovation consumption.

The release of FortiOS 7* dramatically expands the Fortinet Security Fabric’s ability to deliver consistent security across hybrid deployment models consisting on appliances, software and As-a-Service with SASE, ZTNA, and other emerging cybersecurity solutions.

* FortiOS 7 is not supported on FGR-30D and FGR-35D.

SERVICES

FortiGuard™ Security Services

FortiGuard Labs offers real-time intelligence on the threat landscape, delivering comprehensive security updates across the full range of Fortinet’s solutions. Comprised of security threat researchers, engineers, and forensic specialists, the team collaborates with the world’s leading threat monitoring organizations and other network and security vendors, as well as law enforcement agencies.

FortiCare™ Services

Fortinet is dedicated to helping our customers succeed, and every year FortiCare services help thousands of organizations get the most from their Fortinet security Fabric solution. We have more than 1,000 experts to help accelerate technology implementation, provide reliable assistance through advanced support, and offer proactive care to maximize security and performance of Fortinet deployments.

HARDWARE

FortiGate 7121F

Front View of FortiGate 7121F

Back View of FortiGate 7121F

Content Processor

Fortinet’s ninth generation custom SPU CP9 content processor works outside of the direct flow of traffic and accelerates the inspection.

Powered by SPU

  • Fortinet’s custom SPU processors deliver the power you need to detect malicious content at multi-Gigabit speeds
  • Other security technologies cannot protect against today’s wide range of content- and connection-based threats because they rely on general-purpose CPUs, causing a dangerous performance gap
  • SPU processors provide the performance needed to block emerging threats, meet rigorous third-party certifications, and ensure that your network security solution does not become a network bottleneck

Network Processor

Fortinet’s new, breakthrough SPU NP7 network processor works inline with FortiOS functions delivering:

  • Superior firewall performance for IPv4/IPv6, SCTP and multicast traffic with ultra-low latency
  • VPN, CAPWAP, and IP tunnel acceleration
  • Anomaly-based intrusion prevention, checksum offload, and packet defragmentation
  • Traffic shaping and priority queuing

Trusted Platform Module (TPM)

The FortiGate 7121F Series features a dedicated module that hardens physical networking appliances by generating, storing, and authenticating cryptographic keys. Hardware-based security mechanisms protect against malicious software and phishing attacks.

Fortinet Interface Module (FIM) FIM-7921F and FIM-7941F

Hardware Features

Fortinet Processor Module (FPM) FPM-7620F

Hardware Features

ORDERING INFORMATION

PRODUCTSKUDESCRIPTION
FortiGate 7121F* FG-7121F16U 12-slot chassis with 2x FPM-7620F Processor Module, 2x FIM-7921F I/O Module, 2x Management Module and 8x hot swappable redundant PSU.
FortiGate-7121F-2 FG-7121F-216U 12-slot chassis with 2x FPM-7620F Processor Module, 2x FIM-7941F I/O Module, 2x Management Module and 8x hot swappable redundant PSU.
FortiGate-7121F-DC FG-7121F-DC16U 12-slot chassis with 2x FPM-7620F Processor Module, 2x FIM-7921F I/O Module, 2x Management Module and 8x hot swappable redundant PSU 2KW DC-DC (without DC combiner).
OPTIONAL / SPARE ITEMS SKU DESCRIPTION
Processor Module
FPM-7620F Module FPM-7620FHot swappable processing module for 7xxxF series - FortiASIC NP7 and CP9 hardware accelerated. 2x QSFP28 and 8x SFP28 ports.
I/O Module
FIM-7921F Module** FIM-7921FHot swappable I/O module for 7xxxF series - FortiASIC NP7 hardware accelerated. 2x GE RJ45 Management ports, 2x QSFP-DD ports, 20x QSFP28 ports, 2x SFP28 ports. 2x 4TB local log storage.
FIM-7941F Module** FIM-7941FHot swappable I/O module for 7xxxF series - FortiASIC NP7 hardware accelerated. 2x GE RJ45 Management ports, 2x QSFP-DD ports, 20x QSFP28 ports, 2x SFP28 ports. 2x 4TB local log storage.
Accessories
Fan Module FG-7121F-FANFG-7121F Fan module.
Power Supply FG-7121F-PS-2KACFG-7121F power supply 2KW AC.
FortiGate-7121F-AC-Chassis FG-7121F-CHFG-7121F chassis with 2x system management module, 8x PSU and 6x FAN module.
FortiGate-7121F-DC-Chassis FG-7121F-DC-CHFG-7121F chassis with 2x system management module, 8x DC PSU and 6x FAN module, 8x DC input cable.
FG-7121F-DC-Combiner FG-7121F-DC-COMBINER1U rack mounted chassis containing 8x DC combiner module to support A+B input redundancy for FG-7121F-DC.
Transceivers
1GE SFP RJ45 transceiver module FN-TRAN-GC1GE SFP RJ45 transceiver module for all systems with SFP and SFP/SFP+ slots.
1GE SFP SX transceiver module FN-TRAN-SX1GE SFP SX transceiver module for all systems with SFP and SFP/SFP+ slots.
1GE SFP LX transceiver module FN-TRAN-LX1GE SFP LX transceiver module for all systems with SFP and SFP/SFP+ slots.
10GE copper SFP+ RJ45 Transceiver (30m range) FN-TRAN-SFP+GC10GE copper SFP+ RJ45 Fortinet Transceiver (30m range) for systems with SFP+ slots.
10GE SFP+ transceiver module, short range FN-TRAN-SFP+SR10GE SFP+ transceiver module, short range for all systems with SFP+ and SFP/SFP+ slots.
10GE SFP+ transceiver module, long range FN-TRAN-SFP+LR10GE SFP+ transceiver module, long range for all systems with SFP+ and SFP/SFP+ slots.
10Gbase-ER SFP+ transceivers FN-TRAN-SFP+ER10Gbase-ER SFP+ transceivers for FortiSwitch and FortiGate, 1550nm. Single Mode. 40km range for systems with SFP+ slots.
25GE SFP28 transceiver module, short range FN-TRAN-SFP28-SR25GE/10GE Dual Rate SFP28 transceiver module, short range for all systems with SFP28/SFP+ slots.
25GE SFP28 transceiver module, long range FN-TRAN-SFP28-LR25GE SFP28 transceiver module, long range for all systems with SFP28 slots.
40GE QSFP+ transceivers, short range FN-TRAN-QSFP+SR40GE QSFP+ transceivers, short range for all systems with QSFP+ slots.
40GE QSFP+ transceivers, long range FN-TRAN-QSFP+LR40GE QSFP+ transceivers, long range for all systems with QSFP+ slots.
100GE QSFP28 transceivers FN-TRAN-QSFP28-SR100GE QSFP28 transceivers, 4 channel parallel fiber, short range for all systems with QSFP28 slots.
100GE QSFP28 transceivers, long range FN-TRAN-QSFP28-LR100 GE QSFP28 transceivers, 4 channel parallel fiber, long range for all systems with QSFP28 slots.
100GE QSFP28 transceivers FN-TRAN-QSFP28-CWDM4100 GE QSFP28 transceivers, LC connectors, 2KM for all systems with QSFP28 slots.

* The FG-7121F has Chassis-based pricing. Individual and bundled FortiGuard security services and FortiCare support subscription services such as Threat Protection Bundle, UTM Bundle, Enterprise Bundle, and FortiCare360 are on a chassis-based pricing. License such as VDOM and Endpoint Compliance are also included in the chassis-based pricing.
** Each FIM is packed individually and comes with 2x 10 GE SFP+ SR transceivers at no charge. NOTE: All optional/spare components are for replacement usage and should not be used to assemble a bundle as only bundles have the necessary subscriptions.

BUNDLES

FortiGuard Bundles

FortiGuard Labs delivers a number of security intelligence services to augment the FortiGate firewall platform. You can easily optimize the protection capabilities of your FortiGate with one of these FortiGuard Bundles.

FortiGuard BundlesEnterprise ProtectionUnified Threat ProtectionAdvanced Threat Protection
FortiCare

24x7

24x7

24x7

FortiGuard App Control Service
FortiGuard IPS Service
FortiGuard Advanced Malware Protection (AMP) — Antivirus, Mobile Malware, Botnet, CDR, Virus Outbreak Protection and FortiSandbox Cloud Service
FortiGuard Web and Video1 Filtering Service
FortiGuard Antispam Service
FortiGuard Security Rating Service
FortiGuard IoT Detection Service
FortiGuard Industrial Security Service
FortiConverter Service

1. Available when running FortiOS 7.0

GET FortiGate 7121F Series NGFW Pricing

To receive FortiGate 7121F Series NGFW price, please send us a message.