FortiGate-61F with 1-Year 24×7 FortiCare & FortiGuard Unified Protection
Fortinet FG-61F-BDL-950-12 is a complete FortiGate-61F network security bundle that combines the FortiGate-61F hardware appliance with 1 year of 24×7 FortiCare support and FortiGuard Unified Threat Protection (UTM/UTP). Designed for small and medium-sized businesses, branch offices, and distributed networks, the FortiGate-61F delivers next-generation firewall, IPS, antivirus, application control, web/DNS filtering, anti-botnet protection, VPN, and secure networking capabilities in a compact appliance. The 61F also includes 128 GB SSD storage and hardware-accelerated security processing.
Description
The FG-61F-BDL-950-12 is an integrated network security hardware and subscription bundle built around the Fortinet FortiGate-61F next-generation firewall.
The bundle is designed to provide businesses with a complete security gateway incorporating firewall protection, intrusion prevention, malware protection, application control, web security, VPN connectivity, and FortiGuard threat intelligence.
It includes:
- FortiGate-61F hardware appliance
- 1 Year 24×7 FortiCare support
- 1 Year FortiGuard Unified Threat Protection
- FortiOS network-security functionality
- FortiGuard security services applicable to the UTM/UTP entitlement
The FortiGate-61F is part of Fortinet’s FortiGate 60F Series and provides Gigabit Ethernet connectivity, dedicated WAN interfaces, FortiLink ports, and integrated storage.
Key Features
- Brand: Fortinet
- Product Family: FortiGate
- Model: FortiGate-61F
- Part Number: FG-61F-BDL-950-12
- Product Type: Hardware + Security Subscription Bundle
- FortiCare: 24×7
- FortiCare Term: 1 Year
- FortiGuard: Unified Threat Protection (UTM/UTP)
- FortiGuard Term: 1 Year
- Firewall: Next-Generation Firewall
- IPS: Supported
- Antivirus: Supported
- Application Control: Supported
- Web Security: Supported
- URL/DNS Filtering: Included with UTP
- Anti-Botnet/C2 Protection: Included with UTP
- VPN: IPsec VPN and SSL-VPN
- WAN/DMZ: 2 × GE RJ45 WAN + 1 × GE RJ45 DMZ
- Internal Ports: 5 × GE RJ45
- FortiLink Ports: 2 × GE RJ45
- Storage: 128 GB SSD
- USB: 1 × USB
- Console: 1 × RJ45
- Form Factor: Compact desktop appliance
- Hardware Acceleration: SOC4, NP6XLite and CP9XLite architecture
Next-Generation Firewall
The FortiGate-61F provides an integrated next-generation firewall (NGFW) for controlling and inspecting traffic across business networks.
It can be deployed between:
- Internet and corporate LAN
- Branch and headquarters networks
- Internal network segments
- Server networks
- Guest networks
- DMZ environments
- Remote users
- Cloud-connected infrastructure
Administrators can create security policies based on network addresses, services, applications, users, interfaces, and other traffic characteristics.
This allows the FortiGate-61F to act as a centralized security gateway rather than requiring separate appliances for individual security functions.
FortiGuard Unified Threat Protection
The included FortiGuard Unified Threat Protection (UTP/UTM) subscription extends the FortiGate-61F with cloud-based security intelligence and security services.
Fortinet currently describes the UTP bundle as providing advanced protection for web and network traffic, including the services available in its ATP bundle plus URL/DNS filtering, video filtering, and anti-botnet/C2 communication protection.
Major Security Services
| Security Capability | Function |
|---|---|
| Intrusion Prevention (IPS) | Detects and blocks network attacks and exploits |
| Antivirus | Protects against malware and malicious files |
| Advanced Malware Protection | Adds protection against sophisticated malware |
| Application Control | Identifies and controls applications |
| Web Security | Helps protect users from web-based threats |
| Web & Content Filtering | Controls access to websites and content |
| Secure DNS Filtering | Blocks malicious or unwanted domains |
| Video Filtering | Controls video-related web content |
| Anti-Botnet & C2 | Helps detect malicious command-and-control communication |
These services are part of Fortinet’s current UTP service structure.
Intrusion Prevention System
The FortiGate-61F can inspect network traffic using FortiGuard IPS intelligence to identify malicious activity and exploit attempts.
IPS protection can help defend against:
- Vulnerability exploitation
- Network attacks
- Malicious protocols
- Known attack signatures
- Suspicious network activity
FortiGuard Labs continuously develops and updates threat intelligence and security services to help Fortinet devices respond to evolving threats.
Antivirus & Malware Protection
The FortiGuard subscription provides antivirus and malware protection for supported traffic.
The FortiGate-61F can inspect network traffic and files against security intelligence to help identify and block malicious content.
This provides an additional layer of defense for users accessing:
- Internet websites
- Email services
- File-sharing services
- Business applications
- External resources
Application Control
Application Control allows administrators to identify and manage applications running across the network.
Businesses can use application policies to:
- Allow business-critical applications
- Block unauthorized applications
- Restrict risky applications
- Monitor application activity
- Apply bandwidth and access policies
This provides more granular control than conventional IP-address and port-based firewall policies.
Web & URL Filtering
The FortiGuard UTP subscription provides web security and web/content filtering.
Organizations can use these capabilities to control access to websites according to FortiGuard categorization and security reputation.
Typical applications include blocking:
- Malicious websites
- Phishing sites
- Known malware destinations
- Unwanted content categories
- Unauthorized web services
This helps organizations enforce acceptable-use policies while reducing exposure to web-based threats.
Secure DNS Filtering
Secure DNS Filtering provides an additional security layer by evaluating DNS requests.
It can help prevent devices from resolving or connecting to domains associated with malicious activity.
This can be particularly useful against:
- Phishing
- Malware distribution
- Botnet infrastructure
- Malicious domains
Secure DNS Filtering is included in Fortinet’s current UTP bundle.
Anti-Botnet & C2 Protection
The UTP subscription includes Anti-Botnet and Command-and-Control (C2) protection.
This capability helps identify communications between potentially compromised devices and malicious command-and-control infrastructure.
It can assist security teams in detecting devices that may have been compromised and are communicating with attacker-controlled systems.
FortiGate-61F Hardware
The FortiGate-61F provides a compact security platform suitable for SMB, branch-office, and distributed-network deployments.
According to Fortinet’s 60F Series specifications, the 61F includes:
- 2 × GE RJ45 WAN ports
- 1 × GE RJ45 DMZ port
- 5 × GE RJ45 internal ports
- 2 × GE RJ45 FortiLink ports
- 1 × USB port
- 1 × RJ45 console port
- 1 × 128 GB SSD
The FortiLink interfaces can be used for integration with Fortinet-managed switching environments.
Hardware-Accelerated Security Processing
The FortiGate-61F uses Fortinet’s SOC4 architecture, incorporating the NP6XLite network processor and CP9XLite content processor.
Fortinet documentation explains that supported traffic between front-panel interfaces can be offloaded to the NP6XLite processor, helping accelerate network processing.
This hardware-assisted architecture is designed to improve performance when processing network traffic and supported security functions.
Performance
Fortinet’s published 60F Series specifications provide the following performance figures for the FortiGate-61F:
| Performance Metric | FortiGate-61F |
|---|---|
| Firewall Throughput | Up to 10/10/6 Gbps |
| Firewall Packets per Second | Up to 9 Mpps |
| Firewall Latency | Approximately 3.3 μs |
| IPS Throughput | Up to 1.4 Gbps |
| NGFW Throughput | Up to 1 Gbps |
| Threat Protection Throughput | Up to 700 Mbps |
| IPsec VPN Throughput | Up to 6.5 Gbps |
| Concurrent TCP Sessions | Up to 700,000 |
| New TCP Sessions/Second | Up to 35,000 |
| Firewall Policies | Up to 2,000 |
The firewall throughput figure is presented by Fortinet for 1518/512/64-byte UDP traffic; real-world performance depends on traffic patterns, configuration, security profiles, and enabled inspection features.
VPN Connectivity
The FortiGate-61F supports secure VPN connectivity for remote offices and users.
Site-to-Site VPN
Connect:
- Headquarters
- Branch offices
- Remote sites
- Data centers
- Cloud environments
through secure VPN tunnels.
Remote Access VPN
Provide authorized employees and users with secure remote access to corporate resources.
IPsec VPN
Fortinet specifies up to 6.5 Gbps IPsec VPN throughput for the 60F/61F platform under its stated testing conditions.
Network Segmentation
The FortiGate-61F can be used to establish security boundaries between different network environments.
Common segments include:
- Corporate LAN
- Guest network
- Servers
- VoIP
- IoT
- Wireless infrastructure
- DMZ
- Internet-facing services
Administrators can create different firewall and security policies for each network zone.
FortiLink Integration
The FortiGate-61F provides two dedicated GE RJ45 FortiLink interfaces.
FortiLink enables integration between FortiGate and compatible Fortinet switches, allowing organizations to build centrally managed secure wired networks.
This makes the 61F suitable as a security gateway for environments using Fortinet switching infrastructure.
FortiOS Management
The FortiGate-61F runs FortiOS, Fortinet’s operating system for its FortiGate security appliances.
FortiOS provides centralized management for:
- Firewall policies
- Routing
- VPN
- Network interfaces
- Security profiles
- Application control
- Web filtering
- User authentication
- Logging
- Monitoring
This provides administrators with a unified management platform for network security.
24×7 FortiCare Support
A major advantage of the FG-61F-BDL-950-12 bundle is its 1-year 24×7 FortiCare support entitlement.
Unlike an 8×5 support package, 24×7 support is designed for organizations that require technical assistance outside normal business hours.
Fortinet’s support offering includes technical support, web and telephone support, firmware updates, and asset-management capabilities depending on the applicable FortiCare entitlement.
This makes the bundle particularly appropriate for organizations where network security must remain operational around the clock.
Security Fabric Integration
The FortiGate-61F can serve as a central component of the Fortinet Security Fabric.
It can integrate with other Fortinet products and services, including:
- FortiManager
- FortiAnalyzer
- FortiSwitch
- FortiAP
- FortiClient
- FortiMail
- FortiWeb
- FortiSandbox
This enables organizations to expand their security infrastructure while maintaining centralized visibility and policy control.
Suitable Applications
Small & Medium-Sized Businesses
Provides an integrated firewall and security platform without requiring a large rack-mounted appliance.
Branch Offices
Ideal for securing branch locations and providing VPN connectivity to headquarters.
Remote Offices
Provides secure Internet access and network protection for smaller remote sites.
Retail & Commercial Locations
Suitable for businesses requiring centralized firewall, VPN, web filtering, and threat protection.
Distributed Enterprises
Can be deployed at multiple locations to establish consistent security policies.
Secure Internet Gateway
Protects internal users, servers, and devices from Internet-based threats.
Key Benefits
Complete Hardware + Security Bundle
Combines the FortiGate-61F appliance, 1-year 24×7 FortiCare, and 1-year FortiGuard Unified Threat Protection.
24×7 Technical Support
Provides support coverage around the clock, making the package suitable for business-critical environments.
Comprehensive UTP Protection
Includes network and web security services such as IPS, antivirus, application control, web filtering, DNS filtering, and anti-botnet/C2 protection.
High Firewall Performance
Provides up to 10 Gbps firewall throughput under Fortinet’s specified test conditions.
Strong Security Performance
Provides up to 700 Mbps Threat Protection throughput and 1.4 Gbps IPS throughput according to Fortinet’s published specifications.
Flexible Gigabit Connectivity
Provides WAN, DMZ, internal, and FortiLink interfaces for flexible network deployment.
128 GB SSD Storage
The 61F includes integrated 128 GB SSD storage, unlike the standard FortiGate-60F.
Hardware-Accelerated Processing
Uses SOC4, NP6XLite, and CP9XLite processing architecture for supported traffic and security workloads.
Technical Specifications
| Specification | Details |
|---|---|
| Manufacturer | Fortinet |
| Product Family | FortiGate |
| Model | FortiGate-61F |
| Part Number | FG-61F-BDL-950-12 |
| Product Type | Hardware + Subscription Bundle |
| FortiCare | 24×7 |
| FortiCare Term | 1 Year |
| FortiGuard | Unified Threat Protection (UTP/UTM) |
| FortiGuard Term | 1 Year |
| WAN Ports | 2 × GE RJ45 |
| DMZ Port | 1 × GE RJ45 |
| Internal Ports | 5 × GE RJ45 |
| FortiLink Ports | 2 × GE RJ45 |
| USB | 1 × USB |
| Console | 1 × RJ45 |
| Internal Storage | 1 × 128 GB SSD |
| Firewall Throughput | Up to 10/10/6 Gbps |
| Firewall PPS | Up to 9 Mpps |
| Firewall Latency | Approx. 3.3 μs |
| IPS Throughput | Up to 1.4 Gbps |
| NGFW Throughput | Up to 1 Gbps |
| Threat Protection Throughput | Up to 700 Mbps |
| IPsec VPN Throughput | Up to 6.5 Gbps |
| Concurrent TCP Sessions | Up to 700,000 |
| New TCP Sessions/Second | Up to 35,000 |
| Firewall Policies | Up to 2,000 |
| Hardware Architecture | SOC4 + NP6XLite + CP9XLite |
| Primary Use | SMB, Branch & Distributed Network Security |
Specifications are based on Fortinet’s published FortiGate/FortiWiFi 60F Series documentation.
What’s Included
The FG-61F-BDL-950-12 bundle consists of:
- FortiGate-61F hardware appliance
- 1-Year 24×7 FortiCare support
- 1-Year FortiGuard Unified Threat Protection
- Applicable FortiGuard security services
- FortiOS-based network-security functionality
Subscription Note
FortiGuard and FortiCare are subscription/support services. The included term is one year. Renewal is required after the initial term to maintain the applicable subscription and support entitlements.
The exact services available under a FortiGuard bundle can evolve as Fortinet updates its subscription portfolio, so the licensing entitlement associated with the supplied SKU/order should be used as the final reference. Fortinet currently identifies UTP as its web-and-network security bundle.
Product Summary
The Fortinet FG-61F-BDL-950-12 FortiGate-61F Hardware Bundle is a powerful, compact network-security solution combining the FortiGate-61F next-generation firewall, 1 year of 24×7 FortiCare support, and 1 year of FortiGuard Unified Threat Protection.
With up to 10 Gbps firewall throughput, 1.4 Gbps IPS throughput, 1 Gbps NGFW throughput, 700 Mbps Threat Protection throughput, 6.5 Gbps IPsec VPN throughput, 128 GB SSD storage, 2 WAN ports, 1 DMZ port, 5 internal ports, and 2 FortiLink ports, the FG-61F-BDL-950-12 is well suited for SMBs, branch offices, retail locations, remote sites, and distributed enterprise networks



