Fortinet FGR-70F FortiGate Rugged 70F Industrial Firewall
The Fortinet FGR-70F FortiGate Rugged 70F is a ruggedized next-generation firewall (NGFW) designed to protect industrial, operational technology (OT), critical infrastructure, remote-site, and harsh-environment networks.
Powered by Fortinet FortiSoC4 technology and FortiOS, the FGR-70F combines firewall security, intrusion prevention, application control, secure SD-WAN, VPN, network segmentation, and OT security capabilities in a compact DIN-rail-mountable IP40 appliance.
The FGR-70F provides 6 Gigabit Ethernet RJ45 interfaces, 2 dedicated Gigabit SFP slots, a bypass GE port pair, USB 2.0, serial and console interfaces, MicroSD, BLE, TPM, and digital I/O. It supports redundant 12–125V DC power inputs and an industrial operating temperature range of -40°C to 75°C.
Description
The Fortinet FGR-70F FortiGate Rugged 70F is purpose-built for environments where conventional enterprise firewalls may not provide the required physical resilience or industrial connectivity.
It provides the full FortiGate security platform in a ruggedized form factor, enabling organizations to protect industrial control systems, OT networks, remote facilities, utilities, manufacturing environments, transportation infrastructure, and other mission-critical sites.
The appliance supports up to 8 Gbps IPv4 firewall throughput, 975 Mbps IPS throughput, 950 Mbps NGFW throughput, and 580 Mbps threat-protection throughput under Fortinet’s specified test conditions. It also provides up to 6.5 Gbps IPsec VPN throughput.
Its rugged design includes fanless operation, IP40 protection, DIN-rail mounting, redundant DC power inputs, TPM hardware security, digital I/O, and operation from -40°C to 75°C, making it suitable for demanding industrial installations.
Key Specifications
| Specification | Details |
|---|---|
| Brand | Fortinet |
| Product Family | FortiGate Rugged |
| Model | FGR-70F |
| Product Type | Rugged Next-Generation Firewall |
| Target Environment | Industrial / OT / Critical Infrastructure |
| Processor | FortiSoC4 |
| GE RJ45 Interfaces | 6 |
| Dedicated GE SFP Slots | 2 |
| Bypass Port Pair | PORT3–PORT4 |
| Serial Interface | 1 × RJ45 |
| Console | 1 × RJ45 |
| USB | 1 × USB-A 2.0 |
| MicroSD | Yes |
| Digital I/O (DIO) | Yes |
| Bluetooth Low Energy | Yes |
| Trusted Platform Module | Yes |
| Firewall Throughput | Up to 8 Gbps |
| Firewall Packets Per Second | Up to 12 Mpps |
| Firewall Latency | 6.71 μs |
| Concurrent TCP Sessions | Up to 1 million |
| New TCP Sessions/sec | Up to 35,000 |
| Firewall Policies | Up to 5,000 |
| IPsec VPN Throughput | Up to 6.5 Gbps |
| Gateway-to-Gateway IPsec Tunnels | 200 |
| Client-to-Gateway IPsec Tunnels | 500 |
| IPS Throughput | Up to 975 Mbps |
| NGFW Throughput | Up to 950 Mbps |
| Threat Protection | Up to 580 Mbps |
| SSL Inspection | Up to 500 Mbps |
| Application Control | Up to 1.1 Gbps |
| Virtual Domains | 10 / 10 |
| Maximum FortiAPs | 64 / 32 tunnel |
| Maximum FortiSwitches | 24 |
| Form Factor | DIN-rail |
| IP Rating | IP40 |
| Power Input | Dual redundant 12–125V DC |
| Average Power | 16 W |
| Maximum Power | 18 W |
| Operating Temperature | -40°C to 75°C |
| Storage Temperature | -40°C to 85°C |
| Humidity | 5%–95%, non-condensing |
| Operating Altitude | Up to 3,048 m |
| Dimensions | 111 × 80.5 × 122 mm |
| Weight | Approx. 1.3 kg |
Fortinet specifies these performance values as up to figures and notes that performance varies according to system configuration.
Network Interfaces
The FGR-70F provides a combination of copper and fiber connectivity suitable for industrial network architectures.
Ethernet
- 6 × Gigabit Ethernet RJ45
- 2 × dedicated Gigabit SFP slots
- 1 × GE RJ45 bypass port pair between PORT3 and PORT4
The bypass pair provides a physical fail-safe connectivity mechanism for supported network architectures, helping maintain traffic continuity in appropriate inline deployments.
Management & Expansion
- 1 × RJ45 serial interface
- 1 × RJ45 console port
- 1 × USB-A 2.0
- 1 × MicroSD card slot
- Digital I/O module
- BLE
- TPM
Industrial & Rugged Design
The FGR-70F is specifically designed for industrial and OT environments.
Its rugged characteristics include:
- Fanless design
- IP40-rated enclosure
- DIN-rail mounting
- -40°C to 75°C operating temperature
- -40°C to 85°C storage temperature
- 5%–95% non-condensing humidity
- Dual redundant DC power inputs
- Integrated TPM
- Digital I/O
- Compact industrial form factor
The wide 12–125V DC redundant input range allows the appliance to be integrated into a variety of industrial power systems. Fortinet specifies two redundant DC inputs with positive or negative grounding options; DC cables are not included.
Security & NGFW Capabilities
The FGR-70F runs FortiOS, Fortinet’s network security operating system, and provides multiple security functions through a unified platform.
Key capabilities include:
- Stateful firewall
- Intrusion Prevention System (IPS)
- Application Control
- Web security
- DNS security
- Malware protection
- SSL/TLS inspection
- IPsec VPN
- Secure SD-WAN
- Network segmentation
- Microsegmentation
- Zero Trust Network Access (ZTNA)
- Security Fabric integration
- Centralized management
Fortinet also provides FortiGuard Security Services for enhanced threat intelligence, application security, malware protection, web/DNS security, and other security functions.
OT & Industrial Security
The FGR-70F is designed specifically for operational technology and industrial environments.
Fortinet’s Rugged Series supports OT security functions including:
- Deep packet inspection
- OT application and protocol visibility
- OT-centric IPS
- Virtual patching
- Vulnerability shielding
- Network segmentation
- Microsegmentation
- Industrial protocol inspection
- Protection against lateral movement
- Industrial asset visibility
Fortinet states that its OT security capabilities provide deep packet inspection for 80+ OT applications and protocols, with payload-level visibility and control for supported protocols.
Secure SD-WAN
The FGR-70F includes integrated Secure SD-WAN capabilities, allowing organizations to combine WAN connectivity and security in a single appliance.
Secure SD-WAN can provide:
- Application-aware routing
- WAN path selection
- Secure overlays
- IPsec connectivity
- Centralized policy control
- WAN optimization capabilities
- Automated network management
This makes the FGR-70F suitable for connecting remote industrial facilities and distributed OT locations while maintaining centralized security policies.
Firewall & Security Performance
| Performance Metric | FGR-70F |
|---|---|
| IPv4 Firewall Throughput | Up to 8 Gbps |
| Firewall Latency | 6.71 μs |
| Firewall Throughput | 12 Mpps |
| Concurrent TCP Sessions | 1,000,000 |
| New TCP Sessions/sec | 35,000 |
| Firewall Policies | 5,000 |
| IPsec VPN Throughput | 6.5 Gbps |
| IPS Throughput | 975 Mbps |
| NGFW Throughput | 950 Mbps |
| Threat Protection | 580 Mbps |
| SSL Inspection | 500 Mbps |
| Application Control | 1.1 Gbps |
These values are Fortinet’s published maximum performance figures under specified test conditions. NGFW performance includes firewall, IPS, and application control, while threat protection includes firewall, IPS, application control, and malware protection.
VPN & Remote Connectivity
The FGR-70F supports secure VPN connectivity for industrial and remote-site deployments.
IPsec VPN
- Up to 6.5 Gbps IPsec throughput
- 200 gateway-to-gateway tunnels
- 500 client-to-gateway tunnels
- AES256-SHA256 performance testing
The appliance can therefore be used to securely connect remote plants, substations, facilities, control networks, and branch locations.
SSL-VPN
Fortinet’s current data sheet lists:
- 450 Mbps SSL-VPN throughput
- 100 recommended maximum concurrent SSL-VPN users
Important: Fortinet notes that SSL-VPN is not supported starting with FortiOS 7.6.0 on affected models and recommends the FortiOS 7.2.x LTS release where these features are required. Verify the intended FortiOS version before selling or deploying the unit for SSL-VPN requirements.
High Availability
The FGR-70F supports:
- Active-Active HA
- Active-Passive HA
- Clustering
This allows organizations to build resilient firewall architectures for critical industrial networks where downtime can have significant operational consequences.
Centralized Management
The FGR-70F can be integrated into Fortinet’s centralized management architecture.
Supported management and security ecosystem components include:
- FortiManager
- FortiAnalyzer
- FortiGate Security Fabric
- FortiGuard Services
- FortiSwitch
- FortiAP
- FortiSASE
FortiManager provides centralized configuration, monitoring, provisioning, analytics, and lifecycle management across Fortinet Security Fabric environments.
Digital I/O & Industrial Integration
The FGR-70F includes an integrated Digital I/O (DIO) module, providing additional integration possibilities for industrial environments.
This can be valuable when firewall and security infrastructure needs to coexist with industrial monitoring, control, and automation systems.
The combination of DIO, serial connectivity, rugged construction, and DIN-rail mounting makes the FGR-70F particularly appropriate for OT installations where standard enterprise firewall hardware may be difficult to deploy.
Recommended Applications
The Fortinet FGR-70F is well suited for:
- Industrial control systems
- Operational Technology (OT) networks
- Manufacturing facilities
- Factory automation
- Utilities
- Energy infrastructure
- Transportation systems
- Rail infrastructure
- Oil and gas facilities
- Water treatment facilities
- Critical infrastructure
- Remote industrial sites
- Industrial DMZs
- Network segmentation
- Microsegmentation
- Secure remote facilities
- Industrial Secure SD-WAN
- Edge security deployments
FGR-70F vs FGR-70F-3G4G
The standard FGR-70F and cellular FGR-70F-3G4G use the same core rugged firewall platform and published security performance.
| Feature | FGR-70F | FGR-70F-3G4G |
|---|---|---|
| GE RJ45 | 6 | 6 |
| GE SFP | 2 | 2 |
| Bypass Pair | PORT3–PORT4 | PORT3–PORT4 |
| Firewall Throughput | 8 Gbps | 8 Gbps |
| IPS | 975 Mbps | 975 Mbps |
| NGFW | 950 Mbps | 950 Mbps |
| Threat Protection | 580 Mbps | 580 Mbps |
| Cellular | No | 3G/4G LTE |
| GPS | No | Yes |
| SIM Slots | No | 2, Active/Passive |
| DIO | Yes | Yes |
| MicroSD | Yes | Yes |
| TPM | Yes | Yes |
| IP Rating | IP40 | IP40 |
| Power | Dual 12–125V DC | Dual 12–125V DC |
The FGR-70F-3G4G adds an integrated 3G/4G LTE modem, GPS, dual SIM capability, and external cellular antennas.
Physical Specifications
| Specification | Details |
|---|---|
| Dimensions | 111 × 80.5 × 122 mm |
| Weight | Approx. 1.3 kg |
| Form Factor | DIN-rail |
| IP Rating | IP40 |
| Operating Temperature | -40°C to 75°C |
| Storage Temperature | -40°C to 85°C |
| Humidity | 5%–95%, non-condensing |
| Operating Altitude | Up to 3,048 m |
| Power Input | 12–125V DC |
| Power Configuration | Redundant dual inputs |
| Average Power Consumption | 16 W |
| Maximum Power Consumption | 18 W |
Key Features & Benefits
- Rugged FortiGate NGFW platform
- Purpose-built for industrial and OT environments
- FortiSoC4 processor
- 8 Gbps firewall throughput
- 975 Mbps IPS throughput
- 950 Mbps NGFW throughput
- 580 Mbps threat protection
- 6.5 Gbps IPsec VPN
- 6 × GE RJ45
- 2 × GE SFP
- PORT3–PORT4 GE bypass pair
- Digital I/O
- MicroSD card slot
- USB 2.0
- RJ45 serial and console interfaces
- Integrated TPM
- BLE
- Fanless design
- IP40 protection
- DIN-rail mounting
- -40°C to 75°C operation
- Redundant 12–125V DC power
- Secure SD-WAN
- OT security
- Network segmentation
- ZTNA
- Fortinet Security Fabric integration
Licensing & Support
The FGR-70F is the physical FortiGate Rugged firewall appliance.
FortiCare support and FortiGuard security-service subscriptions may be purchased separately depending on the exact SKU, licensing bundle, and deployment requirements.
For an online-store listing, do not state that FortiGuard subscriptions, FortiCare support, or other services are included unless they are explicitly included in the supplied SKU.
Compatibility & Deployment Note
The FGR-70F is the standard non-cellular version of the FortiGate Rugged 70F.
If cellular connectivity or GPS is required, the corresponding FGR-70F-3G4G model should be selected instead.
Performance figures shown above are Fortinet’s published up-to values and should not be interpreted as guaranteed application throughput. Actual performance depends on enabled security features, traffic profile, packet size, logging, FortiOS version, and system configuration.



