Fortinet
FG-3200F-BDL-950-12Fortinet FortiGate 3200F
List PriceThe FortiGate 3200F Series is built for security-driven networking across the datacentre and hybrid IT estate, protecting network edges at scale. Powered by Fortinet's AI/ML-based FortiGuard Services and an integrated Security Fabric platform, it delivers coordinated, automated threat protection across all deployment use cases.
Built-in Zero Trust Network Access (ZTNA) enforcement controls and verifies user access to applications directly within the NGFW, giving consistent, converged access control without additional overlay hardware.
A dedicated cryptographic module hardens the appliance itself, generating, storing and authenticating cryptographic keys in hardware to protect against malicious software and phishing attacks.
Key features
- SPU NP7 network processor and CP9 content processor hardware acceleration
- Zero Trust Network Access (ZTNA) enforcement built into the NGFW
- Trusted Platform Module (TPM) built in
- 2x 1TB onboard SSD storage
- Two AC power supplies, 1+1 redundancy, hot-swappable
- Up to 500 virtual domains (VDOMs)
- Supports up to 300 FortiSwitches and 4,096 FortiAPs
- 4x 400GE QSFP-DD/200GE QSFP56/100GE QSFP28 ports and 10x 50GE SFP56/25GE SFP28/10GE SFP+ slots
Works with
Frequently asked questions
Hardware-only or a bundle?
Hardware-only FG-3200F pricing is not part of this catalogue listing — every SKU we hold for this model bundles the appliance with 1, 3 or 5 years of FortiCare Premium support plus either FortiGuard Unified Threat Protection (UTP) or Enterprise Protection.
3200F vs 3201F — what's different?
The two share the same interfaces and performance figures in Fortinet's datasheet. The FG-3200F weighs 43.9 lbs (20 kg) and draws 520 W / 865 W (average/maximum); the FG-3201F weighs 45.5 lbs (20.7 kg) and draws 527 W / 870 W.
How do I size the right model?
Check the enterprise-mix throughput figures (63 Gbps IPS, 47 Gbps NGFW, 45 Gbps Threat Protection) against expected inspected traffic, and the capacity figures — 70 million concurrent TCP sessions and 200,000 firewall policies — against session counts and policy complexity.
Sizing a FortiGate deployment? Call 0333 242 1314 or email sales@clisecure.com.
Interfaces and Modules
| Hardware Accelerated 400 GE QSFP-DD / 200 GE QSFP56 / 100 GE QSFP28 / 40 GE QSFP+ Ports | 4 |
|---|---|
| Hardware Accelerated 50 GE SFP56 / 25 GE SFP28 / 10 GE SFP+ Slots | 10 |
| Hardware Accelerated 25 GE SFP28 / 10 GE SFP+ / GE SFP ULL Slots | 4 |
| Hardware Accelerated 50 GE SFP56 / 25 GE SFP28 / 10 GE SFP+ HA1/HA2 Slots | 2 |
| 10GE / GE RJ45 Management Ports | 2 |
| USB 3.0 Ports | 1 |
| Console RJ45 Ports | 1 |
| Onboard Storage | 2x 1 TB SSD |
| Trusted Platform Module (TPM) | Yes |
| Included Transceivers | 2x SFP+ (SR 10 GE) |
System Performance — Enterprise Traffic Mix
| IPS Throughput | 63 Gbps |
|---|---|
| NGFW Throughput | 47 Gbps |
| Threat Protection Throughput | 45 Gbps |
System Performance and Capacity
| IPv4 Firewall Throughput (1518 / 512 / 64 byte, UDP packets) | 387/385/178.5 Gbps |
|---|---|
| IPv6 Firewall Throughput (1518 / 512 / 86 byte, UDP packets) | 387/385/178.5 Gbps |
| Firewall Latency (64 byte, UDP) | 3.42 μs |
| Firewall Throughput (Packet per Second) | 267.75 Mpps |
| Concurrent Sessions (TCP) | 70 Million |
| New Sessions/Sec (TCP) | 800,000 |
| Firewall Policies | 200,000 |
| IPsec VPN Throughput (512 byte) | 105 Gbps |
| Gateway-to-Gateway IPsec VPN Tunnels | 40,000 |
| Client-to-Gateway IPsec VPN Tunnels | 200,000 |
| SSL-VPN Throughput | 11 Gbps |
| Concurrent SSL-VPN Users (Recommended Maximum) | 30,000 |
| SSL Inspection Throughput | 29 Gbps |
| SSL Inspection CPS (IPS, avg. HTTPS) | 30,000 |
| SSL Inspection Concurrent Session (IPS, avg. HTTPS) | 7.4 Million |
| Application Control Throughput | 109 Gbps |
| CAPWAP Throughput (HTTP 64K) | 65 Gbps |
| Virtual Domains (Default / Maximum) | 10 / 500 |
| Maximum Number of FortiTokens | 20,000 |
| Maximum Number of Registered FortiClients | 20,000 |
| Maximum Number of FortiSwitches Supported | 300 |
| Maximum Number of FortiAPs (Total / Tunnel Mode) | 4096 / 2048 |
| High Availability Configurations | Active-Active, Active-Passive, Clustering |
Dimensions and Power
| Height x Width x Length (inches) | 3.5 x 17.44 x 23.9 |
|---|---|
| Height x Width x Length (mm) | 88.9 x 443 x 607.1 |
| Weight (maximum) | 43.9 lbs (20 kg) |
| Form Factor (supports EIA/non-EIA standards) | Rack Mount, 2RU |
| AC Power Supply | 100–240VAC, 60/50 Hz |
| Power Consumption (Maximum / Average) | 520W / 865 W |
| Current (Maximum) | 12A@100V, 9A@240V |
| Heat Dissipation (Maximum) | 2955 BTU/h |
| Redundant Power Supplies (Hot Swappable) | Yes (dual PSU, 1+1 redundancy) |
| Power Supply Efficiency Rating | 80Plus Compliant |
Operating Environment and Certifications
| Operating Temperature | 32–104°F (0–40°C) |
|---|---|
| Storage Temperature | -31–158°F (-35–70°C) |
| Humidity | 5–90% non-condensing |
| Compliance | FCC Part 15 Class A, RCM, VCCI, CE, UL/cUL, CB |
| Certifications | USGv6/IPv6 |
Product details
| Brand | Fortinet |
|---|---|
| Part number | FG-3200F |
Interfaces and Modules
| Hardware Accelerated 400 GE QSFP-DD / 200 GE QSFP56 / 100 GE QSFP28 / 40 GE QSFP+ Ports | 4 |
|---|---|
| Hardware Accelerated 50 GE SFP56 / 25 GE SFP28 / 10 GE SFP+ Slots | 10 |
| Hardware Accelerated 25 GE SFP28 / 10 GE SFP+ / GE SFP ULL Slots | 4 |
| Hardware Accelerated 50 GE SFP56 / 25 GE SFP28 / 10 GE SFP+ HA1/HA2 Slots | 2 |
| 10GE / GE RJ45 Management Ports | 2 |
| USB 3.0 Ports | 1 |
| Console RJ45 Ports | 1 |
| Onboard Storage | 2x 1 TB SSD |
| Trusted Platform Module (TPM) | Yes |
| Included Transceivers | 2x SFP+ (SR 10 GE) |
System Performance — Enterprise Traffic Mix
| IPS Throughput | 63 Gbps |
|---|---|
| NGFW Throughput | 47 Gbps |
| Threat Protection Throughput | 45 Gbps |
System Performance and Capacity
| IPv4 Firewall Throughput (1518 / 512 / 64 byte, UDP packets) | 387/385/178.5 Gbps |
|---|---|
| IPv6 Firewall Throughput (1518 / 512 / 86 byte, UDP packets) | 387/385/178.5 Gbps |
| Firewall Latency (64 byte, UDP) | 3.42 μs |
| Firewall Throughput (Packet per Second) | 267.75 Mpps |
| Concurrent Sessions (TCP) | 70 Million |
| New Sessions/Sec (TCP) | 800,000 |
| Firewall Policies | 200,000 |
| IPsec VPN Throughput (512 byte) | 105 Gbps |
| Gateway-to-Gateway IPsec VPN Tunnels | 40,000 |
| Client-to-Gateway IPsec VPN Tunnels | 200,000 |
| SSL-VPN Throughput | 11 Gbps |
| Concurrent SSL-VPN Users (Recommended Maximum) | 30,000 |
| SSL Inspection Throughput | 29 Gbps |
| SSL Inspection CPS (IPS, avg. HTTPS) | 30,000 |
| SSL Inspection Concurrent Session (IPS, avg. HTTPS) | 7.4 Million |
| Application Control Throughput | 109 Gbps |
| CAPWAP Throughput (HTTP 64K) | 65 Gbps |
| Virtual Domains (Default / Maximum) | 10 / 500 |
| Maximum Number of FortiTokens | 20,000 |
| Maximum Number of Registered FortiClients | 20,000 |
| Maximum Number of FortiSwitches Supported | 300 |
| Maximum Number of FortiAPs (Total / Tunnel Mode) | 4096 / 2048 |
| High Availability Configurations | Active-Active, Active-Passive, Clustering |
Dimensions and Power
| Height x Width x Length (inches) | 3.5 x 17.44 x 23.9 |
|---|---|
| Height x Width x Length (mm) | 88.9 x 443 x 607.1 |
| Weight (maximum) | 43.9 lbs (20 kg) |
| Form Factor (supports EIA/non-EIA standards) | Rack Mount, 2RU |
| AC Power Supply | 100–240VAC, 60/50 Hz |
| Power Consumption (Maximum / Average) | 520W / 865 W |
| Current (Maximum) | 12A@100V, 9A@240V |
| Heat Dissipation (Maximum) | 2955 BTU/h |
| Redundant Power Supplies (Hot Swappable) | Yes (dual PSU, 1+1 redundancy) |
| Power Supply Efficiency Rating | 80Plus Compliant |
Operating Environment and Certifications
| Operating Temperature | 32–104°F (0–40°C) |
|---|---|
| Storage Temperature | -31–158°F (-35–70°C) |
| Humidity | 5–90% non-condensing |
| Compliance | FCC Part 15 Class A, RCM, VCCI, CE, UL/cUL, CB |
| Certifications | USGv6/IPv6 |
Product details
| Brand | Fortinet |
|---|---|
| Part number | FG-3200F |
Customer reviews
Built for B2B buying
From product selection to deployment, this is made for real projects.
Get the hardware, licences and supporting kit you need without chasing multiple suppliers. CLI Secure helps trade buyers confirm fit, stock, delivery and project pricing before checkout.
Why choose us
Procurement that feels fast, clear and trade-ready.
Every product page is designed to help you move from shortlist to checkout with fewer unknowns.
Common questions
Product and order FAQs
Can I request trade or bulk pricing?
Yes. For multi-unit, reseller or project orders, contact CLI Secure and our team can review the basket for trade pricing.
How quickly can this be delivered?
Available delivery options are shown at checkout. Many in-stock products support next-day or timed UK delivery.
Can you help confirm compatibility?
Yes. Share the existing setup, model numbers or project requirement and we can help confirm suitable hardware, licences or accessories.
Do you supply renewals and supporting accessories?
CLI Secure supplies hardware, renewals, licences and related accessories across networking, CCTV, VoIP and IT support categories.





