Fortinet
FG-3701FFortinet FortiGate 3701F
List PriceThe FortiGate 3700F series delivers high-performance next-generation firewall (NGFW) capabilities for large enterprises and service providers. Multiple high-speed interfaces, high port density and high throughput make it suited to the enterprise edge, the hybrid data-centre core, and internal network segmentation, backed by industry-leading IPS, SSL inspection and advanced threat protection.
Fortinet's SPU NP6 network processor works inline with FortiOS functions to accelerate traffic processing, while the ninth-generation SPU CP9 content processor works outside the direct flow of traffic to accelerate content inspection.
A dedicated cryptographic module hardens the appliance itself, generating, storing and authenticating cryptographic keys in hardware to protect against malicious software and phishing attacks. The FG-3701F additionally carries 2x 2TB onboard SSD storage.
Key features
- SPU NP7 network processor and CP9 content processor hardware acceleration
- 4x 400GE QSFP-DD/200GE QSFP56/100GE QSFP28 ports and 18x 50GE SFP56/25GE SFP28/10GE SFP+ ports
- 2x 2TB onboard SSD storage
- Trusted Platform Module (TPM) built in
- Two AC power supplies, hot-swappable
- Up to 500 virtual domains (VDOMs)
- Supports up to 300 FortiSwitches and 4,096 FortiAPs
Works with
Frequently asked questions
Hardware-only or a bundle?
The hardware-only SKU (FG-3701F) is the appliance alone. The bundle SKUs add 1, 3 or 5 years of FortiCare Premium support plus either FortiGuard Unified Threat Protection (UTP) or Enterprise Protection, which most deployments need for ongoing IPS, antivirus and web/URL filtering updates.
3701F vs 3700F — what's different?
The FG-3701F adds 2x 2TB onboard SSD storage that the base FG-3700F does not have. The 3701F weighs 48.7 lbs (22.1 kg) and draws 600 W / 1150 W (average/maximum); the 3700F weighs 47.1 lbs (21.4 kg) and draws 590 W / 1140 W. IPS, NGFW and Threat Protection throughput are the same across both models.
How do I size the right model?
Check the enterprise-mix throughput figures (86 Gbps IPS, 80 Gbps NGFW, 75 Gbps Threat Protection) against expected inspected traffic, and the capacity figures — 140 million concurrent TCP sessions and 200,000 firewall policies — against session counts and policy complexity.
Sizing a FortiGate deployment? Call 0333 242 1314 or email sales@clisecure.com.
Interfaces and Modules
| Hardware Accelerated 400GE QSFP-DD/ 200GE QSFP56/ 100GE QSFP28/ 40GE QSFP+ Ports | 4 |
|---|---|
| Hardware Accelerated 50 GE SFP56/ 25 GE SFP28/ 10 GE SFP+ Ports | 18 |
| Hardware Accelerated 25 GE SFP28/ 10 GE SFP+/ GE SFP ULL Ports | 4 |
| Hardware Accelerated 50 GE SFP56/ 25 GE SFP28/ 10 GE SFP+ HA1/HA2 Ports | 2 |
| 10GE/ GE RJ45 Management Ports | 2 |
| USB Ports (Client / Server) | 1 / 1 |
| Console Port | 1 |
| Onboard Storage | 2x 2TB SSD |
| Trusted Platform Module (TPM) | Yes |
| Included Transceivers | 2x SFP+ (SR 10 GE) |
System Performance — Enterprise Traffic Mix
| IPS Throughput | 86 Gbps |
|---|---|
| NGFW Throughput | 80 Gbps |
| Threat Protection Throughput | 75 Gbps |
System Performance and Capacity
| IPv4 Firewall Throughput (1518 / 512 / 64 byte, UDP) | 589 / 589 / 420 Gbps |
|---|---|
| IPv6 Firewall Throughput (1518 / 512 / 64 byte, UDP) | 589 / 589 / 420 Gbps |
| Firewall Latency (64 byte, UDP) | 3.56 μs / 1.45 μs |
| Firewall Throughput (Packet per Second) | 630 Mpps |
| Concurrent Sessions (TCP) | 140 Million |
| New Sessions/Second (TCP) | 930,000 |
| Firewall Policies | 200,000 |
| IPsec VPN Throughput (512 byte) | 160 Gbps |
| Gateway-to-Gateway IPsec VPN Tunnels | 40,000 |
| Client-to-Gateway IPsec VPN Tunnels | 200,000 |
| SSL-VPN Throughput | 16 Gbps |
| Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode) | 30,000 |
| SSL Inspection Throughput (IPS, avg. HTTPS) | 55 Gbps |
| SSL Inspection CPS (IPS, avg. HTTPS) | 57,000 |
| SSL Inspection Concurrent Session (IPS, avg. HTTPS) | 15 Million |
| Application Control Throughput (HTTP 64K) | 190 Gbps |
| CAPWAP Throughput (HTTP 64K) | 65 Gbps |
| Virtual Domains (Default / Maximum) | 10 / 500 |
| Maximum Number of FortiSwitches Supported | 300 |
| Maximum Number of FortiAPs (Total / Tunnel) | 4,096 / 2,048 |
| Maximum Number of FortiTokens | 20,000 |
| High Availability Configurations | Active-Active, Active-Passive, Clustering |
Dimensions and Power
| Height x Width x Length (inches) | 3.5 x 17.44 x 23.9 |
|---|---|
| Height x Width x Length (mm) | 88.9 x 443 x 607.1 |
| Weight | 48.7 lbs (22.1 kg) |
| Form Factor | Rack Mount, 2 RU |
| AC Power Supply | 100–240 VAC, 60/50 Hz |
| Power Consumption (Average / Maximum) | 600 W / 1150 W |
| AC Current (Maximum) | 12A@100V, 9A@240V |
| Heat Dissipation | 3921 BTU/h |
| Redundant Power Supplies (Hot Swappable) | Yes, Hot Swappable |
Operating Environment and Certifications
| Operating Temperature | 32–104°F (0–40°C) |
|---|---|
| Storage Temperature | -31–158°F (-35–70°C) |
| Humidity | 5% to 90% non-condensing |
| Noise Level | 70.4 dBA |
| Operating Altitude | Up to 10,000 ft (3048 m) |
| Compliance | FCC Part 15 Class A, RCM, VCCI, CE, UL/cUL, CB |
| Certifications | ICSA Labs Firewall, IPsec, IPS, Antivirus, SSL-VPN, USGv6/IPv6 |
Product details
| Brand | Fortinet |
|---|---|
| Part number | FG-3701F |
Interfaces and Modules
| Hardware Accelerated 400GE QSFP-DD/ 200GE QSFP56/ 100GE QSFP28/ 40GE QSFP+ Ports | 4 |
|---|---|
| Hardware Accelerated 50 GE SFP56/ 25 GE SFP28/ 10 GE SFP+ Ports | 18 |
| Hardware Accelerated 25 GE SFP28/ 10 GE SFP+/ GE SFP ULL Ports | 4 |
| Hardware Accelerated 50 GE SFP56/ 25 GE SFP28/ 10 GE SFP+ HA1/HA2 Ports | 2 |
| 10GE/ GE RJ45 Management Ports | 2 |
| USB Ports (Client / Server) | 1 / 1 |
| Console Port | 1 |
| Onboard Storage | 2x 2TB SSD |
| Trusted Platform Module (TPM) | Yes |
| Included Transceivers | 2x SFP+ (SR 10 GE) |
System Performance — Enterprise Traffic Mix
| IPS Throughput | 86 Gbps |
|---|---|
| NGFW Throughput | 80 Gbps |
| Threat Protection Throughput | 75 Gbps |
System Performance and Capacity
| IPv4 Firewall Throughput (1518 / 512 / 64 byte, UDP) | 589 / 589 / 420 Gbps |
|---|---|
| IPv6 Firewall Throughput (1518 / 512 / 64 byte, UDP) | 589 / 589 / 420 Gbps |
| Firewall Latency (64 byte, UDP) | 3.56 μs / 1.45 μs |
| Firewall Throughput (Packet per Second) | 630 Mpps |
| Concurrent Sessions (TCP) | 140 Million |
| New Sessions/Second (TCP) | 930,000 |
| Firewall Policies | 200,000 |
| IPsec VPN Throughput (512 byte) | 160 Gbps |
| Gateway-to-Gateway IPsec VPN Tunnels | 40,000 |
| Client-to-Gateway IPsec VPN Tunnels | 200,000 |
| SSL-VPN Throughput | 16 Gbps |
| Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode) | 30,000 |
| SSL Inspection Throughput (IPS, avg. HTTPS) | 55 Gbps |
| SSL Inspection CPS (IPS, avg. HTTPS) | 57,000 |
| SSL Inspection Concurrent Session (IPS, avg. HTTPS) | 15 Million |
| Application Control Throughput (HTTP 64K) | 190 Gbps |
| CAPWAP Throughput (HTTP 64K) | 65 Gbps |
| Virtual Domains (Default / Maximum) | 10 / 500 |
| Maximum Number of FortiSwitches Supported | 300 |
| Maximum Number of FortiAPs (Total / Tunnel) | 4,096 / 2,048 |
| Maximum Number of FortiTokens | 20,000 |
| High Availability Configurations | Active-Active, Active-Passive, Clustering |
Dimensions and Power
| Height x Width x Length (inches) | 3.5 x 17.44 x 23.9 |
|---|---|
| Height x Width x Length (mm) | 88.9 x 443 x 607.1 |
| Weight | 48.7 lbs (22.1 kg) |
| Form Factor | Rack Mount, 2 RU |
| AC Power Supply | 100–240 VAC, 60/50 Hz |
| Power Consumption (Average / Maximum) | 600 W / 1150 W |
| AC Current (Maximum) | 12A@100V, 9A@240V |
| Heat Dissipation | 3921 BTU/h |
| Redundant Power Supplies (Hot Swappable) | Yes, Hot Swappable |
Operating Environment and Certifications
| Operating Temperature | 32–104°F (0–40°C) |
|---|---|
| Storage Temperature | -31–158°F (-35–70°C) |
| Humidity | 5% to 90% non-condensing |
| Noise Level | 70.4 dBA |
| Operating Altitude | Up to 10,000 ft (3048 m) |
| Compliance | FCC Part 15 Class A, RCM, VCCI, CE, UL/cUL, CB |
| Certifications | ICSA Labs Firewall, IPsec, IPS, Antivirus, SSL-VPN, USGv6/IPv6 |
Product details
| Brand | Fortinet |
|---|---|
| Part number | FG-3701F |
Customer reviews
Built for B2B buying
From product selection to deployment, this is made for real projects.
Get the hardware, licences and supporting kit you need without chasing multiple suppliers. CLI Secure helps trade buyers confirm fit, stock, delivery and project pricing before checkout.
Why choose us
Procurement that feels fast, clear and trade-ready.
Every product page is designed to help you move from shortlist to checkout with fewer unknowns.
Common questions
Product and order FAQs
Can I request trade or bulk pricing?
Yes. For multi-unit, reseller or project orders, contact CLI Secure and our team can review the basket for trade pricing.
How quickly can this be delivered?
Available delivery options are shown at checkout. Many in-stock products support next-day or timed UK delivery.
Can you help confirm compatibility?
Yes. Share the existing setup, model numbers or project requirement and we can help confirm suitable hardware, licences or accessories.
Do you supply renewals and supporting accessories?
CLI Secure supplies hardware, renewals, licences and related accessories across networking, CCTV, VoIP and IT support categories.





