Fortinet FortiGate 91G Firewall

Fortinet FortiGate 91G for Secure Branch and Office Networks

The Fortinet FortiGate 91G is a compact next-generation firewall in the 90G series, designed for organisations that need secure internet access, branch connectivity, application control, VPN, SD-WAN and stronger traffic inspection in one desktop appliance. Its 120 GB local storage differentiates the 91G from the closely related 90G and can be useful where on-device logging and operational troubleshooting are part of the design. It can suit growing offices, distributed branches, education, healthcare, retail, professional services and other business environments when the actual traffic profile matches the appliance capacity. Buyers should confirm real internet bandwidth, encrypted traffic volume, required interfaces, VPN design, expected security services and whether FortiGuard subscriptions or FortiCare support are needed. Hardware-only and bundled options are not the same purchase, so the final bill of materials should be checked before ordering. FourTeck can assist with model sizing, license selection, compatibility review, configuration scope and quotation preparation for UAE projects. Availability can vary by bundle, quantity and vendor lead time. Contact FourTeck to confirm current Dubai and UAE options before placing the order.

SKU: FORTINET-FG91G-UAE Category:

Secure branch networking with local storage

Fortinet FortiGate 91G Firewall in Dubai, UAE

The FortiGate 91G is the storage-equipped member of Fortinet’s 90G series. It combines next-generation firewall functions, secure networking, SD-WAN capability, IPsec VPN, application-aware policy control and optional FortiGuard security services in a compact desktop platform. The 120 GB local storage is an important buying difference for organisations that want on-device log capacity in addition to their wider monitoring design.

Before you request a quotation

Confirm the required security bundle, internet bandwidth, inspected traffic, number of sites, VPN method, uplink media, local logging need and deployment scope. The appliance, FortiCare support and FortiGuard subscriptions can be ordered in different combinations.

ModelFortiGate 91G / FG-91G
Local storage120 GB on the 91G variant
Threat protectionUp to 2.2 Gbps
IPsec VPNUp to 25 Gbps
Buying noteLicenses and support depend on SKU

Direct answer for buyers

Fortinet FortiGate 91G is a desktop next-generation firewall in the 90G series, mainly used to secure business internet edges, branch networks, site-to-site connectivity and application traffic. It is particularly worth considering when the performance class of the 90G series fits the site and local storage is useful for logging or operational visibility. Before proceeding, a buyer should confirm the exact FG-91G hardware or bundle SKU, FortiGuard service level, FortiCare term, required ports and transceivers, real security-inspection workload, remote-access method, high-availability requirement and installation scope. Published performance figures are maximum test results and should not be treated as guaranteed application throughput in every production design.

What the FortiGate 91G does

At the network edge, the appliance evaluates traffic against firewall policy, routing decisions and enabled security controls. In a branch design, it can also participate in SD-WAN, maintain IPsec tunnels, segment internal networks and apply controls to business application traffic. This convergence matters when an IT team wants routing and security decisions to work from the same FortiOS platform rather than operating separate appliances for basic WAN steering and firewall policy.

The 91G also adds 120 GB of local storage. Storage does not replace a complete logging strategy, but it changes the operational profile compared with a model without onboard disk. Local logs can support troubleshooting, historical review and buffering workflows, depending on FortiOS configuration and the organisation’s wider use of FortiAnalyzer, cloud logging or another log destination.

Who should consider it

The product is relevant to medium-sized offices, distributed branches and growing sites where encrypted business traffic, multiple internet links, site VPNs or application inspection can exceed the comfort zone of smaller entry appliances. It can also make sense for organisations that prefer an appliance with local disk rather than relying only on external logging destinations.

A buyer should not choose the 91G simply because its raw firewall number looks high. Security profiles, SSL inspection, application mix, concurrent sessions, log volume, VPN topology and growth all affect practical sizing. FourTeck can help translate those requirements into a model and subscription recommendation before the commercial quote is finalised.

Business problems this firewall can help address

Uncontrolled internet edge

A router-only edge may provide connectivity without the visibility, inspection and application-aware policy that a business requires. FortiGate can combine firewall rules, routing and licensed security services at the perimeter. The selected subscription determines which inspection services are available.

Multiple ISP links

Sites with two or more WAN services often need more than simple failover. Secure SD-WAN can support path monitoring and policy-based traffic steering so business traffic can use available links according to the configured rules and service objectives.

Branch connectivity

IPsec VPN can connect offices, cloud environments or partner locations when routes, authentication and policies are designed correctly. Remote-access methods should be selected against the FortiOS release in use rather than assumed from older FortiGate deployments.

Flat internal networks

A firewall can enforce access between VLANs or network zones so users, servers, voice, guest access, cameras and management devices do not need unrestricted reachability. The value depends on good segmentation design, not simply installing the appliance.

Limited local visibility

The 120 GB disk on the 91G provides local storage that can be used for logging workflows. Retention depends on traffic, logging level and configuration, so buyers should estimate log requirements rather than assuming a fixed number of days.

Complex security procurement

FortiGate hardware can be purchased with different support and security service combinations. A structured bill of materials avoids the common mistake of approving the appliance while leaving required FortiGuard services, FortiCare term or implementation work unspecified.

Core capability band

Firewall processing

Up to 28 / 28 / 27.9 Gbps for 1518 / 512 / 64-byte UDP test traffic.

IPS inspection

Up to 4.5 Gbps using Fortinet’s enterprise-mix test methodology.

NGFW workload

Up to 2.5 Gbps with firewall, IPS and application control in the stated test mix.

Threat protection

Up to 2.2 Gbps with the tested protection stack and logging enabled.

Encrypted site connectivity

Up to 25 Gbps IPsec VPN throughput under Fortinet’s published test conditions.

FortiGate 91G fit matrix

RequirementSuitable whenConfirm before ordering
Branch or office perimeterThe site needs a compact NGFW with stronger inspection headroom than smaller entry models.Internet speed, encrypted traffic percentage, application mix and peak usage.
Local log storageOn-appliance disk is useful for local event retention, troubleshooting or log buffering.Retention target, log rate and whether FortiAnalyzer or cloud logging will also be used.
Dual or multi-link WANThe organisation wants SD-WAN policy, link monitoring and controlled failover.ISP handoff type, public addressing, routing requirements and link-speed expectations.
Site-to-site VPNBranches or hosted environments require encrypted IPsec connectivity.Number of tunnels, topology, routing, peer compatibility and crypto settings.
Security inspectionIPS, malware, application or web controls are part of the required policy.FortiGuard bundle, SSL inspection scope and expected inspected throughput.
High availabilityThe business cannot rely on a single security appliance for the site.Second appliance, licensing symmetry, cabling, HA design, power and failover testing.

Verified technical information

The figures below reflect Fortinet’s current 90G-series product matrix and model positioning. Performance values are stated as maximum laboratory results and can vary with configuration, FortiOS release, traffic pattern, packet size and enabled services. The 91G is the storage variant within this platform family.

BrandFortinet
ProductFortiGate 91G next-generation firewall
Part numberFG-91G for the hardware appliance; bundle SKUs differ by service and term
Product familyFortiGate 90G series
Form factorDesktop
Interfaces8 x GE RJ45 plus 2 x 10GE shared port pairs
Local storage120 GB on FortiGate 91G
Firewall throughputUp to 28 / 28 / 27.9 Gbps for 1518 / 512 / 64-byte UDP
IPsec VPN throughputUp to 25 Gbps, 512-byte test
IPS throughputUp to 4.5 Gbps, enterprise mix
NGFW throughputUp to 2.5 Gbps, enterprise mix
Threat protection throughputUp to 2.2 Gbps, enterprise mix
SSL inspection throughputUp to 2.6 Gbps using Fortinet’s published HTTPS test methodology
Application control throughputUp to 6.7 Gbps
Concurrent sessionsUp to 3 million
New sessions per secondUp to 124,000
Firewall policiesUp to 5,000
Gateway-to-gateway IPsec tunnelsUp to 200
Client-to-gateway IPsec tunnelsUp to 2,500
Maximum FortiAPsUp to 128 total / 64 tunnel mode
Maximum FortiSwitchesUp to 24
Virtual domains10 default / 10 maximum in the current matrix
SubscriptionsHardware-only and FortiGuard/FortiCare bundle options are available; exact entitlement depends on ordered SKU
AvailabilityContact FourTeck to confirm current UAE options, quantity and vendor lead time

Configuration, licensing and compatibility dependencies

A FortiGate quotation needs more detail than the appliance model. Fortinet offers security services individually and through service bundles. Current FortiGuard positioning includes Advanced Threat Protection, Unified Threat Protection and Enterprise Protection choices, with different service coverage. For example, UTP extends the core protection set with web and DNS security capabilities, while Enterprise Protection adds broader services such as data-loss-prevention and attack-surface functions. The exact bundle content can change with vendor policy, so the ordered SKU and entitlement should be checked at quotation time.

FortiCare support is another commercial decision. Do not assume a support term is included merely because a reseller description shows a bundle. Hardware-only FG-91G, one-year bundles, three-year bundles and longer terms are distinct commercial items. A procurement request should specify whether the business wants appliance only, a security bundle, support, renewal coverage or a combined package. Where an organisation has its own licensing standard, FourTeck can prepare the quote against that standard rather than selecting a bundle by price alone.

Remote access also deserves a version-specific check. Fortinet has changed SSL VPN behaviour in newer FortiOS releases, and 90G-series models have release-specific limitations for legacy SSL VPN modes. A new project should therefore define the required remote-access experience first and then confirm the supported approach for the planned FortiOS version. IPsec VPN, FortiClient-based options, zero-trust access and other methods should be evaluated according to the actual users, devices and applications that need access.

Compatibility must also cover transceivers, WAN handoff, switching, wireless, central management, logging and authentication. The two high-speed interface groups are shared-media pairs, so the bill of materials should identify whether copper or optical connectivity is required and which modules are needed. If FortiSwitch, FortiAP, FortiManager, FortiAnalyzer, FortiAuthenticator or FortiToken products are part of the design, confirm supported FortiOS versions and the intended management architecture before deployment.

A practical purchase and deployment journey

1

Profile the site

Document WAN speeds, users, servers, cloud services, VPNs, VLANs, guest access, voice, cameras, remote workers and expected growth. Real usage matters more than a simple user-count rule.

2

Select protection level

Decide which FortiGuard services are required, whether FortiCare Premium or another support level is preferred, and how long the subscription term should run.

3

Confirm interfaces

Map each ISP and LAN uplink to the available interface types. Identify copper, fibre, transceiver and link-speed requirements before the hardware order is approved.

4

Define implementation

Clarify whether FourTeck is providing only supply, initial setup, full migration, VPN configuration, SD-WAN work, segmentation, testing, documentation or post-cutover assistance.

5

Validate before cutover

Review routes, NAT, security policies, DNS, authentication, public services, VPN peers, failover behaviour and rollback options. Preserve a configuration backup and deployment record.

Local storage changes the operational conversation

The defining difference between FortiGate 90G and FortiGate 91G is the 120 GB local storage on the 91G. That storage can be operationally valuable where the firewall needs an on-device log disk. FortiGate appliances with SSD storage can use disk-based logging functions, and disk can also participate in log-buffering behaviour when an external FortiAnalyzer destination is temporarily unreachable. The practical benefit is not that local disk makes central logging unnecessary; rather, it gives the device another place to retain operational data within the logging architecture.

For troubleshooting, local records can shorten the path to understanding what happened around a policy change, WAN event, VPN problem or user complaint. For an IT team without a dedicated analyzer at every site, this can be useful. However, retention is never a single fixed number. High-volume traffic, detailed logging, security events and policy choices can consume disk at very different rates. A buyer should therefore decide what must be kept locally and what should be forwarded to a central or cloud platform.

The storage question is also a useful way to decide whether the 91G premium is justified compared with the 90G. If the organisation already forwards all required logs reliably to a central platform and does not need local disk functions, the 90G may deserve consideration. If local event history, buffering or on-device reporting is valuable, the 91G is the natural member of this family to evaluate. FourTeck can help frame that choice around operational need instead of treating storage as a decorative specification.

Security performance should be sized to inspected traffic

The raw firewall throughput of up to 28 Gbps is not the number most organisations should use for capacity planning when security inspection is enabled. Fortinet publishes different measurements because firewalling, IPS, application control, malware inspection and SSL inspection place different workloads on the platform. For the 90G-series performance class, IPS is listed at up to 4.5 Gbps, NGFW at up to 2.5 Gbps and threat protection at up to 2.2 Gbps. Those figures are more relevant when a site expects to run a full inspection stack across significant traffic.

A practical sizing exercise starts with the business traffic that must cross the firewall. Internet access may be one component, but site-to-site cloud connectivity, remote access, guest traffic, software updates, backups, video, voice, SaaS usage and large file transfers can all contribute to peak load. Encrypted traffic is especially important because TLS inspection can be resource intensive and may require certificate deployment, policy exceptions and application testing in addition to performance capacity.

Headroom matters. A firewall selected to operate at the edge of its expected inspected throughput leaves little margin for business growth, new security profiles or unexpected traffic. Conversely, purchasing a much larger model without a workload reason can add unnecessary cost. FourTeck can help buyers compare the 91G against nearby FortiGate options by looking at real inspection requirements rather than only the internet circuit headline.

Secure SD-WAN and VPN belong in the network design, not the feature list

FortiGate combines security and networking in FortiOS, which allows firewall policy and WAN decisions to be planned together. At a branch with two internet circuits, secure SD-WAN can monitor link conditions and steer traffic according to the configured rules. This can be useful for cloud applications, voice, business portals and site connectivity, but it does not automatically guarantee application performance. The quality of each carrier link, route design, performance thresholds and failover behaviour still need to be tested.

For site-to-site connectivity, the platform publishes up to 25 Gbps of IPsec VPN throughput under its test methodology. Real VPN design should consider the number of peers, encryption algorithms, routing model, failover, NAT traversal and the capacity of the remote peer as well as the local firewall. Where branches use dynamic internet addressing or multiple links, tunnel orchestration and monitoring become part of the operational plan.

Remote-user access requires extra care because Fortinet has changed the treatment of legacy SSL VPN modes in recent FortiOS releases. Buyers replacing an older FortiGate should not assume that an existing SSL VPN workflow will carry forward unchanged. The target FortiOS version, FortiClient approach, IPsec design, identity controls and application access method should be reviewed before migration. FourTeck can include that review in the configuration scope when remote access is a project requirement.

Business environments where the 91G may fit

Regional office

A branch with cloud applications, business VoIP, managed Wi-Fi, site VPN and two WAN links can use the 91G as a converged edge where capacity and licensing match the traffic profile.

Clinic or professional practice

Segmentation between staff, guest, medical or business systems can be enforced with policy. Application and web controls depend on the selected FortiGuard services.

Retail or hospitality branch

The firewall can separate guest access, point-of-sale or operational networks and corporate traffic while maintaining secure connectivity to central services.

Warehouse and logistics site

Local users, scanners, cameras, Wi-Fi, ERP access and remote support often require segmentation and controlled connectivity. The local disk can add value for site-level troubleshooting.

Education location

Different user groups and devices can be separated, while licensed web and application controls can help enforce acceptable-use policy when configured to the organisation’s requirements.

Distributed enterprise edge

Organisations standardising FortiGate across multiple sites can use the 91G where this performance class and local storage align with the branch template.

Integration and operational considerations

The firewall rarely operates alone. If the network already uses FortiSwitch and FortiAP, the FortiGate can be part of a broader Fortinet branch architecture, but the number of managed devices, topology and FortiOS compatibility should be checked before purchase. The current product matrix lists support for up to 24 FortiSwitches and up to 128 FortiAPs in total, with a lower tunnel-mode figure. Those limits are platform maxima, not recommendations for every site. A design with many access devices should still consider management, PoE, uplink bandwidth and fault domains.

Central management and logging can also change the bill of materials. FortiManager may be relevant for teams managing policies across multiple FortiGate devices, while FortiAnalyzer can provide centralised logging, analytics and reporting. Cloud-based options may also be available depending on the chosen services. Local 91G storage can complement this architecture, but it should not be confused with enterprise-scale central log retention.

Identity integration may involve directory services, FortiAuthenticator, FortiToken or other authentication systems. Remote access, administrator login and privileged changes deserve their own control plan. If the deployment has compliance obligations, the business should also decide which events need to be retained, who can access logs, how long records must be kept and whether central reporting is mandatory.

For migration from another firewall, a configuration should not be copied mechanically. Old objects, unused policies, permissive rules, legacy VPNs and obsolete public services can carry risk into the new platform. A controlled migration should identify the rules that are still needed, redesign where appropriate and include a rollback path. FourTeck can discuss migration scope through its network security services page.

Questions to resolve before ordering

How fast are the WAN links today, and what is the planned upgrade?

Sizing against a temporary circuit can leave the firewall undersized after an ISP upgrade.

How much traffic will receive security inspection?

Threat-protection and NGFW figures are more relevant than raw firewall throughput for fully inspected internet traffic.

Is local storage a requirement?

If not, compare the 91G with the related 90G before deciding.

Which FortiGuard services are required?

Web security, malware, IPS, data protection and broader controls vary by bundle and a-la-carte choice.

What remote-access experience is needed?

Confirm the supported VPN or access method for the target FortiOS version before migrating users.

Do you need one unit or an HA pair?

High availability affects hardware quantity, subscriptions, cabling, power, design and test scope.

Procurement checklist for FortiGate 91G

✓ Confirm FG-91G as the required hardware model.

✓ State the required quantity and destination.

✓ Record current and planned WAN bandwidth.

✓ Identify copper, fibre and transceiver needs.

✓ Choose hardware-only or the required FortiGuard bundle.

✓ Confirm FortiCare level and contract term.

✓ Define IPsec, remote access and branch VPN requirements.

✓ Decide whether local logging is a key reason for choosing 91G.

✓ Confirm FortiSwitch, FortiAP and management integration.

✓ Identify HA, redundant power and resilience expectations.

✓ Define installation, migration and configuration scope.

✓ Confirm current UAE availability and vendor lead time.

How FourTeck can assist

FourTeck can help turn a model request into a complete bill of materials. That may include the FG-91G appliance, the chosen FortiGuard bundle, FortiCare term, supported transceivers, related Fortinet components and an agreed configuration or migration scope. Buyers who are still comparing models can review the FourTeck firewall product range or the broader Fortinet firewall guidance.

Quotation preparation is easier when the request includes bandwidth, user count, key applications, existing firewall model, site count, remote-access needs, security service preference and expected timeline. This information helps avoid an appliance-only quote when the business actually needs licensing, support and implementation.

UAE availability and support guidance

Contact FourTeck to confirm current UAE availability. Supply can depend on the exact appliance or bundle SKU, contract term, quantity, vendor lead time and regional entitlement. Delivery and project coordination can be discussed after the configuration is confirmed. Installation and configuration should be written into the quotation when required rather than assumed to be part of hardware supply.

For commercial and technical enquiries, use the FourTeck contact page. No stock, warranty period or fixed delivery date is implied until it is confirmed for the requested SKU and project.

Dubai, Abu Dhabi, Sharjah and Ajman coverage

FourTeck can coordinate FortiGate 91G enquiries for businesses in Dubai, Abu Dhabi, Sharjah and Ajman through one UAE buying process. The discussion can cover model sizing, security subscription options, support terms, transceiver requirements, delivery planning and the scope of any installation or configuration work. The exact service approach depends on the site, network complexity and agreed project requirement. For multi-site organisations, it is useful to provide a location list and identify whether each branch has the same design or different bandwidth, users and applications. That allows quotation and deployment planning to be handled consistently without assuming every site requires the same appliance or service bundle.

GCC Availability

FortiGate 91G requirements can also form part of wider GCC procurement projects. Organisations operating across the United Arab Emirates, Saudi Arabia, Kuwait, Qatar, Bahrain or Oman may want to standardise branch firewall models, subscription terms and configuration patterns while still allowing for differences in ISP services and local site conditions. FourTeck can assist with requirement review, model or license selection, quotation coordination, delivery planning, configuration scope, installation planning and renewal guidance where appropriate. A buyer should share the destination country, exact product or bundle required, quantity, FortiGuard and FortiCare term, deployment location and expected timeline.

Availability, licensing, delivery schedules, service visits and vendor lead times can vary by country, model, quantity and project. No local inventory, customs outcome or fixed installation date should be assumed without confirmation. For Kuwait and regional coordination, buyers can also review FourTeck Kuwait as a regional contact route.

Africa Availability

For Africa-focused projects, FourTeck can help organisations evaluate the FortiGate 91G as part of a wider branch security and procurement plan. The discussion may cover hardware, licenses, subscriptions, local-storage requirements, transceivers, VPN design, installation scope, support needs and renewal planning. The destination matters because product fulfilment can depend on model, quantity, license region, power requirements, shipping arrangements, vendor lead time and local project conditions. Businesses coordinating projects from the UAE should provide the destination country, exact requirement, quantity, preferred deployment schedule and any support expectations before requesting a final quote.

FourTeck does not assume local inventory, immediate shipment, customs outcomes or country-wide onsite coverage. Where appropriate, regional planning can be discussed through FourTeck Africa. The objective is to confirm the practical supply and support path for the actual destination rather than applying a generic UAE assumption to an international project.

Related products and services to evaluate

FortiGate 90G

Closest family comparison when the 90G-series performance class is suitable but onboard 120 GB storage is not required.

FortiGate 120G

A higher model to consider when inspected traffic, interface requirements or growth justify more headroom. Compare using the real workload.

FortiSwitch

Relevant for a Fortinet-managed branch LAN where switching integration and central policy are part of the architecture. Compatibility is model dependent.

FortiAP

Wireless access points may be managed as part of a Fortinet branch design. Select the AP model based on radio, density, cabling and PoE requirements.

FortiManager and FortiAnalyzer

Useful to evaluate for multi-device policy management, centralised logging, reporting and operational visibility across sites.

Migration and configuration services

FourTeck can discuss implementation, policy migration, VPN setup, SD-WAN design and testing as separately defined project scope.

Why businesses contact FourTeck for this product

The value of a supplier conversation is often in the questions it resolves before the purchase order is issued. FourTeck can help clarify whether the 91G is the right performance class, whether local storage is useful, which FortiGuard bundle matches the required controls, which support term should be quoted and whether transceivers or related Fortinet components are needed. This avoids treating the firewall as a standalone box when the business requirement actually includes subscriptions, integration and implementation.

FourTeck can also help define migration boundaries: what the customer will prepare, what information is required, which tasks are part of the configuration scope and what must be tested before handover. Organisations can learn more about the company through FourTeck UAE or start from the Firewall Dubai portal.

What informed buyers usually want to know before choosing the 91G

The 90G versus 91G decision is mainly about storage.

Both sit in the same FortiGate 90G family and share the same published performance class. The 91G adds 120 GB of local storage. That matters when local logs, troubleshooting history or disk buffering are useful. If a site already has a dependable central logging design and does not need on-device disk, the non-storage 90G deserves comparison rather than automatically paying for a feature the organisation will not use.

The 28 Gbps figure is not a full-security sizing number.

Buyers frequently see the raw firewall headline first. A more useful question is how much traffic will run through IPS, application control, malware inspection and TLS inspection. Fortinet’s published 2.2 Gbps threat-protection and 2.5 Gbps NGFW figures better describe a heavily inspected enterprise mix. A site with a multi-gigabit internet circuit should therefore estimate what portion of traffic will actually receive those controls.

Licensing changes what the firewall can inspect.

The appliance can route and enforce firewall policy, but advanced security services are tied to the selected FortiGuard entitlement. Current Fortinet bundles differ in web security, malware protection, data-loss-prevention, attack-surface functions and other services. A low hardware quote and a complete security quote are not directly comparable unless the service term and bundle are the same.

Remote-access planning has changed.

Organisations replacing older FortiGate appliances often ask whether their existing SSL VPN configuration can be copied. Newer FortiOS releases changed the availability of legacy SSL VPN modes, and 90G-series models have release-specific limits. The safer approach is to define who needs remote access, which applications they need and which endpoint types are involved, then select a supported method for the target software release.

Another common buying question is whether the 91G is intended for a specific number of users. User-count estimates can be convenient for initial shortlisting, but they are not a reliable sizing method by themselves. Fifty users running mostly email and lightweight SaaS create a very different load from fifty designers moving large files, a call centre using cloud voice, or a site with continuous backups and SSL inspection. The correct model depends on traffic rate, session behaviour, enabled security services and growth, not simply the number of employee accounts.

Buyers also look for clarity on the ports. The current Fortinet matrix identifies eight Gigabit Ethernet RJ45 ports and two 10GE shared port pairs for the 90G platform. Shared media means the high-speed interface design provides media choices rather than four independent high-speed paths that can all be used simultaneously. The exact WAN handoff should therefore be mapped before ordering optics or cabling. If the ISP provides 10G fibre, confirm the transceiver; if it provides multi-gigabit copper, confirm the copper path and negotiated speed.

Local logging is another area where expectations should be realistic. The 120 GB SSD is useful, but retention depends on the amount and type of logging. A branch producing high event volume and logging every accepted session will consume space faster than a lightly used office. If the business has audit requirements, central log retention is usually a separate design decision. The local disk can complement that design rather than substitute for a formal retention plan.

For high availability, buying two appliances is only the first step. The design should include matching software and licensing expectations, HA interfaces, redundant network paths, power planning and a failover test that reflects real traffic. If a single ISP, switch, power feed or unmanaged handoff remains a single point of failure, an HA firewall pair alone does not make the whole branch resilient.

The most useful quotation request therefore contains both commercial and technical details: FG-91G or the desired bundle, quantity, term length, support preference, WAN speeds, uplink media, key security profiles, VPN needs, central management tools, high-availability expectations and deployment services. That gives FourTeck enough information to prepare a quote that can be compared fairly against another proposal and reduces the chance of discovering missing subscriptions or accessories after approval.

Buyer questions that affect the final design

Do I need the 91G if I already use FortiAnalyzer?

Not necessarily. FortiAnalyzer can handle central logging and analysis, while the 91G’s local disk adds on-device storage. Some organisations value both for local troubleshooting or buffering; others may prefer the 90G if local disk is not important. The choice should follow the logging architecture rather than a generic recommendation.

Can I size it from my ISP speed alone?

ISP speed is only one input. You also need to estimate inspected traffic, inter-VLAN flows that cross the firewall, VPN traffic, application behaviour and peak sessions. A 1 Gbps circuit with aggressive TLS inspection can be a tougher workload than a faster link carrying largely uninspected traffic.

Should I order hardware-only first and add services later?

That can be done in some commercial paths, but it may complicate budgeting and security readiness. If web filtering, IPS, malware inspection or other FortiGuard functions are required from day one, include the correct subscription in the initial bill of materials. Confirm the term and start date before purchase.

What should be tested during installation?

At minimum, test internet access, DNS, business applications, inbound published services, site VPNs, remote access, failover, segmentation rules, logging and administrator access. A migration should also verify that no unnecessary legacy rule has been carried forward simply because it existed on the old firewall.

When should I compare a larger FortiGate?

Compare a larger model when inspected traffic approaches the practical headroom of the 91G, when faster or more numerous interfaces are needed, when session scale is materially higher, or when the branch template is expected to grow. The step-up should be justified by workload and resilience requirements, not by model number alone.

What information gives me the most accurate quote?

Provide the exact model, quantity, desired FortiGuard bundle, FortiCare term, delivery destination, WAN handoff, transceivers, high-availability requirement and whether configuration or migration is required. For a renewal-style bundle comparison, include the service term and intended protection level so proposals are like-for-like.

These questions are useful because a firewall purchase sits between procurement and network design. The technical team may focus on ports and performance, while procurement focuses on SKU, term, quantity and price. A complete request connects both sides. FourTeck can help prepare that combined requirement and can discuss sizing, configuration and quotation through the same contact route.

Frequently asked questions

What is the difference between FortiGate 90G and FortiGate 91G?

The FortiGate 91G is the storage-equipped variant in the 90G series and includes 120 GB of local storage. The two models share the same published performance class. Choose the 91G when on-device disk is useful for logging or operational workflows, and compare the 90G when local storage is not required.

What are the main FortiGate 91G performance figures?

Fortinet’s current matrix lists up to 28 / 28 / 27.9 Gbps firewall throughput, 4.5 Gbps IPS, 2.5 Gbps NGFW, 2.2 Gbps threat protection, 2.6 Gbps SSL inspection and 25 Gbps IPsec VPN throughput. These are maximum test values and real performance varies with configuration and traffic.

Which network ports are available on the FortiGate 91G?

The current product matrix identifies eight GE RJ45 ports and two 10GE shared port pairs. Because the high-speed interfaces use shared media, confirm whether the deployment needs copper or optical connectivity and identify required transceivers before ordering.

Does the FortiGate 91G include FortiGuard services?

Not every FG-91G purchase includes the same services. Hardware-only and bundled SKUs are different. Confirm whether the quote includes Advanced Threat Protection, Unified Threat Protection, Enterprise Protection, FortiCare support or another service combination and verify the term.

Can the FortiGate 91G be used for site-to-site VPN?

Yes. The platform supports IPsec VPN and Fortinet publishes up to 25 Gbps IPsec throughput under its test conditions. Real design depends on peer capability, encryption settings, routing, tunnel count, failover and traffic profile.

What should I know about SSL VPN on the 91G?

Fortinet has changed legacy SSL VPN support in newer FortiOS releases, including release-specific limitations for 90G-series models. Do not assume an older SSL VPN design can be migrated unchanged. Confirm the target FortiOS release and select a supported remote-access method for the users and applications involved.

Is the 120 GB SSD enough for all logging requirements?

It can be useful for local logging, but retention depends on event volume, policy logging and traffic. Organisations with audit, long-retention or multi-site reporting requirements should separately evaluate central or cloud logging rather than relying only on the local disk.

Can FourTeck help with installation and migration?

FourTeck can discuss installation, initial configuration, policy migration, VPN, segmentation, SD-WAN and testing as defined project scope. The work included should be stated in the quotation because hardware supply does not automatically include every implementation activity.

How do I request current UAE availability and a quote?

Share the FG-91G requirement, quantity, preferred FortiGuard and FortiCare term, delivery destination, interface needs and any configuration or migration scope with FourTeck. Availability and lead time are confirmed against the exact requested SKU and quantity.

Build the FortiGate 91G quote around the real network

Send FourTeck the required quantity, WAN bandwidth, security service preference, support term, uplink media, VPN needs and installation scope. The team can help confirm whether the 91G is the right storage variant, align the bill of materials with the project and check current UAE availability before ordering.

Reviews

There are no reviews yet.

Be the first to review “Fortinet FortiGate 91G Firewall”

Your email address will not be published. Required fields are marked *

Scroll to Top
Powered by Joinchat