Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
jigrykora
New Contributor

i want to replace fortigate

We are currently running a Meraki MX84 in a university library.

There are about 50 APs behind it and around 150–1000 wireless clients depending on time.

MX84 seems a bit undersized for peak hours.

We’re thinking about moving to a FortiGate F-series, but budget is tight.

What model would make sense in this kind of environment?

Any real-world experience would be appreciated-

10.0.0.0.1 192.168.1.254
1 REPLY 1
Toshi_Esumi
SuperUser
SuperUser

This would be my thought process:
1. MX84's spec is below:
Stateful Firewall Throughput:       500 Mbps
Maximum VPN Throughput:         250 Mbps
Advanced Security Throughput: 320 Mbps
Recommended Device Count:     200
(https://documentation.meraki.com/SASE_and_SD-WAN/MX/Product_Information/Overviews_and_Datasheets/MX8...)
and, any of FGT models would clear these numbers. 
Also I guess 50 APs (likely Meraki MRs) would have like 5 x 50 = 250 clients at a time. 
2. but if NGFW features need to be utilized, like IPS, I would definitely avoid 2GB RAM models. So it has to be 70F/G series or above. 
3. the 70G has been released last Feb so the software might not be mature yet (merged into GA). on the other had, the 90G was release in summer 2023. The software must be mature by now.
4. Depnding on the price difference from 100F, it might be a better option.
5. But if it has be to in HA, 90G doesn't offer the -HA SKU while 100F offers "FG-100F-HA" so that we don't have to pay double for UTP/UTM license and every time we need to renew. hmmm..  

and so on.


Toshi

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors