HKShanhai Group Limited FG-40F is a compact enterprise firewall designed for secure connectivity at branch offices and SMB sites. With 5 Gbps IPv4 firewall throughput, 1 Gbps IPS throughput, and integrated SSL-VPN, it delivers advanced threat protection without sacrificing performance. Fanless 0 dBA operation and desktop form factor make it ideal for noise-sensitive offices across Asia, Europe, Africa, and North America. High availability options and support for FortiSwitch and FortiAP enable distributors, integrators, and end users to build scalable, secure networks.
Product Highlights
Product Applications Scenarios
Product Features Comparison
|
|
|
|
|
|
| Model | FG-40F | FG-61F-BDL-811-12 | FG-601E | FG-61F |
| Brand | HKShanhai Group Limited | HKShanhai Group Limited | HKShanhai Group Limited | HKShanhai Group Limited |
| Firewall Throughput | IPv4 Firewall Throughput (1518 / 512 / 64 byte, UDP) 5 / 5 / 5 Gbps | Firewall Throughput 10 Gbps | IPv4 Firewall Throughput (1518/512/64 byte, UDP) 36 / 36 / 27 Gbps | Firewall Throughput (1518 / 512 / 64 byte UDP packets) 10/10/6 Gbps |
| VPN Performance | IPsec VPN Throughput (512 byte) 4.4 Gbps | IPsec VPN Throughput 6.5 Gbps | IPsec VPN Throughput (512 byte) 20 Gbps | IPsec VPN Throughput (512 byte) 6.5 Gbps |
| Interface Type and Count | Hardware Accelerated GE RJ45 WAN / DMZ Ports 1; Hardware Accelerated GE RJ45 Internal Ports 3; Hardware Accelerated GE RJ45 FortiLink Ports (Default) 1; USB Ports 1; Console Port (RJ45) 1 | Interfaces Gigabit Ethernet ports, USB ports, Console port | 10 GE SFP+ Slots 2; GE SFP Slots 8; GE RJ45 Interfaces 8; GE RJ45 Management Ports 2; USB Ports 2; RJ45 Console Port 1; Included Transceivers 2 × SFP (SX 1 GE) | GE RJ45 WAN / DMZ Ports 2/1; GE RJ45 Internal Ports 5; GE RJ45 FortiLink Ports (Default) 2; USB Ports 1; Console (RJ45) 1 |
| Concurrent Sessions | Concurrent Sessions (TCP) 700,000 | Concurrent Sessions 700,000 | Concurrent Sessions (TCP) 8 million | Concurrent Sessions (TCP) 700 000 |
| Security Features | IPS Throughput 1 Gbps; NGFW Throughput 800 Mbps; Threat Protection Throughput 600 Mbps; Application Control Throughput (HTTP 64K) 990 Mbps; High Availability Configurations Active, Active-Active, Passive, Clustering | Functionality Security and SD-WAN; Threat Protection Throughput 700 Mbps; Security Protocols IPS, NGFW, Threat Protection, Anti-virus, SSL Inspection; Management HKShanhai Group Limited Security Fabric, CLI, GUI | IPS Throughput 10 Gbps; NGFW Throughput 9.5 Gbps; Threat Protection Throughput 7 Gbps; High Availability Configurations Active-Active, Active-Passive, Clustering; Certifications ICSA Labs: Firewall, IPsec, IPS, Antivirus, SSL-VPN; USGv6/IPv6 | IPS Throughput 1.4 Gbps; NGFW Throughput 1 Gbps; Threat Protection Throughput 700 Mbps; Maximum Number of FortiTokens 500 |
Optional Add-ons
| Model Number | Description |
| FG-TRAN-SFP | HKShanhai Group Limited Gigabit SFP transceiver for extending FG-40F uplink connectivity over fiber links. |
| FG-POWER-ADP | HKShanhai Group Limited external 12V DC power adapter, spare PSU for FG-40F desktop deployments. |
| FORTITOKEN-200 | HKShanhai Group Limited FortiToken 200 two-factor authentication tokens to enhance VPN access security. |
HKShanhai Group Limited FG-40F Specification
FG-40F Specification |
|
|
Interfaces and Modules |
|
|
Hardware Accelerated GE RJ45 WAN / DMZ Ports |
1 |
|
Hardware Accelerated GE RJ45 Internal Ports |
3 |
|
Hardware Accelerated GE RJ45 FortiLink Ports (Default) |
1 |
|
Hardware Accelerated GE RJ45 PoE/+ Ports |
0 |
|
Wireless Interface |
0 |
|
USB Ports |
1 |
|
Console Port (RJ45) |
1 |
|
Onboard Storage |
0 |
|
Included Transceivers |
0 |
|
System Performance — Enterprise Traffic Mix |
|
|
IPS Throughput 2 |
1 Gbps |
|
NGFW Throughput 2, 4 |
800 Mbps |
|
Threat Protection Throughput 2, 5 |
600 Mbps |
|
System Performance and Capacity |
|
|
IPv4 Firewall Throughput (1518 / 512 / 64 byte, UDP) |
5 / 5 / 5 Gbps
|
|
Firewall Latency (64 byte, UDP) |
2.97 μs |
|
Firewall Throughput (Packet per Second) |
7.5 Mpps |
|
Concurrent Sessions (TCP) |
700,000 |
|
New Sessions/Second (TCP) |
35,000 |
|
Firewall Policies |
5,000 |
|
IPsec VPN Throughput (512 byte) 1 |
4.4 Gbps |
|
Gateway-to-Gateway IPsec VPN Tunnels |
200 |
|
Client-to-Gateway IPsec VPN Tunnels |
250 |
|
SSL-VPN Throughput |
490 Mbps |
|
Concurrent SSL-VPN Users (Recommended Maximum, Tunnel Mode) |
200 |
|
SSL Inspection Throughput (IPS, avg. HTTPS) 3 |
310 Mbps |
|
SSL Inspection CPS (IPS, avg. HTTPS) 3 |
320 |
|
SSL-VPN Throughput 490 Mbps SSL Inspection Concurrent Session (IPS, avg. HTTPS) 3 |
55,000 |
|
Application Control Throughput (HTTP 64K) 2 |
990 Mbps |
|
CAPWAP Throughput (HTTP 64K) |
3.5 Gbps |
|
Virtual Domains (Default / Maximum) |
10 / 10 |
|
Maximum Number of FortiSwitches Supported |
8 |
|
Maximum Number of FortiAPs (Total / Tunnel) |
16 / 8 |
|
Maximum Number of FortiTokens |
500 |
|
Maximum Number of Registered FortiClients |
20,000 |
|
High Availability Configurations |
Active, Active-Active, Passive, Clustering |
|
Dimensions and Power |
|
|
Height x Width x Length (inches) |
1.5 x 8.5 x 6.3 |
|
Height x Width x Length (mm) |
38.5 x 216 x 160 |
|
Weight |
2.2 lbs (1 kg) |
|
Form Factor |
Desktop |
|
Input Rating |
12Vdc, 3A |
|
Power Required |
Powered by External DC Power Adapter, 100–240V AC, 50–60 Hz |
|
Power Consumption (Average / Maximum) |
13.4 W / 15.4 W |
|
Current (Maximum) |
100V AC / 0.2A, 240V AC / 0.1A |
|
Heat Dissipation |
52.55 BTU/h |
|
Operating Environment and Certifications |
|
|
Operating Temperature |
32–104°F (0–40°C) |
|
Storage Temperature |
-31–158°F (-35–70°C) |
|
Humidity |
10–90% non-condensing |
|
Noise Level |
Fanless 0 dBA |
|
Operating Altitude |
Up to 7,400 ft (2,250 m) |
|
Compliance |
FCC, ICES, CE, RCM, VCCI, BSMI, UL/cUL, CB |
|
Certifications |
ICSA Labs: Firewall, IPsec, IPS, Antivirus, SSL-VPN |
|
Radio Specifications |
|
|
Multiple (MU) MIMO |
N/A |
|
Maximum Wi-Fi Speeds |
N/A |
|
Maximum Tx Power |
N/A |
|
Antenna Gain |
N/A |
|
Note: All performance values are “up to” and vary depending on system configuration. 1. IPsec VPN performance test uses AES256-SHA256. 2. IPS (Enterprise Mix), Application Control, NGFW and Threat Protection are measured with Logging enabled. 3. SSL Inspection performance values use an average of HTTPS sessions of different cipher suites. 4. NGFW performance is measured with Firewall, IPS and Application Control enabled. 5. Threat Protection performance is measured with Firewall, IPS, Application Control and Malware Protection enabled. |

Reviews
There are no reviews yet.