Fortinet white logo
Fortinet white logo

Hardware Acceleration

FortiGate 70F and 71F fast path architecture

FortiGate 70F and 71F fast path architecture

The FortiGate 70F and 71F includes the SOC4 and uses the SOC4 CPU, NP6XLite processor, and CP9XLite processor. The SOC4 includes an integrated switch fabric (ISF) that connects all of the front panel network interfaces to the NP6XLite processor. The FortiGate 70F and 71F is based on the same hardware architecture as the FortiGate 60F and 61F but with enhanced memory and switch hardware.

All data traffic passes from the data interfaces through the ISF to the NP6XLite processor. All supported traffic passing between any two data interfaces can be offloaded by the NP6XLite processor. Data traffic processed by the CPU takes a dedicated data path through the ISF and the NP6XLite processor to the CPU.

The A and B interfaces can also be used as FortiLink interfaces.

The FortiGate 70F and 71F models feature the following front panel interfaces:

  • Eight 10/100/1000BASE-T Copper (1-5, A, B, DMZ) connected to the SOC4. A and B are FortiLink interfaces.
  • Two 10/100/1000BASE-T Copper (WAN1 and WAN2) connected to the SOC4.

The SOC4 ISF allows you to use the command config system virtual-switch to create a virtual hardware switch that can include any front panel interface connected to the SOC4.

Note

To add an interface to a hardware switch, its mode must be set to static and the interface can't be used in any other configuration. For example, you can't have a firewall policy that references the interface.

You can use the command diagnose npu np6xlite port-list to display the FortiGate 70F or 71F NP6XLite configuration.

diagnose npu np6xlite port-list 
Chip   XAUI Ports            Max   Cross-chip 
                             Speed offloading 
------ ---- -------          ----- ---------- 
np6xlite_0
       11   wan1             1000M          NO
       15   wan2             1000M          NO
       7    dmz              1000M          NO
       6    internal1        1000M          NO
       5    internal2        1000M          NO
       4    internal3        1000M          NO
       3    internal4        1000M          NO
       10   internal5        1000M          NO
       9    a                1000M          NO
       8    b                1000M          NO

FortiGate 70F and 71F fast path architecture

FortiGate 70F and 71F fast path architecture

The FortiGate 70F and 71F includes the SOC4 and uses the SOC4 CPU, NP6XLite processor, and CP9XLite processor. The SOC4 includes an integrated switch fabric (ISF) that connects all of the front panel network interfaces to the NP6XLite processor. The FortiGate 70F and 71F is based on the same hardware architecture as the FortiGate 60F and 61F but with enhanced memory and switch hardware.

All data traffic passes from the data interfaces through the ISF to the NP6XLite processor. All supported traffic passing between any two data interfaces can be offloaded by the NP6XLite processor. Data traffic processed by the CPU takes a dedicated data path through the ISF and the NP6XLite processor to the CPU.

The A and B interfaces can also be used as FortiLink interfaces.

The FortiGate 70F and 71F models feature the following front panel interfaces:

  • Eight 10/100/1000BASE-T Copper (1-5, A, B, DMZ) connected to the SOC4. A and B are FortiLink interfaces.
  • Two 10/100/1000BASE-T Copper (WAN1 and WAN2) connected to the SOC4.

The SOC4 ISF allows you to use the command config system virtual-switch to create a virtual hardware switch that can include any front panel interface connected to the SOC4.

Note

To add an interface to a hardware switch, its mode must be set to static and the interface can't be used in any other configuration. For example, you can't have a firewall policy that references the interface.

You can use the command diagnose npu np6xlite port-list to display the FortiGate 70F or 71F NP6XLite configuration.

diagnose npu np6xlite port-list 
Chip   XAUI Ports            Max   Cross-chip 
                             Speed offloading 
------ ---- -------          ----- ---------- 
np6xlite_0
       11   wan1             1000M          NO
       15   wan2             1000M          NO
       7    dmz              1000M          NO
       6    internal1        1000M          NO
       5    internal2        1000M          NO
       4    internal3        1000M          NO
       3    internal4        1000M          NO
       10   internal5        1000M          NO
       9    a                1000M          NO
       8    b                1000M          NO