Fortinet FortiSwitch 448E
Secure Access Switches
Click here to jump to more pricing!
Overview:
Security, Performance, and Manageability
The FortiSwitch™ Secure Access Family delivers outstanding security, performance, and manageability. Secure, simple, and scalable, FortiSwitch is the right choice for threatconscious businesses of all sizes.
Security Fabric Integration through FortiLink
FortiLink is an innovative proprietary management protocol that allows our FortiGate Next Generation Firewall to seamlessly manage any FortiSwitch. FortiLink enables the FortiSwitch to become a logical extension of the FortiGate, integrating it directly into the Fortinet Security Fabric. This management option reduces complexity and decreases management costs as network security and access layer functions are enabled and managed through a single console. FortiLink integration enables centralized policy management, including role-based access and control, making it easy to implement and manage. This control and manageability make FortiSwitch ideal for SD-Branch deployments.
Highlights
- Designed for installations from desktops to wiring closets
- Ideal for SD-Branch deployments
- Optimal for converged network environments; enabling voice, data, and wireless traffic to be delivered across a single network
- Centralized security and access management from FortiGate interface
- Supports non-FortiLink deployments through onboard GUI, API, or command line configuration
- Up to 48 ports in a compact 1 RU form factor
- Stackable up to 300 switches per FortiGate depending on model
- Supports Wire-speed switching and Store and Forward forwarding mode
Deployment
FortiLink
- FortiGate managed
- Security Fabric enabled
- Most common deployment model
Standalone
- Industry standard deployment model
- Common in non-FortiGate environments
Cloud Management for both deployment options available through FortiCloud
Features:
FORTISWITCH |
Layer 2 |
Jumbo Frames |
Auto-negotiation for Port Speed and Duplex |
MDI/MDIX Auto-crossover |
IEEE 802.1D MAC Bridging/STP |
IEEE 802.1w Rapid Spanning Tree Protocol (RSTP) |
IEEE 802.1s Multiple Spanning Tree Protocol (MSTP) |
STP Root Guard |
STP BPDU Guard |
Edge Port / Port Fast |
IEEE 802.1Q VLAN Tagging |
Private VLAN |
IEEE 802.3ad Link Aggregation with LACP |
Unicast/Multicast traffic balance over trunking port (dst-ip, dst-mac, src-dst-ip, src-dst-mac, src-ip, src-mac) |
IEEE 802.1AX Link Aggregation |
Spanning Tree Instances (MSTP/CST) |
IEEE 802.3x Flow Control and Back-pressure |
IEEE 802.3 10Base-T |
IEEE 802.3u 100Base-TX |
IEEE 802.3z 1000Base-SX/LX |
IEEE 802.3ab 1000Base-T |
IEEE 802.3ae 10 Gigabit Ethernet |
IEEE 802.3az Energy Efficient Ethernet |
IEEE 802.3bz Multi Gigabit Ethernet |
IEEE 802.3 CSMA/CD Access Method and Physical Layer Specifications |
Storm Control |
MAC, IP, Ethertype-based VLANs |
Virtual-Wire |
Split Port (QSFP+ breakout to 4x10G SFP+ or 4x1G SFP) |
Time-Domain Reflectcometry (TDR) Support |
LAG min/max bundle |
Rapid PVST interoperation |
Ingress Pause Metering |
Loop Guard |
Per-port storm control |
Priority-based Flow Control (802.1Qbb) |
IEEE 802.1ad QinQ |
VLAN Mapping |
IEEE 802.3ba, 802.3bj, and 802.3bm 40 and 100 Gigabit Ethernet |
Auto topology |
Services |
IGMP proxy / querier |
MLD Snooping |
MLD proxy / querier |
IGMP Snooping |
Layer 3 |
Static Routing (Hardware-based) |
Dynamic Routing Protocols: OSPFv2, RIPv2, VRRP, BGP, ISIS * |
Multicast Protocols: PIM-SSM * |
ECMP |
Bidirectional Forwarding Detection (BFD) |
DHCP Relay |
IP conflict detection and notification |
DHCP server |
Unicast Reverse Path Forwarding - uRPF |
IPv6 route filtering |
Filtering routemaps based on routing protocol |
Security and Visibility |
Port Mirroring |
Admin Authentication Via RFC 2865 RADIUS |
IEEE 802.1X Authentication Port-based |
IEEE 802.1X Authentication MAC-based |
IEEE 802.1X Guest and Fallback VLAN |
IEEE 802.1X MAC Access Bypass (MAB) |
IEEE 802.1X Dynamic VLAN Assignment |
Radius CoA (Change of Authority) |
Radius Accounting |
MAC-IP Binding |
sFlow |
ACL |
IEEE 802.1ab Link Layer Discovery Protocol (LLDP) |
IEEE 802.1ab LLDP-MED |
IEEE 802.1ae MAC Security (MAC Sec) |
DHCP-Snooping |
Dynamic ARP Inspection |
Sticky MAC and MAC Limit |
IEEE 802.1X open auth |
IEEE 802.1X EAP pass-through |
Flow Export (NetFlow and IPFIX) |
ACL Multistage |
ACL Multiple Ingress |
ACL Schedule |
IP source guard |
IPv6 RA Guard |
LLDP-MED ELIN support |
Per-port and per-VLAN MAC learning limit |
Assign VLANs via Radius attributes (RFC 4675) |
High Availability |
Multi-Chassis Link Aggregation (MCLAG) |
Quality of Service |
IEEE 802.1p Based Priority Queuing |
IP TOS/DSCP Based Priority Queuing |
IEEE 1588 PTP (Transparent Clock) |
Explicit Congestion Notification |
Egress priority tagging |
Percentage Rate Control |
Management |
IPv4 and IPv6 Management |
Telnet / SSH |
HTTP / HTTPS |
SNMP v1/v2c/v3 |
SNTP |
Standard CLI and Web GUI Interface |
Software download/upload: TFTP/FTP/GUI |
Managed from FortiGate |
Support for HTTP REST APIs for Configuration and Monitoring |
Dual Firmware Support |
RMON Group 1 |
Packet Capture |
SPAN, RSPAN, and ERSPAN |
Link Monitor |
POE Control Modes |
System Temperature and Alert |
Syslog UDP/TCP |
Provide warning if L2 table is getting full |
Display Average Bandwidth and Allow Sorting on Physical Port / Interface Traffic |
System alias command |
SNMP v3 traps |
* Requires ‘Advanced Features’ License.
Specifications:
FORTISWITCH 448E | FORTISWITCH 448E-POE | FORTISWITCH 448E-FPOE | |
---|---|---|---|
Hardware Specifications | |||
Total Network Interfaces |
48x GE RJ45 and 4x 10GE SFP+ ports Note: SFP+ ports are compatible with 1 GE SFP |
48x GE RJ45 and 4x 10GE SFP+ ports Note: SFP+ ports are compatible with 1 GE SFP |
48x GE RJ45 and 4x 1 |
Dedicated Management 10/100 Port |
1 |
1 |
1 |
RJ-45 Serial Console Port |
1 |
1 |
1 |
Form Factor |
1 RU Rack Mount |
1 RU Rack Mount |
1 RU Rack Mount |
Power over Ethernet (PoE) Ports |
— |
48 (802.3af/at) |
48 (802.3af/at) |
PoE Power Budget |
— |
421 W |
772 W |
Mean Time Between Failures |
> 10 years |
> 10 years |
> 10 years |
System Specifications |
|||
Switching Capacity (Duplex) |
176 Gbps |
176 Gbps |
176 Gbps |
Packets Per Second (Duplex) |
262 Mpps |
262 Mpps |
262 Mpps |
MAC Address Storage |
32 K |
32 K |
32 K |
Network Latency |
<1μs |
<1μs |
<1μs |
VLANs Supported |
4 K |
4 K |
4 K |
Link Aggregation Group Size |
8 |
8 |
8 |
Total Link Aggregation Groups |
Up to number of ports |
Up to number of ports |
Up to number of ports |
Packet Buffers |
2 MB |
2 MB |
2 MB |
DRAM |
1GB DDR4 |
1GB DDR4 |
1GB DDR4 |
FLASH |
256 MB |
256 MB |
256 MB |
ACL |
1.5k |
1.5k |
1.5k |
Spanning Tree Instances |
16 |
16 |
16 |
Route Entries |
16k |
16k |
16k |
Host Entries |
16k |
16k |
16k |
Dimensions |
|||
Height x Depth x Width (inches) |
1.75 x 12.2 x 17.3 |
1.73 x 16.1 x 17.3 |
1.73 x 16.1 x 17.3 |
Height x Depth x Width (mm) |
44 x 310 x 440 |
44 x 410 x 440 |
44 x 410 x 440 |
Weight |
9.17 lbs (4.16 kg) |
13.8 lbs (6.26 kg) |
14.04 lbs (6.37 kg) |
Environment |
|||
Power Required |
100–240V AC, 50/60 Hz |
100–240V AC, 50/60 Hz |
100–240V AC, 50/60 Hz |
Power Supply |
AC built in |
AC built in |
AC built in |
Redundant Power |
Redundant AC |
Redundant AC |
Redundant AC |
Power Consumption* (Average / Maximum) |
46.5 W / 47.81 W |
440.12 W / 442.234 W |
921.4 W / 923.6 W |
Heat Dissipation |
163.032 BTU/h |
163.066 BTU/h |
163.1 BTU/h |
Operating Temperature |
32–122°F (0–50°C) |
32–122°F (0–50°C) |
32–122°F (0–50°C) |
Storage Temperature |
-4–158°F (-20–70°C) |
-4–158°F (-20–70°C) |
-4–158°F (-20–70°C) |
Humidity |
10–90% non condensing |
10–90% non condensing |
10–90% non condensing |
Air-Flow Direction |
side-to-back |
side-to-back |
side-to-back |
Certification and Compliance |
|||
FCC, CE, RCM, VCCI, BSMI, UL, CB, RoHS2 |
|||
Warranty |
|||
Fortinet Warranty |
Limited lifetime** warranty on all models |
Documentation:
Download the Fortinet FortiSwitch Secure Access Series Datasheet (PDF).
Pricing Notes:
- Pricing and product availability subject to change without notice.