Fortinet FortiSwitch 648F-FPOE
Security, Performance, and Manageability
Click here to jump to more pricing!
Overview:
The FortiSwitch™ campus family offers an unparalleled combination of security, performance, and manageability, making it the ideal choice for the enterprise campus that prioritize safeguarding against threats.
As campus network design continues to adapt to emerging technologies and evolving business requirements, the FortiSwitch enterprise campus switching architecture empowers network administrators with enhanced visibility, control, and manageability. The platform’s scalability, agility, and ease of management contribute to a highly secure environment, providing a robust foundation for any sized campus.
Secure Networking through FortiLink
FortiLink is an innovative proprietary management protocol that enables seamless integration and management between a FortiGate Next-Generation Firewall and the FortiSwitch Ethernet switching platform. By using FortiLink, the FortiSwitch becomes a logical extension of the FortiGate, allowing for centralized management of both network security and access layer functions through a single interface.
Highlights
- Standalone or Integrated FortiLink deployment option
- On premise and cloudbased management options
- Zero-touch deployment
- Entry level network access control at no cost
- Role and device-based access control and policy enforcement
- Dynamic segmentation and Micro Segmentation
- Secure access service edge (SASE) support
- Up to 48 access ports in a compact 1 RU form factor
- Stacking up to 300 switches per FortiGate
- Wire-speed switching with up to 40GE uplinks
Native Entry-Level Network Access Control at No Cost
FortiLink integration enables basic Network Access Control (NAC) functionality to profile and securely onboard devices as they connect. FortiLink NAC offers visibility, automated segmentation, and microsegmentation of IoT devices, quarantine if compromised, and virtual patching to help protect against threats.
Dynamic Segmentation and Policy Enforcement
Implementing dynamic port-level security in a large campus Ethernet switching environment traditionally requires hands-on effort and ongoing maintenance. FortiSwitch campus switching architecture automates dynamic segmentation through FortiLink, empowering IT administrators to control traffic within segments, limiting the scope of threats. The automation of segmentation makes making policy enforcement easier and more efficient, while NGFWlevel policies ensure granular control and zero-trust access for users and devices.
Role and Device-based Access Control and Policy Enforcement
Whether leveraging Fortinet Identity Access Management (IAM) or third-party identity providers, FortiLink automation can leverage identity to make granular role-based policy decisions.
Secure Access Service Edge (SASE)
This FortiSwitch enterprise architecture offers a built-in foundation for zero-trust network access (ZTNA) and secure access service edge (SASE), allowing you the flexibility to easily deploy the type and level of security you need at the edge of your network.
Operational Simplicity
Deploying, managing, and optimizing an Ethernet switching infrastructure has traditionally been challenging and time-consuming.
FortiSwitch switching architecture can be securely deployed and managed in minutes through zero-touch deployment. Whether FortiSwitch is deployed in standalone mode or FortiLink mode, automation and orchestration offer intuitive workflows and unified views to provision, manage, and optimize your campus. This is available through both FortiCloud and on-premises management.
Centralized management delivers a unified, single view of both the LAN and security. This provides a consistent user experience for optimal operational efficiency, simplifying management, optimization, and troubleshooting. The result is a shorter mean time to repair both network and security issues.
Scalable Flexible Campus
FortiSwitch campus architecture scales to meet the need of today’s next-generation campus without sacrificing security. Supporting up to 48 ports in a compact 1 RU form factor, FortiSwitch can deliver the performance and scale you require.
Eliminate Bottlenecks
Dedicated uplinks capable of speeds up to 25GE through SFP+ and SFP28 slots can support your choice of media utilizing through a wide variety of transceivers.
Next Generation Power over Ethernet Support
With PoE+ support in all models and next-generation 90W 802.3bt PoE support in specific models, FortiSwitch delivers and manages power where needed for devices such as cameras, sensors, and wireless access points
Features:
FORTISWITCH FORTILINK MODE (WITH FORTIGATE) | |
---|---|
Management and Configuration | |
Auto Discovery of Multiple Switches | Yes |
Number of Managed Switches per FortiGate | 8 to 300 Depending on FortiGate Model (Please refer to admin guide) |
FortiLink Stacking (Auto Inter-Switch Links) | Yes |
Software Upgrade of Switches | Yes |
Centralized VLAN Configuration | Yes |
Switch POE Control | Yes |
Link Aggregation Configuration | Yes |
Spanning Tree | Yes |
LLDP/MED | Yes |
IGMP Snooping | Yes (not supported on 1xxE-Series) |
L3 Routing and Services | Yes (FortiGate) |
Yes (FortiGate)Policy-Based Routing | |
Virtual Domain | Yes (FortiGate) |
Automated detection and recommendations | Yes |
Dynamic Port Profiles for FortiSwitch ports | Yes |
Provision firmware upon authorization | Yes |
Health Monitoring | Yes |
High Availability | |
Support FortiLink FortiGate in HA Cluster | Yes |
LAG support for FortiLink Connection | Yes |
Active-Active Split LAG from FortiGate to FortiSwitches for Advanced Redundancy | Yes |
Security and Visibility | |
802.1x Authentication (Port-based, MAC-based, MAB) | Yes |
Syslog Collection | Yes |
DHCP Snooping | Yes |
Device Detection | Yes |
MAC Black/While Listing | Yes |
Policy Control of Users and Devices | Yes |
Block Intra-VLAN Traffic | Yes |
Network Device Detection | Yes |
Host Quarantine on Switch Port | Yes |
Integrated FortiGate Network Access Control (NAC) function | Yes |
FortiGuard IoT identification | Yes |
FortiSwitch recommendations in Security Rating | Yes |
Switch Controller traffic collector | Yes |
Port Statistics | Yes |
Clients Monitoring | Yes |
UTM Features | |
Firewall | Yes (FortiGate) |
IPC, AV, Application Control, Botnet | Yes (FortiGate) |
Specifications:
FortiSwitch 624F | FortiSwitch 624F-FPOE | FortiSwitch 648F | FortiSwitch 648F-FPOE | |
---|---|---|---|---|
Hardware Specifications | ||||
Total Network Interfaces | 24x 1GE/2.5GE/5GE RJ45 ports and 4x 10GE/25GE SFP+/SFP28 ports | 24x 1GE/2.5GE/5GE RJ45 ports and 4x 10GE/25GE SFP+/SFP28 ports | 32x 1GE/2.5GE, 16x 1GE/2.5GE/5GE RJ45 ports and 8x 10GE/25GE SFP+/SFP28 ports | 32x 1GE/2.5GE, 16x 1GE/2.5GE/5GE RJ45 ports and 8x 10GE/25GE SFP+/SFP28 ports |
Dedicated Management 10/100/1000 Port | 1 | 1 | 1 | 1 |
RJ-45 Serial Console Port | 1 | 1 | 1 | 1 |
Form Factor | 1 RU Rack Mount | 1 RU Rack Mount | 1 RU Rack Mount | 1 RU Rack Mount |
Power over Ethernet (PoE) Ports | - | 24 (802.3 af/at/bt type 4) | - | 48 (802.3 af/at/bt type 4) |
PoE Power Budget | - | 1440 W | - | 1800 W |
Mean Time Between Failures | > 10 years | > 10 years | > 10 years | > 10 years |
System Specifications | ||||
Switching Capacity (Duplex) | 440 Gbps | 440 Gbps | 720 Gbps | 720 Gbps |
Packets Per Second (Duplex) | 654 Mpps | 654 Mpps | 1071 Mpps | 1071 Mpps |
MAC Address Storage | 64 K | 64 K | 64 K | 64 K |
Network Latency | < 1µs | < 1µs | < 1µs | < 1µs |
VLANs Supported | 4 K | 4 K | 4 K | 4 K |
Link Aggregation Group Size | 28 | 28 | 56 | 56 |
Total Link Aggregation Groups | Up to number of ports | Up to number of ports | Up to number of ports | Up to number of ports |
Packet Buffers | 8 MB | 8 MB | 8 MB | 8 MB |
Memory | 4GB DDR4 | 4GB DDR4 | 4GB DDR4 | 4GB DDR4 |
FLASH | 32 MB | 32 MB | 32 MB | 32 MB |
Drive | 32G SSD | 32G SSD | 32G SSD | 32G SSD |
ACL | 36k | 36k | 36k | 36k |
Spanning Tree Instances | 32 | 32 | 32 | 32 |
Route Entries (IPv4) | 16 k | 16 k | 16 k | 16 k |
Host Entries (IPv4) | 192 k | 192 k | 192 k | 192 k |
Multicast route entries | 12 k | 12 k | 12 k | 12 k |
Dimensions | ||||
Height x Depth x Width (inches) | 1.75 x 13.8 x 17.3 | 1.75 x 13.8 x 17.3 | 1.75 x 13.8 x 17.3 | 1.75 x 13.8 x 17.3 |
Height x Depth x Width (mm) | 44 x 350 x 440 | 44 x 350 x 440 | 44 x 350 x 440 | 44 x 350 x 440 |
Weight | 6.925 kg | 7.407 kg | 7.149 kg | 7.834 kg |
Environment | ||||
Power Required | 100–240V AC, 50/60 Hz | 100–240V AC, 50/60 Hz | 100–240V AC, 50/60 Hz | 100–240V AC, 50/60 Hz |
Power Consumption ( Maximum) | 240W | 1680W | 300W | 2100W |
Power Supply | 2x 350W | 2x 1200W | 2x 350W | 2x 1200W |
Redundant Power | Dual hot swappable AC | Dual hot swappable AC | Dual hot swappable AC | Dual hot swappable AC |
Heat Dissipation | 423 BTU/h | 969 BTU/h | 590 BTU/h | 1272 BTU/h |
Operating Temperature | 32–113°F (0–45°C) | 32–113°F (0–45°C) | 32–113°F (0–45°C) | 32–113°F (0–45°C) |
Storage Temperature | -40°–158°F (-40°–70°C) | -40°–158°F (-40°–70°C) | -40°–158°F (-40°–70°C) | -40°–158°F (-40°–70°C) |
Humidity | 5–95% non-condensing | 5–95% non-condensing | 5–95% non-condensing | 5–95% non-condensing |
Air-Flow Direction | front-to-back | front-to-back | front-to-back | front-to-back |
Noise Level | 54.88 dBA | 54.88 dBA | 57.97 dBA | 57.97 dBA |
Certification and Compliance | ||||
FCC, CE, RCM, VCCI, BSMI, UL, CB, RoHS2 | ||||
Warranty | ||||
Fortinet Warranty | Limited lifetime* warranty on all models |
Documentation:
Download the FortiSwitch Campus Datasheet (PDF).
Pricing Notes:
- All prices displayed are Ex-VAT. 20% VAT is added during the checkout process.
- 24x7 FortiCare Contract
24x7 Support, Advanced Hardware Replacement (NBD), Firmware and General Upgrades - Prices are for one year of Premium RMA support. Usual discounts can be applied.
- Annual contracts only. No multi-year SKUs are available for these services.
- Contact Fortinet Renewals team for upgrade quotations for existing FortiCare contracts.
- Pricing and product availability subject to change without notice.