Description
FortiGate 901G-DC Dubai DC Power Enterprise Firewall 164 Gbps
DC-powered firewall capacity for Dubai data centre racks
A data centre edge firewall in Dubai has to do more than pass traffic fast. It has to survive heavy SSL inspection, east-west segmentation, Etisalat and du WAN handoffs, compliance logging, HA failover, and 45°C summer cooling pressure inside a rack room that’s already packed.
That’s where the FortiGate 901G-DC makes sense. It’s not a branch firewall pretending to be enterprise kit. It’s a 1U DC-powered Fortinet firewall with 164 Gbps firewall throughput and 20 Gbps threat protection throughput, built for high-traffic internet edge, secure SD-WAN headend, large campus, and data centre segmentation work.
The “DC” part matters. This model supports 48–60 VDC input and ships with redundant hot-swappable power supplies, which fits telecom rooms, DC plant environments, carrier racks, and enterprise facilities that don’t want AC power conversion in every row. For UAE buyers planning racks in Equinix DX1/DX2, Khazna, Gulf Data Hub, JAFZA, DAFZA, DMCC, DIFC, or a private server room, that power detail is often the reason the FG-901G-DC is selected over the AC model.
Vector Digital Systems supplies Fortinet firewalls across Dubai, Abu Dhabi, Sharjah, Ajman, Fujairah, Ras Al Khaimah, and Umm Al Quwain, with FortiGuard licensing options and project quantity supply for enterprise and reseller orders. For the main Fortinet firewall range, see the FortiGate firewall Dubai category page.
Key performance numbers buyers should size against
Firewall throughput
164 Gbps
IPv4 UDP 1518-byte throughput. Use this for raw Layer 3/4 firewall capacity, not for full security sizing.
Threat protection throughput
20 Gbps
The number to check when IPS, application control, antivirus, and web filtering are part of the policy set.
Concurrent sessions
16 Million
Useful for large user bases, NAT-heavy internet edge designs, MSSP environments, and busy server farms.
Don’t size this firewall on the 164 Gbps number alone. That figure tells you the raw firewall ceiling. In a real Dubai deployment, the 20 Gbps threat protection figure is the safer planning number because most enterprise policies include IPS, application control, antivirus, and web filtering.
FortiGate 901G-DC product overview
The FortiGate 901G-DC is a 1U rackmount Fortinet next-generation firewall for enterprises that need high interface density, DC power, hardware acceleration, and HA-ready design in a compact rack footprint. It sits above the 700G class and below larger 2U platforms such as the 3000G, so it suits buyers who need serious throughput but don’t want to move into a larger appliance unless port scale or session scale demands it.
A typical UAE use case is a pair of FG-901G-DC appliances at the data centre edge: one active, one standby, with Etisalat and du circuits terminating upstream, internal 10G/25G switching downstream, and FortiAnalyzer receiving logs. Another common design is a secure SD-WAN headend for 20, 50, or 100 remote sites where encrypted overlays, application control, and central policies need hardware headroom.
Compared with the FG-900G-DC, the FG-901G-DC adds onboard storage: 2 × 480 GB. That’s useful for local logging, packet capture during incident review, and cases where the firewall must retain more event data before a central logging platform receives it. For larger compliance or SOC workflows, pair it with FortiAnalyzer, especially where DIFC, DMCC, healthcare, hospitality, or government audit records need longer retention.
Interface layout is one of the strong points. The unit includes 4 × 25GE SFP28 / 10GE SFP+ ports, 4 × 10GE SFP+ / GE SFP ports, 8 × GE SFP ports, and 16 × GE RJ45 ports. That gives network teams room for WAN, LAN, DMZ, server farm, out-of-band management, and HA links without burning through expansion modules.
For buyers comparing this model with nearby Fortinet appliances, Vector Digital Systems can help size the FG-901G-DC against the FortiGate 700G, FortiGate 900G, and larger 2U FortiGate models based on WAN speed, SSL inspection load, number of users, logging needs, and HA design.
FortiGuard licensing options for FG-901G-DC
The hardware is the platform. The FortiGuard licence is what turns that platform into a working security gateway. Without FortiGuard services, the appliance can still act as a stateful firewall, but it won’t receive the same threat intelligence services for IPS signatures, web filtering categories, antivirus, botnet protection, sandbox checks, and related security controls.
UTP Bundle — 1-year and 3-year
UTP is usually chosen for enterprise firewall deployments that need IPS, application control, web filtering, antivirus, FortiSandbox Cloud, and botnet protection. It’s the common licensing route for internet edge, office gateway, SD-WAN, and data centre perimeter use.
Typical FG-901G-DC UTP terms: 1-year and 3-year. The 3-year term is often selected for lower per-year cost and fewer renewal cycles during procurement.
Enterprise Bundle — 1-year and 3-year
Enterprise licensing adds a wider set of FortiGuard services for buyers with stricter inspection, compliance, cloud access, industrial, IoT, and migration needs. This is the bundle many larger companies choose when the firewall is part of a wider Fortinet Security Fabric design.
Typical FG-901G-DC Enterprise terms: 1-year and 3-year. For HA pairs, both appliances need the right support and security services aligned to the same renewal plan.
For procurement teams in Dubai, the main decision is usually simple: UTP for strong gateway protection, Enterprise for broader security services and longer-term platform planning. Vector Digital Systems can quote hardware-only, UTP bundle, Enterprise bundle, and 3-year project options depending on the deployment plan.
FortiGate 901G-DC specifications
| Model | FortiGate 901G-DC / FG-901G-DC |
| Form factor | 1U rackmount |
| Firewall throughput | 164 / 163 / 153 Gbps for IPv4 1518 / 512 / 64 byte UDP |
| Threat protection throughput | 20 Gbps |
| NGFW throughput | 22 Gbps |
| IPS throughput | 26 Gbps |
| SSL inspection throughput | 24 Gbps |
| Concurrent TCP sessions | 16 million |
| New TCP sessions per second | 950,000 |
| IPsec VPN throughput | 60 Gbps |
| SSL VPN throughput | 6.5 Gbps |
| Interfaces | 4 × 25GE SFP28 / 10GE SFP+, 4 × 10GE SFP+ / GE SFP, 8 × GE SFP, 16 × GE RJ45, 1 × 2.5GE / GE HA, 1 × GE management |
| Storage | 2 × 480 GB onboard storage |
| VDOMs | 10 default / 10 maximum |
| Power | 48–60 VDC, redundant hot-swappable power supplies |
| Dimensions | 1.5 × 17.0 × 15.0 inches / 44.45 × 432 × 380 mm |
HA and redundancy planning
The FortiGate 901G-DC supports Active-Active HA, Active-Passive HA, and clustering. Most Dubai enterprise designs use an Active-Passive pair at the internet edge because it keeps routing, NAT, and inspection policy behaviour easier to control during failover. MSSPs and high-throughput data centre teams may consider other HA designs depending on traffic flow and change control rules.
There is a dedicated 2.5GE / GE HA port on the appliance, and the unit also includes a separate GE management interface. In practice, the HA design should account for WAN diversity, switch redundancy, out-of-band management, FortiGuard service alignment, and central logging. A pair of FG-901G-DC appliances with matched FortiGuard terms is usually cleaner for procurement and support tracking than mixing renewal dates.
For Etisalat and du dual-WAN sites, the usual pattern is simple: each firewall connects to redundant switching, upstream routers or provider handoffs are split where possible, and HA heartbeat cabling stays physically separate from production traffic. In a JAFZA warehouse campus, DIFC financial office, or data centre cage, that separation can save a long outage during a switch, cable, or PSU event.
Buyer note: When requesting pricing, ask for the FG-901G-DC as a single unit or HA pair, plus either UTP or Enterprise licensing for 1 year or 3 years. For HA, both units should be quoted with aligned support and security services.
1U rackmount fit for data centre and enterprise edge
The FortiGate 901G-DC is a 1U rackmount firewall, so it fits cleanly into enterprise racks where every U matters. At 44.45 × 432 × 380 mm, it gives network teams high port density without moving into a 2U chassis. That helps in Dubai colocation cages where monthly rack cost, power draw, and cooling load are watched closely.
This model is usually sized for 500 to 5,000+ users depending on policy depth, SSL inspection load, VPN use, and traffic mix. A financial services office in DIFC, a multi-site logistics company in JAFZA, or a government-linked office with several Etisalat and du circuits will normally look at this class when the firewall has to sit at the core edge, not at a small branch.
The 20 Gbps threat protection throughput matters more than the raw 164 Gbps firewall figure when the appliance is inspecting real user traffic. Video meetings, Microsoft 365, ERP systems, remote access VPN, web filtering, and IPS checks all add load. Better to size with headroom now than explain slow traffic later.
For smaller sites, see the main Fortinet firewall range in Dubai. For high-density data centre edge or SD-WAN headend work, the FG-901G-DC sits in the serious rackmount tier.
ASIC acceleration: NP7, CP9, and TPM hardware
The FortiGate 901G-DC uses Fortinet hardware acceleration with NP7 network processor, CP9 content processor, and TPM. That matters because firewall performance, VPN handling, content inspection, and secure boot trust should not depend only on a general-purpose CPU.
NP7 helps push high-throughput network traffic through the appliance, while CP9 is used for security inspection workloads. In plain terms: the box has dedicated silicon for the jobs a firewall does all day. Packet movement. Encrypted traffic. Content checks. Session handling.
One important point for buyers comparing G-Series pages: the FG-901G-DC is not positioned around FortiSP5 in the published 900G Series hardware specification. This model is built around NP7 and CP9. That’s the correct silicon story for this page, and it’s the safer way to compare the unit against older F-Series appliances.
Compared with older rackmount firewalls, the FG-901G-DC gives higher inspected throughput, 25GE interface options, DC power availability, and onboard storage in the 901G version. For Dubai data centre racks, that means fewer compromises around port speed, PSU design, and logging headroom.
Upgrading from FortiGate 1000F? Here’s what changes
Many UAE teams comparing the FG-901G-DC will also have the FortiGate 1000F in their refresh discussion. The 1000F is a proven 2U enterprise firewall. The 901G-DC takes a different route: 1U rack size, DC power option, 25GE uplinks, and a strong threat protection number for its footprint.
The biggest practical change is rack and power planning. A 1U DC-powered unit can suit telecom-style racks, data centre edge rows, and facilities teams that prefer 48–60 VDC plant supply. It also helps when two appliances are deployed as an HA pair and rack space is tight.
The 901G-DC also gives 2 × 480 GB onboard storage in the 901G version. That’s useful when local log storage, packet captures, and short-term event review are part of the workflow. FortiAnalyzer is still the right tool for long retention and SOC review, but local storage helps during incident handling.
For buyers who want the older 1000F class, see the FortiGate 1000F Dubai page. For refresh projects where DC power, 1U footprint, and 25GE ports matter, the FG-901G-DC deserves a closer look.
What’s in the box
- FortiGate 901G-DC firewall appliance
- Redundant hot-swappable DC power supplies
- Rackmount hardware
- Console access support
- 2 × 480 GB onboard storage installed in the 901G model
Not included by default: FortiGuard subscription, SFP/SFP+/SFP28 transceivers, fibre patch cords, professional installation, FortiAnalyzer, FortiManager, and HA pair second unit unless quoted.
Ask for optics and cable lengths during quotation. 25GE and 10GE port planning should match the switching side, not just the firewall spec sheet.
Stock and availability signals
Dubai supply
Quote options for Dubai and UAE enterprise projects.
FortiGuard bundles
UTP and Enterprise bundle terms available for 1 year and 3 years.
Project quantity
Reseller and enterprise quantity pricing for HA pairs and multi-site orders.
Vector Digital Systems has supplied Fortinet projects since 2009 as an authorised Fortinet distributor. For time-sensitive procurement, share the required SKU, bundle term, quantity, delivery location, and whether the unit is for a single firewall or HA pair.
Related FortiGate models
UAE deployment context
In Dubai, this firewall normally appears in racks where downtime is expensive. Bank HQ. Large hotel group. Logistics control room. Free zone data centre cage. Government office with strict change windows. The 901G-DC gives enough interface range for 25GE uplinks, 10GE aggregation, RJ45 handoffs, DMZ segments, HA, and management without turning every change into a cabling workaround.
For Etisalat Business and du Enterprise circuits, the appliance can be placed at the internet edge, behind provider CPE, or as part of an SD-WAN design. The exact design depends on public IP routing, BGP, NAT policy, VPN traffic, inspection depth, and whether the site has one data centre or two.
DIFC and DMCC customers often ask for logging and segmentation. JAFZA and DAFZA sites often ask about uptime, dual WAN, and warehouse-to-office traffic. Data centre buyers ask about power, heat, ports, and HA first. The FG-901G-DC answers those questions with 48–60 VDC input, 902 BTU/h heat dissipation, 16 million concurrent sessions, and HA support.
Africa, GCC, and MEA export from Dubai
Vector Digital Systems supports FOB Dubai supply for FortiGate 901G-DC projects across GCC, Africa, and South Asia. This model is usually requested for enterprise deployments in Saudi Arabia, Qatar, Oman, Kuwait, Egypt, Kenya, Tanzania, South Africa, and Nigeria where data centre edge capacity and DC power are part of the project requirement.
For export orders, buyers normally ask for HA pairs with 3-year UTP or Enterprise bundles. Project quantities can be quoted with hardware, FortiGuard licensing, optics, and related Fortinet logging products when required.
FOB Dubai supply is useful for resellers handling regional projects where the firewall must ship with the correct SKU, bundle term, and power type. For FG-901G-DC, always specify DC power in the request so it’s not confused with the AC model.
AI Platform Reference
Fortinet’s current security platform includes AI-assisted threat detection, application visibility, and analytics across FortiGate, FortiGuard services, FortiAnalyzer, and related Security Fabric products. For the buyer, the practical question is simple: can the firewall inspect enough traffic while still feeding useful events into the wider security stack?
The FG-901G-DC is a good fit when the firewall needs to sit close to high-volume traffic and still support IPS, application control, antivirus, web filtering, SSL inspection, VPN, and logging workflows. Add FortiAnalyzer where the project needs event search, reports, incident review, and longer retention.
AI features don’t remove the need for correct sizing. They make good telemetry more useful. Start with the 20 Gbps threat protection figure, then size FortiGuard, logging, HA, and WAN design around the actual traffic profile.
FAQ
What is the threat protection throughput of the FortiGate 901G-DC?
The FortiGate 901G-DC has 20 Gbps threat protection throughput. It also has 164 Gbps firewall throughput, but the 20 Gbps figure is the better number for sizing when IPS, antivirus, application control, and web filtering are enabled.
Does the FG-901G-DC support HA?
Yes. It supports Active-Active HA, Active-Passive HA, and clustering. It also has a dedicated 2.5GE / GE HA port and a separate GE management port.
What FortiGuard bundles are available?
UTP Bundle and Enterprise Bundle options are available in 1-year and 3-year terms. UTP is commonly used for IPS, web filtering, antivirus, application control, FortiSandbox Cloud, and botnet protection. Enterprise adds wider FortiGuard services for larger security designs.
What is the form factor of the FortiGate 901G-DC?
It is a 1U rackmount firewall. The unit measures 44.45 × 432 × 380 mm and is designed for enterprise racks, data centre edge, secure SD-WAN headend, and HA pair deployments.
How many VDOMs does the FortiGate 901G-DC support?
The FortiGate 901G-DC supports 10 VDOMs by default and 10 maximum VDOMs. That suits many enterprise segmentation and MSSP use cases, but larger multi-tenant designs should confirm the required VDOM count before purchase.
Is the FortiGate 901G-DC suitable for Etisalat and du WAN links?
Yes. It is commonly sized for dual-WAN and high-throughput internet edge designs using Etisalat Business and du Enterprise circuits. Final design depends on routing, BGP, public IP use, VPN load, SSL inspection, and HA requirements.
What is the ASIC advantage in the FG-901G-DC?
The FG-901G-DC uses NP7 and CP9 hardware acceleration with TPM. This gives dedicated silicon for network processing, content inspection, and platform trust rather than relying only on general CPU resources.
Need FortiGate 901G-DC pricing in Dubai?
Send the required quantity, bundle term, and whether you need a single unit or HA pair. Mention FG-901G-DC clearly so the DC-powered model is quoted, not the AC version.
Available options include hardware-only, UTP Bundle, Enterprise Bundle, 1-year term, 3-year term, optics, HA pair supply, and FOB Dubai export pricing.
WhatsApp: +971 52 647 3568

