![](/images/new-backgrounds/1166636/16663683x1.webp)
FortiGate model maximum values matrixGetting started
CLI
If you are configuring the FortiGate unit to operate in NAT/Route mode, you can add the administration password and all interface addresses. Using the CLI, you can also add DNS server IP addresses and a default route for the external interface.
If you are configuring the FortiGate unit to operate in Transparent mode, you can use the CLI to switch to Transparent mode, Then you can add the administration password, the management IP address and gateway, and the DNS server addresses.
Front keypad and LCD
If you are configuring the FortiGate unit to operate in NAT/Route mode, you can use the control buttons and LCD to add the IP address of the FortiGate interfaces as well as the external default gateway.
If you are configuring the FortiGate unit to operate in Transparent mode, you can use the control buttons and LCD to switch to Transparent mode. Then you can add the management IP address and default gateway.
FortiGate model maximum values matrix
Table 9: FortiGate maximum values matrix
|
|
|
|
| FortiGate model |
|
|
|
| ||
|
|
|
|
|
|
|
|
|
|
|
|
| 50 | 60 | 100 | 200 | 300 | 400 | 500 | 1000 | 2000 | 3000 | 3600 |
|
|
|
|
|
|
|
|
|
|
|
|
Policy | 200 | 500 | 1000 | 2000 | 5000 | 5000 | 20000 | 50000 | 50000 | 50000 | 50000 |
|
|
|
|
|
|
|
|
|
|
|
|
Address | 500 | 500 | 500 | 500 | 3000 | 3000 | 6000 | 10000 | 10000 | 10000 | 10000 |
|
|
|
|
|
|
|
|
|
|
|
|
Address group | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 |
|
|
|
|
|
|
|
|
|
|
|
|
Service | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 |
|
|
|
|
|
|
|
|
|
|
|
|
Service group | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 |
|
|
|
|
|
|
|
|
|
|
|
|
Recurring schedule | 256 | 256 | 256 | 256 | 256 | 256 | 256 | 256 | 256 | 256 | 256 |
|
|
|
|
|
|
|
|
|
|
|
|
Onetime schedule | 256 | 256 | 256 | 256 | 256 | 256 | 256 | 256 | 256 | 256 | 256 |
|
|
|
|
|
|
|
|
|
|
|
|
User | 20 | 500 | 1000 | 1000 | 1000 | 1000 | 1000 | 1000 | 1000 | 1000 | 1000 |
|
|
|
|
|
|
|
|
|
|
|
|
User group | 100 | 100 | 100 | 100 | 100 | 100 | 100 | 100 | 100 | 100 | 100 |
|
|
|
|
|
|
|
|
|
|
|
|
Group members | 300 | 300 | 300 | 300 | 300 | 300 | 300 | 300 | 300 | 300 | 300 |
|
|
|
|
|
|
|
|
|
|
|
|
Virtual IPs | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 |
|
|
|
|
|
|
|
|
|
|
|
|
IP/MAC binding | 50 | 100 | 1000 | 1000 | 2000 | 2000 | 2000 | 5000 | 5000 | 5000 | 5000 |
|
|
|
|
|
|
|
|
|
|
|
|
Route | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 |
|
|
|
|
|
|
|
|
|
|
|
|
Policy route gateway | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 |
|
|
|
|
|
|
|
|
|
|
|
|
Admin user | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 |
|
|
|
|
|
|
|
|
|
|
|
|
IPsec Phase 1 | 20 | 50 | 80 | 200 | 1500 | 1500 | 3000 | 5000 | 5000 | 5000 | 5000 |
|
|
|
|
|
|
|
|
|
|
|
|
VPN concentrator | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 |
|
|
|
|
|
|
|
|
|
|
|
|
VLAN subinterface | N/A | N/A | N/A | N/A | N/A | 1024* | 1024* | 2048* | 2048* | 8192* | 8192* |
|
|
|
|
|
|
|
|
|
|
|
|
Zone | N/A | N/A | N/A | N/A | N/A | 100 | 100 | 200 | 200 | 300 | 500 |
|
|
|
|
|
|
|
|
|
|
|
|
42 | Fortinet Inc. |