Call NowFree Quote
Cybersecurity

FortiGate Firewall Setup and Support for Perth Businesses

Fortinet FortiGate is the most widely deployed next-generation firewall (NGFW) platform in Australian businesses - and for good reason. It combines enterprise-grade security with the manageability that Perth SMBs and mid-market organisations need. Here's what you need to know about FortiGate and whether it's the right choice for your business.

What Is FortiGate?

FortiGate is a next-generation firewall (NGFW) made by Fortinet. Unlike a basic firewall that simply blocks or allows traffic based on IP addresses and ports, a FortiGate inspects traffic at the application layer - understanding what applications are being used, not just which ports they're on.

A properly configured FortiGate does far more than a traditional firewall:

  • Deep Packet Inspection (DPI) - analyses the content of encrypted and unencrypted traffic to identify threats, not just the headers
  • Intrusion Prevention System (IPS) - detects and blocks known attack patterns in real time
  • Web filtering - controls which categories of websites users can access, blocking known malicious domains and inappropriate content
  • Application control - manages access to specific applications (blocking TikTok, limiting BitTorrent, prioritising business applications)
  • SSL inspection - inspects encrypted HTTPS traffic for malware, which simple firewalls cannot do
  • VPN - IPsec and SSL VPN for secure remote access and site-to-site connectivity
  • SD-WAN - intelligent traffic routing across multiple internet connections for performance and redundancy

FortiGate Models for Perth SMBs

Fortinet produces FortiGate models across a wide range - from small branch office units to enterprise data centre appliances. For Perth small and medium businesses, the common models are:

  • FortiGate 40F / 60F - suitable for small offices up to 25–50 users. The 60F is the most popular entry-level business unit in Australia.
  • FortiGate 80F / 100F - mid-range, suitable for 50–150 users or businesses with higher throughput requirements
  • FortiGate 200F / 400F - larger organisations, high-throughput environments, or businesses with complex multi-site requirements

Model selection depends on user count, throughput requirements (especially if SSL inspection is enabled, which significantly increases processing load), and the features you intend to use.

What a Proper FortiGate Configuration Includes

Many Perth businesses have a FortiGate on their network that is not properly configured - still running default settings, missing FortiGuard subscriptions, or without SSL inspection enabled. A properly set-up FortiGate includes:

FortiGuard Subscriptions

FortiGate's advanced features require active FortiGuard licences. Without them, the device operates as a basic stateful firewall - you're paying for an NGFW and getting consumer-grade protection. The key subscriptions:

  • IPS - intrusion prevention signatures updated in real time
  • Web Filtering - URL and DNS category blocking
  • Antivirus - gateway-level malware scanning
  • Application Control - application identification and policy enforcement
  • Sandbox (FortiSandbox) - advanced threat detection for unknown files

Network Segmentation

FortiGate excels at network segmentation - dividing your network into separate zones with policy-controlled traffic between them. A well-segmented Perth business network typically includes:

  • LAN - staff workstations and managed devices
  • DMZ - servers or services exposed to the internet
  • Guest WiFi - isolated from all internal resources
  • Management - network infrastructure (switches, APs, printers)
  • VoIP - separate to ensure call quality

SSL Inspection

Over 90% of internet traffic is now encrypted. Without SSL inspection, your FortiGate cannot see inside HTTPS traffic - making IPS, web filtering, and antivirus almost useless for modern threats. SSL inspection requires deploying the FortiGate's certificate to managed devices so that inspected traffic is trusted.

Secure Remote Access (VPN)

FortiGate provides two VPN options: IPsec VPN for site-to-site connectivity and FortiClient SSL VPN for remote users. FortiClient integrates with FortiGate to enforce that remote devices meet security requirements (endpoint protection active, OS patched) before they can connect - a feature called Zero Trust Network Access (ZTNA).

FortiGate and SD-WAN

For Perth businesses with multiple offices or multiple internet connections (NBN + 4G failover, for example), FortiGate's built-in SD-WAN provides intelligent traffic management:

  • Automatic failover when the primary internet connection drops
  • Load balancing across multiple connections for throughput
  • Application-aware routing - send Microsoft 365 traffic via the most reliable link, general browsing via a cheaper connection
  • Per-connection quality monitoring with automatic remediation

Ongoing FortiGate Management

A FortiGate is not a set-and-forget appliance. Ongoing management includes:

  • Firmware updates - Fortinet releases security patches regularly; FortiGate firmware should be updated within 30 days of critical patches
  • FortiGuard subscription renewal - subscriptions must be renewed annually to maintain threat intelligence
  • Policy review - firewall policies accumulate over time; unused rules should be removed, and policies should be reviewed quarterly
  • Log monitoring - FortiGate generates detailed traffic and threat logs; someone needs to review alerts and investigate anomalies

Why We Recommend FortiGate for Perth Businesses

Several business firewall platforms exist in the Perth market. We recommend FortiGate for most Perth SMBs and mid-market organisations because of its combination of:

  • Feature depth - NGFW, IPS, web filtering, SSL inspection, SD-WAN, and VPN in a single appliance
  • Price point - enterprise-grade capability without enterprise pricing
  • Manageability - centralised management across multiple sites and strong integration with endpoint security
  • Local support availability - widely deployed in Australia, with strong local expertise and supply chain

That said, the right firewall depends on your existing environment, budget, and requirements. We'll recommend what genuinely fits your business - not what earns the highest margin.

Frequently Asked Questions

How is a FortiGate different from the router my internet provider supplied?

An ISP router is designed for basic internet connectivity, not security. A FortiGate is a purpose-built business firewall that inspects traffic at the application level, blocks known threats, filters web content, and can segment your network into separate zones, none of which a standard ISP router is built to do.

Which FortiGate model does my Perth business actually need?

It depends mainly on your user count and how much throughput you need, especially if SSL inspection is switched on, since that adds significant processing load. As a rough guide, the 60F suits small offices up to around 25-50 users, while the 80F and 100F handle mid-sized teams, but the right model really needs sizing against your specific setup rather than guessed from headcount alone.

Do we need to pay for FortiGuard subscriptions, or does the firewall work without them?

It will still function as a basic firewall without active FortiGuard subscriptions, but most of what makes a FortiGate worth having, intrusion prevention, web filtering, antivirus scanning, and application control, depends on those licences being active. Without them you're effectively paying for enterprise hardware and getting consumer-level protection.

Is a FortiGate a set-and-forget device once it's installed?

No, it needs ongoing attention to stay effective. Firmware needs patching, FortiGuard subscriptions need renewing annually, firewall policies accumulate and should be reviewed periodically, and someone needs to actually look at the logs and alerts it generates, which is why most Perth businesses have it managed rather than left running untouched.

We deploy, configure, and manage FortiGate firewalls for Perth businesses - from initial setup to ongoing firmware management and policy reviews.

Network Services →

FortiGate setup or support for your Perth business

Call 0433 087 091 - we size, supply, configure, and support FortiGate for Perth businesses across all industries.

Get a FortiGate Quote

For related reading, see our guides to Zero Trust Security for Perth Businesses and Network Security for Perth Businesses.

Share this article