Ubiquiti UniFi Enterprise Fortress Gateway | EFG


£1,747.49 exc vat
£2,096.99 inc vat

EFG

20

We have 20 in stock.
   


Key Features

  • Runs UniFi Network for full-stack network management.
  • Shadow Mode High Availability with automatic failover provides uninterrupted connectivity (VRRP).*
  • 12.5 Gbps routing with IDS/IPS.
  • Licence-free, real-time inspection of encrypted packets with NeXT AI Inspection (SSL/TLS decryption).
  • Two (2) 25G SFP28, two (2) 10G SFP+, and two (2) 2.5 GbE RJ45 ports (all LAN/WAN remappable).**
  • Two (2) included hot-swap PSUs for power redundancy.
  • Features a 1.3" touchscreen.
  • Includes 90 days of Professional Phone Support (via Ubiquiti).
  • Standard Warranty : 2 Years

Downloads
Datasheet

About This Product
The Ubiquiti UniFi EFG Enterprise Fortress Gateway Broadband Router is a 25G Cloud Gateway with 500+ UniFi device / 5,000+ client support, 12.5 Gbps IPS routing, and complete high availability.

Cybersecurity

Intrusion Detection & Prevention
UniFi's intrusion detection and prevention system (IDS/IPS) guards against potential threats that originate both inside and outside the network. This dynamic system swiftly detects and blocks suspicious activity that could signal a security compromise based on a real-time database of known cyber threats.

SSL Inspection
Available completely licence-free on the Enterprise Fortress Gateway, NeXT AI Inspection analyses encrypted packets in real time to enhance IDS/IPS and content filtering precision and improve traffic identification. Additionally, access to internal payload details enables powerful cybersecurity use cases, such as monitoring search engine and LLM queries for safety and security concerns.

Application-Aware Firewall
UniFi's application-aware firewall accurately detects and blocks traffic directed at specific applications, websites, and IP addresses. Easily block specific targets that might pose security threats at the network, VLAN, and client device level.

Content & Domain Filtering
Preset content filters can be applied to a specific VLAN with just a click, restricting access to explicit and malicious domains. UniFi's application-aware firewall enhances flexibility with advanced filtering options, including application, domain, and IP-based filtering.

Routing & VPN

SD-WAN & Automatic Site-to-Site VPN
UniFi's licence-free Site Magic makes Site-to-Site VPN and SD-WAN setup easier than ever. Instead of configuring complicated, manual Site-to-Site VPNs between multiple gateways, simply select the sites and subnets to connect through the UniFi Site Manager at unifi.ui.com.

One-Click WiFi & VPN Client
UniFi Identity is the ultimate solution for seamless network and physical access. Grant permissions to users and let them access IT services, all with a simple click. With One-Click VPN, users can remotely access your organisation's network without entering credentials. Say goodbye to VPN client configuration nightmares.

Comprehensive VPN Server & Client Support
The Enterprise Fortress Gateway supports a wide range of VPN protocols, including WireGuard and OpenVPN, for both VPN server and client services. With UniFi, VPN services are exceptionally intuitive to deploy, making it easy to eliminate port forwarding requirements to enhance your network's security posture.

Policy-Based Routing
With Policy-Based Routes (PBR), the EFG can send traffic destined for specific domain names, IP addresses, and regions through a specific WAN or VPN interface. PBR works seamlessly with multi-WAN load balancing and VPN client services, making it easy to segment application traffic based on priority or performance requirements.

IPv6 Enabled Networking
IPv6 adoption is increasing as a result of IPv4 addresses being exhausted and more client devices coming online. UniFi is ready for IPv6 networking, with broad support for IPv6 traffic across WAN and LAN interfaces, through its application-aware firewall, and more.

Full NAT Control
UniFi offers granular control over network address translation (NAT), with support for NAT Pooling, Source NAT (SNAT), Destination NAT (DNAT), and Masquerade NAT. NAT can also be disabled entirely on all or specific VLANs.

High Availability

Shadow Mode (VRRP)
For enterprise-grade High Availability with Virtual Router Redundancy Protocol (VRRP), link a second EFG (sold separately) in Shadow Mode. If the primary EFG goes offline, its Shadow will automatically take over so your network continues running with minimal downtime.

Multi-WAN Load Balancing
The EFG can leverage multiple internet connections at a single site for highly-resilient service. Choose between Failover Only mode, which uses an alternative internet source only as a backup, and Distributed mode, which splits internet traffic between your internet sources based on a customisable weighting.

Power Redundancy
The EFG is thoughtfully designed with dual hot-swappable PSUs for complete protection against unexpected internal and external power disruptions. Provide power to the Enterprise Fortress Gateway from redundant sources, and replace a PSU without network downtime.

ISP Health Monitoring
The UniFi Site Manager dashboard at unifi.ui.com features ISP health metrics for quick, insightful monitoring across sites. Real-time email and mobile app alerts for site-level ISP health events are also available with push notifications settings customisable for each site.

Site Management

Global Admin Management
The UniFi Site Manager at unifi.ui.com enables easy management of all admins across UniFi sites from a single interface. Effortlessly onboard and offboard admins with granular control over site access and application permissions.

Global Update Management
Get a centralised view of all deployed UniFi devices across sites from the UniFi Site Manager at unifi.ui.com. Search for specific devices, navigate to sites for full management, and coordinate bulk device updates with ease.

 


Key Features

  • Runs UniFi Network for full-stack network management.
  • Shadow Mode High Availability with automatic failover provides uninterrupted connectivity (VRRP).*
  • 12.5 Gbps routing with IDS/IPS.
  • Licence-free, real-time inspection of encrypted packets with NeXT AI Inspection (SSL/TLS decryption).
  • Two (2) 25G SFP28, two (2) 10G SFP+, and two (2) 2.5 GbE RJ45 ports (all LAN/WAN remappable).**
  • Two (2) included hot-swap PSUs for power redundancy.
  • Features a 1.3" touchscreen.
  • Includes 90 days of Professional Phone Support (via Ubiquiti).
  • Standard Warranty : 2 Years

Downloads
Datasheet

About This Product
The Ubiquiti UniFi EFG Enterprise Fortress Gateway Broadband Router is a 25G Cloud Gateway with 500+ UniFi device / 5,000+ client support, 12.5 Gbps IPS routing, and complete high availability.

Cybersecurity

Intrusion Detection & Prevention
UniFi's intrusion detection and prevention system (IDS/IPS) guards against potential threats that originate both inside and outside the network. This dynamic system swiftly detects and blocks suspicious activity that could signal a security compromise based on a real-time database of known cyber threats.

SSL Inspection
Available completely licence-free on the Enterprise Fortress Gateway, NeXT AI Inspection analyses encrypted packets in real time to enhance IDS/IPS and content filtering precision and improve traffic identification. Additionally, access to internal payload details enables powerful cybersecurity use cases, such as monitoring search engine and LLM queries for safety and security concerns.

Application-Aware Firewall
UniFi's application-aware firewall accurately detects and blocks traffic directed at specific applications, websites, and IP addresses. Easily block specific targets that might pose security threats at the network, VLAN, and client device level.

Content & Domain Filtering
Preset content filters can be applied to a specific VLAN with just a click, restricting access to explicit and malicious domains. UniFi's application-aware firewall enhances flexibility with advanced filtering options, including application, domain, and IP-based filtering.

Routing & VPN

SD-WAN & Automatic Site-to-Site VPN
UniFi's licence-free Site Magic makes Site-to-Site VPN and SD-WAN setup easier than ever. Instead of configuring complicated, manual Site-to-Site VPNs between multiple gateways, simply select the sites and subnets to connect through the UniFi Site Manager at unifi.ui.com.

One-Click WiFi & VPN Client
UniFi Identity is the ultimate solution for seamless network and physical access. Grant permissions to users and let them access IT services, all with a simple click. With One-Click VPN, users can remotely access your organisation's network without entering credentials. Say goodbye to VPN client configuration nightmares.

Comprehensive VPN Server & Client Support
The Enterprise Fortress Gateway supports a wide range of VPN protocols, including WireGuard and OpenVPN, for both VPN server and client services. With UniFi, VPN services are exceptionally intuitive to deploy, making it easy to eliminate port forwarding requirements to enhance your network's security posture.

Policy-Based Routing
With Policy-Based Routes (PBR), the EFG can send traffic destined for specific domain names, IP addresses, and regions through a specific WAN or VPN interface. PBR works seamlessly with multi-WAN load balancing and VPN client services, making it easy to segment application traffic based on priority or performance requirements.

IPv6 Enabled Networking
IPv6 adoption is increasing as a result of IPv4 addresses being exhausted and more client devices coming online. UniFi is ready for IPv6 networking, with broad support for IPv6 traffic across WAN and LAN interfaces, through its application-aware firewall, and more.

Full NAT Control
UniFi offers granular control over network address translation (NAT), with support for NAT Pooling, Source NAT (SNAT), Destination NAT (DNAT), and Masquerade NAT. NAT can also be disabled entirely on all or specific VLANs.

High Availability

Shadow Mode (VRRP)
For enterprise-grade High Availability with Virtual Router Redundancy Protocol (VRRP), link a second EFG (sold separately) in Shadow Mode. If the primary EFG goes offline, its Shadow will automatically take over so your network continues running with minimal downtime.

Multi-WAN Load Balancing
The EFG can leverage multiple internet connections at a single site for highly-resilient service. Choose between Failover Only mode, which uses an alternative internet source only as a backup, and Distributed mode, which splits internet traffic between your internet sources based on a customisable weighting.

Power Redundancy
The EFG is thoughtfully designed with dual hot-swappable PSUs for complete protection against unexpected internal and external power disruptions. Provide power to the Enterprise Fortress Gateway from redundant sources, and replace a PSU without network downtime.

ISP Health Monitoring
The UniFi Site Manager dashboard at unifi.ui.com features ISP health metrics for quick, insightful monitoring across sites. Real-time email and mobile app alerts for site-level ISP health events are also available with push notifications settings customisable for each site.

Site Management

Global Admin Management
The UniFi Site Manager at unifi.ui.com enables easy management of all admins across UniFi sites from a single interface. Effortlessly onboard and offboard admins with granular control over site access and application permissions.

Global Update Management
Get a centralised view of all deployed UniFi devices across sites from the UniFi Site Manager at unifi.ui.com. Search for specific devices, navigate to sites for full management, and coordinate bulk device updates with ease.

 

Related Products

You haven't placed any content yet.