Cisco Secure Firewall CSF6160-A-TD-K9 là thiết bị Next-Generation Firewall (NGFW) thuộc dòng Cisco Secure Firewall 6100 Series, tích hợp sẵn Cisco Secure Firewall Threat Defense (FTD), được thiết kế dành cho trung tâm dữ liệu, nhà cung cấp dịch vụ và doanh nghiệp quy mô lớn. Thiết bị có thiết kế rack 2RU, trang bị 12 cổng 1/10/25/50GbE SFP56, 4 cổng 40/100/200GbE QSFP56, 2 cổng quản trị 1/10/25GbE SFP28, hỗ trợ Network Module mở rộng và 2 ổ SSD 3.6TB. Với hiệu năng Firewall 600 Gbps, NGFW 550 Gbps và IPSec VPN 450 Gbps, CSF6160-A-TD-K9 đáp ứng hiệu quả các hạ tầng mạng yêu cầu băng thông lớn, bảo mật toàn diện và khả năng vận hành ổn định trong các môi trường quan trọng.

Đặc điểm nổi bật của CSF6160-A-TD-K9
- Tích hợp Cisco Secure Firewall Threat Defense (FTD) với đầy đủ tính năng NGFW, IPS, Application Visibility and Control (AVC) và VPN IPsec.
- Hiệu năng Firewall + AVC đạt 600 Gbps, đáp ứng yêu cầu bảo vệ lưu lượng mạng dung lượng rất lớn.
- Hiệu năng NGFW (Firewall + AVC + IPS) đạt 550 Gbps, duy trì khả năng kiểm tra lưu lượng chuyên sâu.
- Thông lượng VPN IPsec lên đến 450 Gbps, phù hợp kết nối bảo mật giữa nhiều trung tâm dữ liệu và chi nhánh.
- Trang bị 12 cổng SFP56 1/10/25/50GbE và 4 cổng QSFP56 40/100/200GbE tích hợp sẵn trên thiết bị.
- Hỗ trợ nhiều loại Network Module và Fail-to-Wire Module, giúp mở rộng linh hoạt theo yêu cầu triển khai thực tế.
- Hỗ trợ tối đa 75 triệu phiên kết nối đồng thời và 1,5 triệu kết nối mới mỗi giây, đáp ứng môi trường lưu lượng cực lớn.
- Hỗ trợ 250 VRF, khả năng Cluster tối đa 16 thiết bị cùng chế độ High Availability Active/Standby và Active/Active.
- Trang bị 2 ổ cứng SSD dung lượng 3.6 TB, nguồn điện dự phòng 1+1 Hot-Swap và hệ thống quạt làm mát có thể thay thế khi đang hoạt động.
- Hỗ trợ nhận diện hơn 8.100 ứng dụng, đồng thời kiểm soát theo người dùng, website và vị trí địa lý nhằm tăng cường khả năng bảo mật.
Ứng dụng thực tế của CSF6160-A-TD-K9
Cisco Secure Firewall CSF6160-A-TD-K9 phù hợp triển khai tại các trung tâm dữ liệu, doanh nghiệp lớn, tổ chức tài chính, cơ quan chính phủ, nhà cung cấp dịch vụ Internet (ISP), hệ thống điện toán đám mây và các môi trường mạng có lưu lượng rất lớn. Thiết bị giúp bảo vệ hạ tầng mạng trước các mối đe dọa hiện đại thông qua khả năng kiểm soát ứng dụng, phòng chống xâm nhập, mã hóa VPN IPsec tốc độ cao, phân vùng mạng bằng VRF, triển khai High Availability hoặc Clustering nhiều thiết bị nhằm đảm bảo tính sẵn sàng cao, khả năng mở rộng linh hoạt và vận hành ổn định cho các hệ thống hạ tầng CNTT quan trọng.
Xem thêm
Rút gọn
| Model | CSF6160-A-TD-K9 |
| Hardware specifications | |
| Form factor | 2 RU for 19" Rack |
| Fixed ports | 12 x 1/10/25/50 Gigabit Ethernet SFP56 Ports |
| 4 x 40/100/200 Gigabit Ethernet QSFP56 Ports | |
| Management Ethernet | 2 x 1/10/25 Gigabit Ethernet SFP28 Ports |
| Network Modules | Standard Ethernet Modules |
| ● 8 x 1/10 Gigabit Ethernet SFP+ Network Module | |
| ● 8 x 1/10/25 Gigabit Ethernet SFP28 Network Module | |
| ● 4 x 40 Gigabit Ethernet QSFP+ Network Module | |
| ● 4 x 40/100/200 Gigabit Ethernet QSFP56 Network Module | |
| ● 2 x 40/100 Gigabit Ethernet QSFP28 Network Module | |
| ● 2 x 200/400 Gigabit Ethernet QSFP-DD Network Module | |
| Fail-to-Wire (FTW) Modules | |
| ● 8 x 1 Gigabit Ethernet Copper Fail-to-Wire (FTW) Network Module | |
| ● 6 x 1 Gigabit Ethernet SX Fiber Fail-to-Wire (FTW) Network Module | |
| ● 6 x 10 Gigabit Ethernet SR Fiber Fail-to-Wire (FTW) Network Module | |
| ● 6 x 10 Gigabit Ethernet LR Fiber Fail-to-Wire (FTW) Network Module | |
| ● 6 x 25 Gigabit Ethernet SR Fiber Fail-to-Wire (FTW) Network Module | |
| ● 6 x 25 Gigabit Ethernet LR Fiber Fail-to-Wire (FTW) Network Module | |
| Maximum number of interfaces | |
| Interface Speed / Type | Fixed Ports |
| 1 / 10 / 25 / 50 Gigabit (SFP56) | 12 Ports |
| 40 / 100 / 200 Gigabit (QSFP56) | 4 Ports |
| 400 Gigabit (QSFP-DD) | 0 Ports |
| Management (SFP28) | 2 Ports |
| Note: 50G Support: Only the 12 Fixed SFP56 ports support native 50G speeds (Modules listed are SFP28 maxing at 25G). | |
| FTW (Fail-to-Wire): If using Fail-to-Wire modules (6-ports each), the total 1/10/25G count would be 24 ports (12 Fixed + 12 Module). | |
| The above port counts do not factor in the breakout capability supported by different interfaces. | |
| Console port | 1 x RJ-45 console |
| USB port | 1 USB 3.0 |
| Storage | 2 x 3.6 TB |
| Power over Ethernet | N/A |
| Transceiver support | Refer to Cisco Secure Firewall (CSF) 6100 Hardware Installation Guide |
| Mean Time Between Failure (MTBF) | Chassis: 212,000 Hours |
| Chassis dimensions (HxWxD) | 3.5” H x 16.9” W x 32.5” D (8.89 cm x 42.93 cm x 82.55 cm) |
| Weight | 66lbs (29.94kg), fully loaded |
| Cooling | 4 Field Replaceable Fan module; every module has 2 fans |
| Rack mountable | Yes, mount rails included (4-post EIA-310-D rack) |
| Power Supply Details | |
| Configuration | Dual high-voltage AC/DC power supplies. |
| ● High Line AC: Up to 3000W per power supply, hot-swappable, load-sharing redundancy. | |
| ● Low Line AC: Up to 1500W per power supply, load sharing with no redundancy. | |
| Dual low-voltage DC power supplies offered. | |
| ● Both Inputs Connected: Up to 3000W per power supply, hot-swappable, load-sharing redundancy. | |
| ● One Input Connected: Up to 1500W per power supply, load sharing with no redundancy. | |
| AC input voltage | 100 to 120 VAC (HVAC low line); 200 to 277 VAC (HVAC high line) |
| AC input frequency | 50—60 Hz |
| HVDC input voltage | 240 to 380 VDC |
| LVDC input voltage | —48VDC to —60VDC |
| AC current draw, maximum | 13 Amperes (high line AC) |
| System HVDC current draw, maximum | 11 Amperes |
| System LVDC current draw, maximum | 29 Amperes |
| Power consumption, typical | 1740 Watts |
| Power consumption, maximum | 2440 Watts |
| Redundancy | 1+1 Redundancy |
| ● Redundant only with dual HVAC, HVDC, or dual-input LVDC. | |
| ● LVAC and single-input DC do not support redundancy. | |
| Operating Range | |
| Temperature: operating | 32°F to 104°F (0°C to 40°C) |
| Humidity: operating | 5% to 90% (non-condensing) |
| Altitude: operating | 0 to 10,000 ft. |
| De-rate the maximum operating temperature 1°C/1K-ft. above 6000 ft. | |
| Acoustic noise | Sound Pressure: <=74 dBA (typical), <= 90 dBA (maximum) |
| Sound Power: <=81 dB (typical), <=98 dB (maximum) | |
| Non-operating/storage environment | |
| Temperature: nonoperating | –40°F to 158°F (–40°C to 70°C) |
| Humidity: nonoperating | 5% to 95% (non-condensing) |
| Altitude: nonoperating | 40,000 ft. |
| Performance Cisco Secure Firewall 6160 Series with FTD software | |
| Throughput: Firewall + Application Visibility and Control (AVC) (1024B) | 600 Gbps |
| Throughput: AVC + Intrusion Prevention System (IPS) (1024B) | 550 Gbps |
| NGFW Throughput: FW + AVC + IPS (1024B) | 550 Gbps |
| IPSec VPN Throughput (1024B TCP w/Fastpath) | 450 Gbps |
| TLS Decryption[1] | 100 Gbps |
| Application Visibility and Control (AVC) | Standard, supporting more than 8100 applications, as well as geolocations, users, and websites |
| Scalability Cisco Secure Firewall 6160 Series FTD software | |
| Maximum concurrent sessions, with AVC | 75 Million |
| Maximum new connections per second, with AVC | 1.5 Million |
| Maximum VPN peers | 60 K |
| Maximum virtual router instances (VRF) | 250 |
| High availability | Active/Standby, Active/Active (with clustering) |
| Instances (Multi-Instance) | Available in future release |
| Clustering | Up to 16 |
| Compliance: Cisco 6100 Series regulatory, safety, and EMC compliance | |
| Regulatory compliance | Products comply with CE markings per directives 2014/30/EU and 2006/108/EC |
| Safety | ● UL 62368-1 |
| ● UL 60950-1 | |
| ● CAN/CSA-C22.2 No. 62368-1 | |
| ● CAN CSA C22.2 60950-1 | |
| ● EN 62368-1 | |
| ● IEC 62368-1 | |
| ● AS/NZS 62368.1 | |
| ● GB4943.1 | |
| EMC: Emissions | ● FCC 47CFR15 Class A |
| ● AS/NZS CISPR 32 Class A | |
| ● EN55032/CISPR 32 Class A | |
| ● ICES-003 Class A | |
| ● VCCI Class A | |
| ● KS C 9832 Class A | |
| ● CNS-15936 Class A | |
| ● EN61000-3-2 Power Line Harmonics | |
| ● EN61000-3-3 Voltage Changes, Fluctuations, and Flicker | |
| EMC: Immunity | ● IEC/EN61000-4-2 Electrostatic Discharge Immunity |
| ● IEC/EN61000-4-3 Radiated Immunity | |
| ● IEC/EN61000-4-4 EFT-B Immunity | |
| ● IEC/EN61000-4-5 Surge | |
| ● IEC/EN61000-4-6 Immunity to Conducted Disturbances | |
| ● IEC/EN61000-4-11 Voltage Dips, Short Interruptions, and Voltage Variations | |
| ● KS C 9835 | |
| EMC: ETSI/EN | ● EN 300 386 Telecommunications Network Equipment (EMC) |
| ● EN55032/CISPR32 Multimedia Equipment (Emissions) | |
| ● EN55035/CISPR 35 Multimedia Equipment (Immunity) | |
| ● EN61000-6-1, EN61000-6-2 Generic Immunity Standards | |
| License for Cisco Secure Firewall 6160 with FTD software (option) | |
| L-CSF6160T-T= | Cisco Secure Firewall 6160 Threat Defense License |
| L-CSF6160T-AMP= | Cisco Secure Firewall 6160 Adv Malware Protection License |
| L-CSF6160T-URL= | Cisco Secure Firewall 6160 URL Filtering License |
| L-CSF6160T-TC= | Cisco Secure Firewall 6160 Threat Defense and URL License |
| L-CSF6160T-TM= | Cisco Secure Firewall 6160 Threat Defense, Malware License |
| L-CSF6160T-TMC= | Cisco Secure Firewall 6160 TD, Malware and URL License |
Vui lòng để lại số điện thoại hoặc lời nhắn, nhân viên sẽ liên hệ trả lời bạn sớm nhất
Switch Cisco
Switch Meraki
Switch HPE Aruba
Switch Huawei
Switch Alcatel
Switch Extreme
Switch Juniper
Switch Fortinet
Switch Allied Telesis
Switch Unifi
Firewall FortiNet
Firewall Cisco
Firewall SonicWall
Firewall CheckPoint
Firewall Sophos
Firewall WatchGuard
Firewall Meraki
Firewall PaloAlto
Firewall Huawei
Router Cisco
Router Huawei
Router Juniper
Router HPE
Router Mikrotik
Wifi Cisco
Wifi Extreme
Wifi Meraki
Wifi Huawei
Wifi Alcatel
Wifi Fortinet
Wifi Aruba
Wifi Unifi
Module Cisco
Module Fortinet
Module Mikrotik
Server Dell
Server HPE
Server Cisco
NAS Synology
NAS Qnap
Microsoft Software
Kaspersky License
Zoom License
Video Conference
Điện thoại IP
Bộ lưu điện UPS
Tủ Rack
Cáp quang
Cáp mạng
Cisco Secure Firewall CSF6160-A-TD-K9 đảm bảo tính sẵn sàng của hệ thống như thế nào?
CSF6160-A-TD-K9 được thiết kế cho hoạt động liên tục với nguồn điện dự phòng 1+1 hot-swappable, 4 mô-đun quạt có thể thay thế nóng, hỗ trợ High Availability (Active/Standby và Active/Active) cùng Fail-to-Wire Module để duy trì lưu lượng khi thiết bị gặp sự cố. Đây là những tính năng quan trọng giúp giảm thời gian gián đoạn dịch vụ trong các môi trường doanh nghiệp và trung tâm dữ liệu.
Điểm nổi bật về khả năng mở rộng giao diện của Cisco Secure Firewall CSF6160-A-TD-K9 là gì?
CSF6160-A-TD-K9 sở hữu sẵn 12 cổng SFP56 1/10/25/50GbE và 4 cổng QSFP56 40/100/200GbE, đồng thời hỗ trợ nhiều loại Network Module như SFP+, SFP28, QSFP+, QSFP56, QSFP-DD và các Fail-to-Wire (FTW) Module. Nhờ đó, thiết bị có thể dễ dàng thích nghi với nhiều hạ tầng mạng khác nhau, từ 1GbE đến 400GbE mà không cần thay thế firewall.
Cisco Secure Firewall CSF6160-A-TD-K9 có đáp ứng được nhu cầu bảo mật cho trung tâm dữ liệu hoặc ISP quy mô lớn không?
Có. CSF6160-A-TD-K9 được thiết kế cho môi trường Data Center và Service Provider với hiệu năng rất cao: 600 Gbps Firewall + AVC, 550 Gbps NGFW (FW + AVC + IPS) và 450 Gbps IPSec VPN. Thiết bị còn hỗ trợ tới 75 triệu phiên đồng thời, 1,5 triệu kết nối mới/giây, 250 VRF và clustering tối đa 16 node, giúp triển khai các hệ thống yêu cầu băng thông lớn và khả năng mở rộng cao.