| Model |
FPR3140-NGFW-K9 |
| Hardware specifications |
| Maximum number of interface |
Up to 24 total Ethernet ports (8 x 1G RJ-45, 8 x 1/10/25G SFP, and network module) |
| Network modules |
8 x 1/10/25G, 4 x 40G Options |
| Integrated I/O |
8 x 10M/100M/1G BASE-T Ethernet interfaces (RJ-45)
8 x 1/10/25 Gigabit (SFP) Ethernet interfaces |
| Integrated network management ports |
1 x 1/10G SFP |
| Storage |
1 x 900 GB, 1 spare slot |
| Serial port |
1 x RJ-45 console |
| USB |
1 x USB 3.0 Type-A (900mA) |
| Dimensions (H x W x D) |
4.4 x 43.3 x 50.8 cm |
| Form factor (rack units) |
1RU |
| Power Supplies |
| Configuration |
Dual 400W AC
Single/Dual 400W DC optional |
| AC input voltage |
100 to 240V AC |
| AC maximum input current |
< 6A at 100V |
| AC maximum output power |
400W |
| AC frequency |
50/60 Hz (nominal) |
| AC efficiency |
> 89% at 50% load |
| DC input voltage |
-48V to -60VDC |
| DC maximum input current |
< 12.5A at -48V |
| DC maximum output power |
400W |
| DC efficiency |
>88% at 50% load |
| Redundancy |
1 + 1 AC or DC with dual supplies |
| Fans |
2 hot-swappable fan modules (with 2 fans each) |
| Noise |
65 dBA @ 25C; 74 dBA maximum |
| Rack mountable |
Yes. Fixed mount brackets optional. (2-post). Mount rails included (4-post EIA-310-D rack) |
| Weight |
25 lbs (11.4kg) 2 x power supplies, 1 x NM, fan module, 1 x SSD |
| Temperature: operating |
32 to 104 ℉ (0 to 40℃) |
| Temperature: non-operating |
-4 to 149℉ (-20 to 65℃) |
| Humidity: operating |
10 to 85% non-condensing |
| Humidity:non-operating |
5 to 95% non-condensing |
| Altitude: operating |
10,000 ft (max) |
| Altitude: non-operating |
40,000 ft (max) |
| Performance specifications and feature highlights with the Cisco Secure Firewall Threat Defense (TD) image |
| Throughput: FW + AVC (1024B) |
45.0 Gbps |
| Throughput: FW + AVC + IPS (1024B) |
45.0 Gbps |
| Maximum concurrent sessions, with AVC |
10 Million |
| New connections Per Second with, AVC |
300,000 |
| TLS |
11.5 Gbps |
| Throughput: NGIPS (1024B) |
45.0 Gbps |
| IPSec VPN Throughput (1024B TCP w/Fastpath) |
22.4 Gbps |
| Projected IPSec VPN throughput (1024B TCP w/Fastpath) with VPN Offload (FTP 7.2) |
39.4 Gbps |
| Maximum VPN Peers |
20,000 |
| Local On-device Management |
Yes |
| Centralized Management |
Centralized configuration, logging, monitoring, and reporting are performed by the Firewall Management Center or alternatively in the cloud with Cisco Defense Orchestrator |
| Application Visibility and Control (AVC) |
Standard, Supporting more than 4000 applications, as well as gelocation, users, and websites |
| AVC: OpenAppID Support for custom, open source application detectors |
Standard |
| Cisco Security Intelligence |
Standard with IP, URL, and DNS Threat intelligence |
| Cisco Secure IPS |
Available: can passively detect endpoints and infrastructure for threat correlation an indicators of Compromise (IOC) intelligence |
| Cisco Malware Defense |
Available: enables detection, blocking, tracking, analysis, and containment of targeted and persistent malware, addressing the attack continuum both during and after attacks, integrated threat correlation with CISCO Secure Endpoint is also optionally available |
| Cisco Secure Malware Analytics |
Available |
| URL Filtering: Number of Categories |
More than 80 |
| URL Filtering: Number of URL categorized |
More than 280 million |
| Automated Threat Feed and IPS signature updates |
Yes: class-ending Collective Security Intelligence (CSI) from the Cisco Talos Group |
| Third-party and open-source ecosystem |
Open API for integrations with third-party products; Snort and OpenAppID community resources for new and specific threats |
| High Availability & Clustering |
Active/active, Active/standby. |
| Cisco Secure Firewall 3100 Series allows clustering of up 8 chassis (no clustering on 3105) |
| Cisco Trust Anchor Technologies |
Secure Firewall 3100 Series platforms include Trust Anchor Technologies for supply chain and software image assurance. Please see the section below for additional details |
Hiệu năng của FPR3140-NGFW-K9 thay đổi như thế nào khi đồng thời kích hoạt Firewall, AVC và IPS?
Khi đồng thời sử dụng Firewall, Application Visibility and Control (AVC) và Intrusion Prevention System (IPS), FPR3140-NGFW-K9 vẫn duy trì thông lượng lên đến 45 Gbps. Điều này cho thấy thiết bị được tối ưu để vận hành đầy đủ các tính năng bảo mật mà không làm suy giảm đáng kể hiệu năng so với chế độ chỉ sử dụng tường lửa.
FPR3140-NGFW-K9 được thiết kế để hoạt động trong dải nhiệt độ môi trường như thế nào?
Thiết bị được thiết kế để hoạt động ổn định trong dải nhiệt độ 0°C đến 40°C, phù hợp với hầu hết các phòng máy và trung tâm dữ liệu có hệ thống làm mát tiêu chuẩn. Khi không hoạt động, thiết bị có thể chịu được nhiệt độ lưu trữ từ -20°C đến 65°C mà vẫn đảm bảo an toàn cho phần cứng.
FPR3140-NGFW-K9 có thể nâng cấp lên cổng 40G để đáp ứng nhu cầu mở rộng băng thông của trung tâm dữ liệu không?
FPR3140-NGFW-K9 hỗ trợ mở rộng thông qua Network Module, cho phép bổ sung tối đa 4 cổng 40G hoặc 8 cổng 1/10/25G tùy theo nhu cầu triển khai. Nhờ đó, thiết bị dễ dàng đáp ứng các hệ thống yêu cầu kết nối tốc độ cao trong môi trường trung tâm dữ liệu.