Features |
3105 |
3110 |
3120 |
3130 |
3140 |
Throughput: FW + AVC (1024B) |
10 Gbps |
17.0 Gbps |
21.0 Gbps |
38.0 Gbps |
45.0 Gbps |
Throughput: FW + AVC + IPS (1024B) |
10 Gbps |
17.0 Gbps |
21.0 Gbps |
38.0 Gbps |
45.0 Gbps |
Maximum concurrent sessions, with AVC |
1.5 million |
2 million |
4 million |
6 million |
10 million |
Maximum new connections per second, with AVC |
90,000 |
130,000 |
170,000 |
240,000 |
300,000 |
TLS1 |
3.2 Gbps |
4.8 Gbps |
6.7 Gbps |
9.1 Gbps |
11.5 Gbps |
Throughput: NGIPS (1024B) |
10.0 Gbps |
17.0 Gbps |
21.0 Gbps |
38.0 Gbps |
45.0 Gbps |
IPSec VPN Throughput |
5.5 Gbps |
8 Gbps |
10 Gbps |
17.8 Gbps |
22.4 Gbps |
Projected IPSec VPN Throughput |
NA |
11.0 Gbps |
13.5 Gbps |
33.0 Gbps |
39.4 Gbps |
Maximum VPN Peers |
2,000 |
3,000 |
7,000 |
15,000 |
20,000 |
Local On-device Management |
Yes |
Yes |
Yes |
Yes |
Yes |
Centralized management |
Centralized configuration, logging, monitoring, and reporting are performed by the Firewall Management Center or alternatively in the cloud with Cisco Defense Orchestrator |
||||
Application Visibility and Control (AVC) |
Standard, supporting more than 4000 applications, as well as geolocations, users, and websites |
||||
AVC: OpenAppID support for custom, open source, application detectors |
Standard |
||||
Cisco Security Intelligence |
Standard, with IP, URL, and DNS threat intelligence |
||||
Cisco Secure IPS |
Available; can passively detect endpoints and infrastructure for threat correlation and Indicators of Compromise (IoC) intelligence |
||||
Cisco Malware Defense |
Available; enables detection, blocking, tracking, analysis, and containment of targeted and persistent malware, addressing the attack continuum both during and after attacks. Integrated threat correlation with Cisco Secure Endpoint is also optionally available |
||||
Cisco Secure Malware Analytics |
Available |
||||
URL Filtering: number of categories |
More than 80 |
||||
URL Filtering: number of URLs categorized |
More than 280 million |
||||
Automated threat feed and IPS signature updates |
Yes: class-leading Collective Security Intelligence (CSI) from the Cisco Talos Group (https://www.cisco.com/c/en/us/products/security/talos.html) |
||||
Third-party and open-source ecosystem |
Open API for integrations with third-party products; Snort® and OpenAppID community resources for new and specific threats |
||||
High availability and clustering |
Active/active, Active/standby. Cisco Secure Firewall 3100 Series allows clustering of up to 8 chassis |
||||
Cisco Trust Anchor Technologies |
Secure Firewall 3100 Series platforms include Trust Anchor Technologies for supply chain and software image assurance. Please see the section below for additional details |
Cisco Secure Firewall 3100 Series
Cisco Secure Firewall Seri 3100 kelas menengah mendukung dunia Anda yang terus berkembang. Perangkat ini membuat pekerjaan hibrida dan zero trust menjadi praktis, dengan fleksibilitas untuk memastikan laba atas investasi yang kuat.
Cisco Secure Firewall Seri 3100 adalah rangkaian peralatan keamanan yang berfokus pada ancaman yang memberikan ketahanan bisnis dan pertahanan ancaman yang unggul. Setiap model menawarkan kinerja yang luar biasa untuk beberapa kasus penggunaan firewall, bahkan saat fungsi ancaman tingkat lanjut diaktifkan. Kemampuan kinerja ini diaktifkan oleh arsitektur CPU modern yang dipadukan dengan perangkat keras yang dibuat khusus yang mengoptimalkan fungsi firewall, kriptografi, dan inspeksi ancaman.
Lima model dalam Seri 3100 memberikan berbagai tingkat kinerja untuk menangani kasus penggunaan dari tepi Internet hingga pusat data dan cloud pribadi. Seri 3100 juga mendukung pengelompokan untuk memberikan peningkatan kinerja yang dapat diskalakan untuk memenuhi kebutuhan Anda seiring pertumbuhan organisasi Anda.
Setiap model dalam seri ini dapat menjalankan perangkat lunak ASA atau Firewall Threat Defense (FTD) dan platform tersebut dapat digunakan dalam mode firewall dan IPS khusus. Untuk rangkaian sebaris dan antarmuka pasif, seri 3100 mendukung Q-in-Q (VLAN bertumpuk) dengan hingga dua header 802.1Q dalam satu paket.