• company
  • Fortinet
    cisco
    f5
    cisco
  • IPS Throughput
  • ۶Gbps



  • Threat Protection
  • ۴Gbps



  • NGFW
  • ۵Gbps



  • Interfaces
  • Multiple GE RJ45, GE SFP and 10 GE SFP+ slots



  • IPv4 Firewall Throughput
  • ۵۲ / ۵۲ / ۳۳ Gbps



  • IPv6 Firewall Throughput
  • ۵۲ / ۵۲ / ۳۳ Gbps



  • Firewall Latency (64 byte, UDP)
  • ۳ μs



  • Firewall Throughput (Packet per Second)
  • ۴۹.۵Mpps



  • Concurrent Sessions (TCP)
  • ۱۱ Million



  • New Sessions/Second (TCP)
  • ۲۸۰,۰۰۰



  • Firewall Policies
  • ۱۰۰,۰۰۰



  • IPsec VPN Throughput (512 byte)
  • ۲۵Gbps



  • SSL-VPN Throughput
  • ۳.۶ Gbps



  • Concurrent SSL-VPN Users
  • ۱۰,۰۰۰



  • Throughput: FW + AVC (1024B)

  • ۴۵Gbps


  • Throughput: FW + AVC + IPS (1024B)

  • ۳۹Gbps


  • Maximum concurrent sessions, with AVC

  • ۳۰million

    ۳۰Million
  • Maximum new connections per second, with AVC

  • ۲۶۳K

    ۱۳۰K
  • TLS (Hardware Decryption)

  • ۷.۵Gbps

    ۷.۵Gbps
  • Throughput: NGIPS (1024B)

  • ۵۲Gbps

    ۳۰Gbps
  • IPSec VPN Throughput (1024B TCP w/Fastpath)

  • ۱۴Gbps

    ۱۳.۵Gbps
  • Multi-Instance Capable

  • Yes


  • Application Visibility and Control (AVC)

  • Standard, supporting more than 4000 applications, as well as geolocations, users, and websites


  • AVC: OpenAppID support for custom, open source, application detectors

  • Standard

    Standard
  • Cisco Security Intelligence

  • Standard, with IP, URL, and DNS threat intelligence

    Standard, with IP, URL, and DNS threat intelligence
  • Cisco Firepower NGIPS

  • Available; can passively detect endpoints and infrastructure for threat correlation and Indicators of Compromise (IoC) intelligence

    Available; can passively detect endpoints and infrastructure for threat correlation and Indicators of Compromise (IoC) intelligence
  • Cisco AMP for Networks

  • Available; enables detection, blocking, tracking, analysis, and containment of targeted and persistent malware, addressing the attack ontinuum both during and after attacks. Integrated threat correlation with Cisco AMP for Endpoints is also optionally available


  • Cisco AMP Threat Grid sandboxing

  • Available

    Available
  • URL Filtering: number of categories

  • More than 80

    More than 80
  • URL Filtering: number of URLs categorized

  • More than 280 million

    More than 280 Million
  • Third-party and open- source ecosystem

  • Open API for integrations with third-party products; Snort® and OpenAppID community resources for new and specific threats


  • High availability and clustering

  • Active/standby. Cisco Firepower 4100 Series allows clustering of up to 6 chassis

    Active/standby; up to 6 modules across up to 6 different Firepower 9300 chassis.
  • Cisco Trust Anchor Technologies

  • Firepower 4100 Series platforms include Trust Anchor Technologies for supply chain and software image assurance.

    Cisco Firepower 9300 Series platforms include Trust Anchor Technologies for supply chain and software image assurance.
  • Stateful inspection firewall throughput

  • ۷۵Gbps

    ۷۵Gbps
  • Stateful inspection firewall throughput (multiprotocol)

  • ۵۰Gbps

    ۵۰Gbps
  • Concurrent firewall connections

  • ۳۵million

    ۵۵Million
  • Firewall latency (UDP 64B microseconds)

  • ۳.۵

    ۳.۵
  • New connections per second

  • ۸۰۰,۰۰۰

    ۸۰۰,۰۰۰
  • IPsec VPN throughput (450B UDP L2L test)

  • ۱۵Gbps

    ۱۵Gbps
  • Maximum VPN Peers

  • ۲۰,۰۰۰

    ۲۰,۰۰۰
  • Security contexts (included; maximum)

  • ۱۰; ۲۵۰

    ۱۰;۲۵۰
  • High availability

  • Active/active and active/standby

    Active/active and active/standby
  • Clustering

  • Up to 16 appliances

    Up to 16 security modules across up to 16 different Firepower 9300 chassis
  • Scalability

  • VPN Load Balancing, Firewall Clustering

    VPN load balancing, firewall clustering
  • Centralized management

  • Centralized configuration, logging, monitoring, and reporting are performed by Cisco Security Manager or alternatively in the cloud with Cisco Defense Orchestrator

    Centralized configuration, logging, monitoring, and reporting are performed by Cisco Security Manager or alternatively in the cloud with Cisco Defense Orchestrator
  • Adaptive Security Device Manager

  • Web-based, local management for small-scale deployments

    Web-based, local management for small-scale deployments
  • Storage

  • ۴۰۰GB


  • Intelligent Traffic Processing


  • L7 requests per second: 5.5M L4 connections per second: 2.1M L4 HTTP requests per second: 25M Maximum L4 concurrent connections: 140M Throughput: 160 Gbps/80 Gbps L4/L7

  • Hardware Offload SSL/TLS


  • ECC†: ۴۸K TPS (ECDSA P-256) RSA: 80K TPS (2K keys) ۴۰Gbps bulk encryption

  • FIPS SSL


  • N/A

  • Hardware Compression


  • ۴۰Gbps

  • Hardware DDoS Protection


  • ۱۳۰M SYN cookies per second

  • TurboFlex Performance Profiles


  • Tier 3 (2x bandwidth)

  • Software Compression


  • N/A

  • Software Architecture


  • ۶۴-bit TMOS

  • On-Demand Upgradable


  • N/A

  • Virtualization (Maximum Number of vCMP Guests)


  • ۳۲

  • Processor


  • One 18-Core Intel Xeon processor (total 36 hyperthreaded logical processor cores)

  • Memory


  • ۲۵۶GB DDR4

  • Hard Drive


  • ۱x 960 GB Enterprise Class SSD

  • Throughput: Firewall (FW) + Application Visibility and Control (AVC) (1024B)



  • ۲۵Gbps
  • Throughput: FW + AVC + Intrusion Prevention System (IPS (1024B)



  • ۲۱Gbps
  • IPSec VPN throughput (1024B TCP w/Fastpath)

  • ۱۴Gbps

    ۱۳.۵Gbps
  • AVC



  • Standard, supporting more than 4000 applications, as well as geolocations, users, and websites
  • AVC: OpenAppID support for custom, open-source application detectors

  • Standard

    Standard
  • Cisco Advanced Malware Protection (AMP) for Networks



  • Available; enables detection, blocking, tracking, analysis, and containment of targeted and persistent malware, addressing the attack continuum both during and after attacks. Integrated threat correlation with Cisco AMP for Endpoints is also optionally available
  • URL filtering: number of categories

  • More than 80

    More than 80
  • URL filtering: number of URLs categorized

  • More than 280 million

    More than 280 Million
  • Automated threat feed and IPS signature updates



  • Yes: class-leading Collective Security Intelligence (CSI) from the Cisco Talos® group (https://www.cisco.com/c/en/us/products/security/talos.html)
  • Third-party and opensource ecosystem



  • Open API for integrations with third-party products; Snort® and OpenAppID community resources for new and specific threats
محصولی برای مقایسه وجود ندارد.