company
f5
Palo Alto
f5
cisco
Intelligent Traffic Processing
L7 requests per second: 4M
L4 connections per second: 1.5M
L4 HTTP requests per second: 14M
Maximum L4 concurrent connections: 80M
Throughput: 84 Gbps/40 Gbps L4/L7
L7 requests per second: 10M
L4 connections per second: 4.2M
L4 HTTP requests per second: 35M
Maximum L4 concurrent connections: 300M
Throughput: 320 Gbps/160 Gbps L4/L7
Hardware Offload SSL/TLS
Included: 240K TPS (2K keys)
Maximum: 240K TPS (2K keys)
۴۰ Gbps bulk encryption*
ECC†: ۱۰۰K TPS (ECDSA P-256)
RSA: 160K TPS (2K keys)
۵۰ Gbps bulk encryption
FIPS SSL
N/A
N/A
Hardware Compression
Included: 40 Gbps, Maximum: 40 Gbps
۶۰Gbps
Hardware DDoS Protection
۸۰M SYN cookies per second
۲۱۰M SYN cookies per second
TurboFlex Performance Profiles
N/A
Tier 3 (4x BW)
Software Compression
N/A
N/A
Software Architecture
۶۴-bit TMOS
۶۴-bit
TMOS
On-Demand Upgradable
N/A
N/A
Virtualization (Maximum Number of vCMP Guests)
۲۴
۵۶
Processor
One 12-Core Intel Xeon processor
(total 24 hyperthreaded logical processor cores)
Two 14-Core Intel Xeon processors
(total 56 hyperthreaded logical processor cores)
Memory
۱۲۸ GB
۵۱۲GB DDR4
Hard Drive
۸۰۰ GB SSD
۱x 1.6TB Enterprise Class SSD
Gigabit Ethernet CU Ports
Optional SFP
Gigabit Fiber Ports (SFP)
Optional SFP+ (SX or LX)
۱۰ Gigabit Fiber Ports (SFP+)
۱۶ SR or LR (sold separately, 2 SR included);
Optional 10G copper direct attach
۴۰ Gigabit Fiber Ports (QSFP+)
۲ SR4 (sold separately) (QSFP+ optical breakout cable
assemblies available to convert to 10 gigabit ports)
Power Supply
Dual 850W included (80+ Platinum efficiency), DC optional
Typical Consumption
۳۳۰W (dual supply, 110V input)
Input Voltage
۹۰–۲۴۰ VAC +/- 10% auto switching, 50/60hz
Typical Heat Output
۱۱۲۵ BTU/hour (dual supply, 110V input)
Dimensions
۳.۴۵” (۸.۷۶ cm) H x 17.3” (۴۳.۹۴ cm) W x 21.4” (۵۴.۳۶ cm) D
۲U industry standard rack-mount chassis
Weight
۴۳ lbs. (19.5 kg) (Dual power supply)
Operating Temperature
۳۲° to 104° F (0° to 40° C)
Operational Relative Humidity
۱۰% to 90% at 40º C
Safety Agency Approval
UL 60950-1 2nd Edition
CAN/CSA C22.2 No. 60950-1-07
EN 60950-1:2006, 2nd Edition
IEC 60950-1:2006, 2nd Edition
Evaluated to all CB Countries
Certifications/ Susceptibility Standards
EEN 300 386 V1.5.1 (2010-10)
EN 55022:2006+A1:2007; EN 61000-3-2:2006
EN 61000-3-3:1995+A1:2000+A2:2005
EN 55024: 2010; USA FCC Class A
VCCI Class A
Firewall throughput (App-ID)
۲/۲Gbps
Threat prevention throughput
۷۸۰/۱۰۰۰Mbps
IPsec VPN throughput
۵۰۰Mbps
New sessions per second
۱۳,۰۰۰
Max sessions
۱۹۲,۰۰۰
Throughput: Firewall (FW) + Application Visibility and Control (AVC)(1024B)
۱۶۸ Gbps
Throughput: FW + AVC + Intrusion Prevention System (IPS (1024B)
۱۵۳ Gbps
Maximum concurrent sessions, with AVC
۶۰ million
Maximum new connections per second, with AVCs
۱.۱M
TLS (Hardware Decryption)
۲۸ Gbps
Throughput: NGIPS (1024B)
۱۷۵ Gbps
IPSec VPN throughput (1024B TCP w/Fastpath)
۸۱ Gbps
Centralizedmanagement
Centralized configuration, logging, monitoring, and reporting are performed by the Management Center or alternatively in the cloud with Cisco Defense Orchestrator
AVC
Standard, supporting more than 4000 applications, as well as geolocations, users, and websites
AVC: OpenAppID support for custom, open-source application detectors
Standard
Cisco Security Intelligence
Standard, with IP, URL, and DNS threat intelligence
URL filtering: number of categories
More than 80
URL filtering: number of URLs categorized
More than 280 million
Stateful inspection firewall throughput
۲۳۵ Gbps
Stateful inspection firewall throughput (multiprotocol)
۱۷۲ Gbps
Concurrent firewall connections
۱۹۵ million
Firewall latency (UDP 64B microseconds)
۳.۵
New connections persecond
۴.۷۵ million
IPsec VPN throughput (450B UDP L2L test)
۷۴ Gbps
MaximumVPN Peers
۶۰,۰۰۰
Security contexts (included; maximum)
۱۰; ۲۵۰
High availability
Active/active and active/standby
Clustering
Up to 16 security modules across up to 16 different Firepower 9300 chassis
Scalability
VPN load balancing, firewall clustering
Centralized management
Centralized configuration, logging, monitoring, and reporting are performed by Cisco Security Manager or alternatively in the cloud with Cisco Defense Orchestrator
Adaptive Security Device Manager
Web-based, local management for small-scale deployments