• Throughput: FW + AVC (1024B)
  • ۱۳Gbps



  • Throughput: FW + AVC + IPS (1024B)
  • ۱۱Gbps



  • Maximum concurrent sessions, with AVC
  • ۱۰Million



  • Maximum new connections per second, with AVC
  • ۶۴K



  • TLS (Hardware Decryption)
  • ۴.۵Gbps



  • Throughput: NGIPS (1024B)
  • ۱۵Gbps



  • IPSec VPN Throughput (1024B TCP w/Fastpath)
  • ۶Gbps



  • Multi-Instance Capable
  • Yes



  • Application Visibility and Control (AVC)
  • Standard, supporting more than 4000 applications, as well as geolocations, users, and websites



  • AVC: OpenAppID support for custom, open source, application detectors
  • Standard



  • Cisco Security Intelligence
  • Standard, with IP, URL, and DNS threat intelligence



  • Cisco Firepower NGIPS
  • Available; can passively detect endpoints and infrastructure for threat correlation and Indicators of Compromise (IoC) intelligence



  • Cisco AMP for Networks
  • Available; enables detection, blocking, tracking, analysis, and containment of targeted and persistent malware, addressing the attack continuum both during and after attacks. Integrated threat correlation with Cisco AMP for Endpoints is also optionally available



  • Cisco AMP Threat Grid sandboxing
  • Available



  • URL Filtering: number of categories
  • More than 80



  • URL Filtering: number of URLs categorized
  • More than 280 Million



  • Automated threat feed and IPS signature updates
  • Yes: class-leading Collective Security Intelligence (CSI) from the Cisco Talos Group



  • Third-party and opensource ecosystem
  • Open API for integrations with third-party products; Snort® and OpenAppID community resources for new and specific threats



  • High availability and clustering
  • Active/standby. Cisco Firepower 4100 Series allows clustering of up to 6 chassis



  • Cisco Trust Anchor Technologies
  • Firepower 4100 Series platforms include Trust Anchor Technologies for supply chain and software image assurance



  • Stateful inspection firewall throughput
  • ۳۵Gbps



  • Stateful inspection firewall throughput (multiprotocol)
  • ۱۵Gbps



  • Concurrent firewall connections
  • ۱۰Million



  • Firewall latency (UDP 64B microseconds)
  • ۳.۵



  • New connections per second
  • ۱۵۰,۰۰۰



  • IPsec VPN throughput (450B UDP L2L test)
  • ۸Gbps



  • Maximum VPN Peers
  • ۱۰,۰۰۰



  • Security contexts (included; maximum)
  • ۱۰; ۲۵۰



  • High availability
  • Active/active and active/standby



  • Clustering
  • Up to 16 appliances



  • Scalability
  • VPN Load Balancing, Firewall Clustering



  • Centralized management
  • Centralized configuration, logging, monitoring, and reporting are performed by Cisco Security Manager or alternatively in the cloud with Cisco Defense Orchestrator



  • Adaptive Security Device Manager
  • Web-based, local management for small-scale deployments



  • company
  • cisco
    Palo Alto
    f5
    f5
  • Firewall throughput

  • ۱۵.۲/۱۷Gbps


  • Threat prevention throughput

  • ۷.۷/۹.۷Gbps


  • IPsec VPN throughput

  • ۹.۷Gbps


  • max sessions

  • ۴,۰۰۰,۰۰۰


  • new sessions per second

  • ۱۶۶,۰۰۰


  • virtual systems (base/max4)

  • ۱۰/۲۰


  • Dimensions


  • ۳.۴”(۸.۶ cm)H x 17.3”(۴۴.۰ cm) W x 24.5” (۶۲.۲ cm) D ۲U industry standard rack-mount chassis
    ۱.۷۲” (۴.۳۷ cm) H x 17.4” (۴۴.۲ cm) W x 22.5” (۵۷.۱۵ cm) D ۱U industry standard rack-mount chassis
  • Weight


  • ۳۱.0lbs.(14.1 kg)(1 blank line card, 0 power supplies, 0 blades, 1 fan tray)
    ۲۰ lbs. (9.07 kg) (single power supply)
  • Power Supply


  • AC power supply One to two 100-240 VAC (800W) ۵۰/۶۰ Hz auto ranging ۱۰A per input line (max) DC power supply (option)
    ۱x 250W Platinum AC PSU (Additional PSU optional, ۲x 650W DC PSU Option)
  • Operating Temperature


  • ۳۲°to 104° F (0° to 40° C)
    ۳۲°F to 104°F
  • Relative Humidity


  • ۵to 85% at 104° F (40° C)

  • Safety Agency Approval


  • EN 60950-1:2006 + A11:2009 + A1:2010 + A12:2011 IEC 60950-1:2005, A1:2009 CSA 60950-1-07, Including Amendment 1:2011 ANSI/UL 60950-1-2011 Evaluated to all CB Countries
    ANSI/UL 60950-1-2014 CSA 60950-1-07, including A1:2011+A2:2014 IEC 60950-1:2005, A1:2009+A2:2013 EN 60950-1:2006+A11:2009+A1:2010+A12:2011+A2:2013
  • Certifications/Susceptibility Standards


  • FCC Part 15 Class A VCCI Class A ETSI EN 300 386 V1.5.1 (2010) EN 55022:2010 Class A EN 61000-3-2:2006 A1:2009+A2:2009 EN 61000-3-3:2008 EN 55024:2010 EN 55022:2010 Class A EN 61000-3-2:2006 A1:2009+A2:2009 EN 61000-3-3:2008
    ETSI EN 300 386 V1.6.1 (2012) EN 55032:2012 Class A; EN 61000-3-2:2014 EN 61000-3-3:2013; EN 55024:2010 FCC Class A (Part 15), IC Class A, VCCI Class A
  • Intelligent Traffic Processing



  • L7 requests per second: 650K L4 connections per second: 250K L4 HTTP requests per second: 1M Maximum L4 concurrent connections: 28M Throughput: 20 Gbps L4/L7
  • Hardware Offload SSL/TLS



  • ECC†: ۶.۵K TPS (ECDSA P-256) RSA: 10K TPS (2K keys) ۱۰ Gbps bulk encryption
  • FIPS SSL



  • N/A
  • Hardware Compression



  • N/A
  • Hardware DDoS Protection



  • N/A
  • TurboFlex Performance Profiles



  • N/A
  • Software Compression



  • ۶ Gbps
  • Software Architecture



  • ۶۴-bit TMOS
  • On-Demand Upgradable



  • Yes
  • Virtualization (Maximum Number of vCMP Guests)



  • N/A
  • Processor



  • One 4-Core Intel Xeon processor (total 8 hyperthreaded logical processor cores)
  • Memory



  • ۳۲ GB DDR4
  • Hard Drive



  • ۱x 500 GB Enterprise Class HDD
  • Gigabit Ethernet CU Ports



  • Optional SFP
  • Gigabit Fiber Ports (SFP)



  • ۸ SX or LX (sold separately)
  • ۱۰ Gigabit Fiber Ports (SFP+)



  • ۴ SR/LR (sold separately); optional 10G copper direct attach
  • ۴۰ Gigabit Fiber Ports (QSFP+)



  • N/A
  • Typical Consumption



  • ۱۳۰W (single power supply, 110V input)
  • Input Voltage



  • ۱۰۰-۲۴۰ VAC +/- 10% auto switching, 50/60hz
  • Typical Heat Output



  • ۴۴۵ BTU/hour (single power supply, 110V input)
  • Operational Relative Humidity



  • ۵% to 85% at 40º C
  • Certifications/ Susceptibility Standards


  • FCC Part 15 Class A VCCI Class A ETSI EN 300 386 V1.5.1 (2010) EN 55022:2010 Class A EN 61000-3-2:2006 A1:2009+A2:2009 EN 61000-3-3:2008 EN 55024:2010 EN 55022:2010 Class A EN 61000-3-2:2006 A1:2009+A2:2009 EN 61000-3-3:2008
    ETSI EN 300 386 V1.6.1 (2012) EN 55032:2012 Class A; EN 61000-3-2:2014 EN 61000-3-3:2013; EN 55024:2010 FCC Class A (Part 15), IC Class A, VCCI Class A
محصولی برای مقایسه وجود ندارد.