Call a Specialist Today! 800-886-5369


Cisco Secure Firewall 3100 Series

Enterprise-Class Firewalls for Hybrid Work and Campus Security

The Cisco Secure Firewall 3100 Series protects enterprise campuses and remote workers with purpose-built hardware that accelerates VPN, inspects encrypted traffic without decryption, and scales through 8-node clustering — so your security infrastructure grows with your business.

Why Choose the 3100 Series

Purpose-built for enterprise campuses and hybrid workforces, the 3100 Series combines hardware-accelerated VPN, AI-driven threat detection, and flexible clustering in a 1RU form factor.

Enable Hybrid Work

Purpose-built crypto offload delivers up to 17x faster VPN performance, so remote workers at home, airports, or coffee shops enjoy the same secure experience as on-campus users.

Protect Your Investment

Clustering support for up to 8 nodes and high port density let your security infrastructure scale without forklift upgrades, ensuring strong return on investment as your network grows.

Application Performance

Deliver 7x higher inspection throughput with application-based quality of service (QoS), enabling users to securely experience strong video conferencing and real-time collaboration.

Encrypted Traffic Visibility

Machine learning technologies passively identify user applications and potential threats in encrypted traffic without decryption, detecting more malware while preserving privacy.

Explore 3100 Series Models

Five models covering branch offices through large enterprise campuses, all in a compact 1RU form factor.

Cisco Secure Firewall 3105 Branch Office

Secure Firewall 3105

Entry-level 3100 Series firewall for enterprise branch offices with hardware-accelerated VPN.

  • 10 Gbps FW throughput
  • 10 Gbps IPS
  • 5.5 Gbps VPN
  • 200K sessions
Cisco Secure Firewall 3110 Midsize Enterprise

Secure Firewall 3110

Midsize enterprise firewall with clustering support and encrypted traffic visibility.

  • 17 Gbps FW throughput
  • 17 Gbps IPS
  • 11 Gbps VPN
  • 1M sessions
Cisco Secure Firewall 3120 Midsize Enterprise

Secure Firewall 3120

Higher-throughput midsize enterprise firewall with 8-node clustering for scalability.

  • 21 Gbps FW throughput
  • 21 Gbps IPS
  • 13.5 Gbps VPN
  • 1.5M sessions
Cisco Secure Firewall 3130 Large Enterprise

Secure Firewall 3130

Large enterprise firewall with 25G SFP+ interfaces and high-density port support.

  • 38 Gbps FW throughput
  • 38 Gbps IPS
  • 33 Gbps VPN
  • 2M sessions
Cisco Secure Firewall 3140 Large Enterprise

Secure Firewall 3140

Top-of-line 3100 Series firewall for large enterprise campuses and data center edge.

  • 45 Gbps FW throughput
  • 45 Gbps IPS
  • 39.4 Gbps VPN
  • 3M sessions

Compare Secure Firewall 3100 Series Models

Choose the right model based on your enterprise size, throughput requirements, and VPN capacity.

Specification
3105
Branch Office
3110
Midsize Enterprise
3120
Midsize Enterprise
3130
Large Enterprise
3140
Large Enterprise
Performance
FW Throughput
10 Gbps
17 Gbps
21 Gbps
38 Gbps
45 Gbps
IPS Throughput
10 Gbps
17 Gbps
21 Gbps
38 Gbps
45 Gbps
VPN Throughput
5.5 Gbps
11 Gbps
13.5 Gbps
33 Gbps
39.4 Gbps
Scalability
Max Sessions
200K
1M
1.5M
2M
3M
VPN Peers
100
1,500
3,500
7,500
10,000
Clustering
Up to 8
Up to 8
Up to 8
Up to 8
Hardware
Form Factor
1 RU
1 RU
1 RU
1 RU
1 RU
Integrated I/O
8x 1G, 2x 10G
8x 1G, 2x 10G
8x 1G, 2x 10G
8x 10/25G SFP+
8x 10/25G SFP+
Network Module
1 slot
1 slot
1 slot (40G)
1 slot (40G)

Frequently Asked Questions

The Cisco Secure Firewall 3100 Series is a family of five enterprise-class firewalls (3105, 3110, 3120, 3130, 3140) designed for campus and hybrid-work deployments. They deliver 10–45 Gbps of firewall throughput in a 1RU form factor with hardware-accelerated VPN, encrypted traffic visibility, and 8-node clustering for scalable, high-availability security.

The 3105 is ideal for branch offices needing up to 10 Gbps throughput. The 3110 and 3120 serve midsize enterprises at 17–21 Gbps with clustering support. The 3130 and 3140 target large enterprise campuses needing 38–45 Gbps throughput, 25G SFP+ interfaces, and 40G network module support for high-density aggregation points.

The 3100 Series includes dedicated crypto offload hardware that accelerates IPsec VPN throughput up to 17x compared to software-only processing. This allows thousands of remote workers to maintain secure, high-performance VPN connections without impacting the firewall’s inspection throughput for other traffic.

Yes. The 3100 Series uses machine learning to passively identify user applications and potential threats in encrypted TLS 1.3 and QUIC traffic without decryption. This preserves user privacy and avoids the performance overhead of full decryption while still detecting malware and malicious activity hidden in encrypted sessions.

The 3110, 3120, 3130, and 3140 support clustering up to 8 nodes, combining multiple firewalls into a single logical device. You can configure active/active or active/standby modes for load balancing and seamless failover. Clustering lets you scale throughput linearly without replacing hardware as your network grows.

The 3100 Series supports three management options: Cisco Secure Firewall Management Center for centralized on-premises management of large deployments, Cisco Defense Orchestrator for cloud-based policy management across multiple devices, and Firewall Device Manager for simple local single-device administration.

Need Help Choosing the Right 3100 Series Firewall?

Tell us about your network requirements and our Cisco-certified security specialists will recommend the right model, licensing, and configuration for your deployment. We respond within one business day.

SecureCloudGuard.com

A division of BlueAlly
Prominence Tower
3475 Piedmont Road NE
Suite 900, Atlanta, GA 30305

  • Local: 949-328-2959
  • Toll Free: 844-294-0782

[email protected]