Check Point 3100 Security Gateway Datasheet
3100 SECURITY GATEWAY
End Of Sale December 31st 2020
Check Point 3100 Next Generation Firewall offers an enterprise-grade security against 5th generation threats. 3100 Security Gateway leverages multi-core design and industry-leading performance – all in a compact form factor ideal for branch and small office deployments.
The Most Advanced Threat Prevention
Full Security Uncompromising Performance
Designed to Secure Encrypted Traffic
Performance Data
| Gen II Security Firewall | Gen III Security NGFW1 | Gen V Security Threat Prevention+SandBlast2 |
|---|---|---|
| 3.15Gbps | 850Mbps | 510Mbps |
PERFORMANCE HIGHLIGHTS
Gen II Security Firewall
Performance measured with enterprise testing conditions. Additional performance details on page 4. 1: Includes Firewall, Application Control, and IPS. 2: Includes Firewall, Application Control, URL Filtering, IPS, Antivirus, Anti-Bot and SandBlast Zero-Day Protection.
Highly optimized with up to 510 Mbps of threat prevention throughput.
Powerful platforms for inspection of SSL traffic.
3100 Security Gateway | Datasheet
3100
Enterprise-grade security, performance and reliability The Check Point 3100 Next Generation Security Gateway combines the most comprehensive security protections to safeguard your branch and small office deployments.
Key Features & Benefits
- Advanced Threat Prevention – 1st time prevention of known and zero-day threats
- Uncompromising Performance – Achieve up to 510 Mbps of threat prevention throughput
- Secure Encrypted Traffic – Consolidate SSL inspection into one integrated security platform
MANAGEMENT INTERFACE
- Management 10/100/1000Base-T RJ45 port
- 5x 10/100/1000Base-T RJ45 ports
- 2x USB ports for ISO installation
- RJ45/micro USB console port
- Power connector
NETWORK
All-inclusive Security Solutions
Check Point 3100 Next Generation Security Gateway offers a complete and consolidated security solution available in two complete packages:
v Threat Prevention
v Threat Prevention + SandBlast
Best-in-class Security Management
With one console, security teams can manage all aspects of security from policy to threat prevention – across the entire organization – on both physical and virtual environments. Consolidated management means increased operational efficiency.
ORDERING 3100 SECURITY GATEWAYS
| BASE CONFIGURATION | SKU |
|---|---|
| 3100 Next Generation Security Gateway Base Configuration, includes 6x1GbE copper ports, 8GB RAM, 1 SSD, 1 AC Power Unit, Next Generation Threat Prevention (NGTP) Security Subscription Package for 1 Year. | CPAP-SG3100-NGTP-SSD |
| 3100 SandBlast Next Generation Security Gateway Base Configuration, includes 6x1GbE copper ports, 8GBRAM, 1 SSD, 1 AC Power Unit, SandBlast (NGTX) Security Subscription Package for 1 Year | CPAP-SG3100-NGTX-SSD |
| SPARES AND MISCELLANEOUS | SKU |
| Replacement Power Supply for 3000 Security Gateways | CPAC-PSU-3000 |
| Single/Dual chassis Rack Shelf for 3000 Security Gateways | CPAC-RM-DUAL-3000 |
Performance
Enterprise Testing Conditions
- 510 Mbps of Threat Prevention1
- 850 Mbps of NGFW2
- 1.1 Gbps IPS
- 3.15 Gbps of firewall throughput
Ideal Testing Conditions
- 4 Gbps of UDP 1518 byte packet firewall throughput
- 40,000 connections per second, 64 byte response
- 3.2M concurrent connections, 64 byte response3
1: Includes Firewall, Application Control, URL Filtering, IPS, Antivirus, Anti-Bot and SandBlast Zero-Day Protection.
2: Includes Firewall, Application Control and IPS.
3: Tested with R80.10.
Additional Features
Highlights
- 1x CPUs, 4x physical cores (total)
- 1x 240 GB SSD storage
- 8 GB memory
Content Security
First Time Prevention Capabilities
- CPU-level, OS-level and static file analysis
- File disarm and reconstruction via Threat Extraction
- Average emulation time for unknown files that require full sandbox evaluation is under 100 seconds
- Maximal file size for Emulation is 100 MB
- Emulation OS Support: Windows XP, 7, 8.1, 10
- Integrates with Microsoft AD, LDAP, RADIUS, Cisco pxGrid, Terminal Servers and with third parties via a Web API
- Classify 700+ pre-defined data types
Network
- Total physical and virtual (VLAN) interfaces per appliance: 1024/4096 (single gateway/with virtual systems)
- Enforce consistent policy for local and remote users on Windows, macOS, Linux, Android and Apple iOS platforms
- 802.3ad passive and active link aggregation
- Layer 2 (transparent) and Layer 3 (routing)
High Availability
- Active/Active L2, Active/Passive L2 and L3
- Session failover for routing change, device and link failure
- ClusterXL or VRRP
IPv6
- NAT66, NAT64, NAT46
- PIM- SM, PIM- SSM, PIM- DM, IGMP v2, and v3
- Unicast and Multicast Routing (see SK98226)
- OSPFv2 and v3, BGP, RIP
- Static routes, Multicast routes
- Policy-based routing
Physical
- Single Power Supply rating: 40W
- AC power input: 90 to 264V (47-63Hz)
- Power consumption max: 29.5W
- Maximum thermal output: 100.7 BTU/hr.
Dimensions
- Enclosure: 1RU
- Dimensions (WxDxH): 8.3x8.3x1.65 in. (210x210x41.9mm)
- Weight: 2.9 lbs. (1.3 kg)
Environmental Conditions
- Operating: 0° to 40°C, humidity 5% to 95%
- Storage: -20° to 70°C, humidity 5% to 95% at 60°C
Certifications
- Safety: UL, CB, CE, TUV GS
- Environmental: RoHS, WEEE, REACH, ISO14001