FPR3130-NGFW-K9 – 38G NGFW Firewall – 8×1/10/25G SFP – 1RU 3130 Chassis
0/mo Solds
Stable Global Supply Chain for Thriving Businesses.
- $3,000,000 Inventory
- Certified Cisco Partner ships
- Collaborating with FedEx, UPS, DHL
Established Global IT Distributor
With over a decade of industry experience, we are a certified Cisco Partner delivering genuine enterprise networking hardware and trusted services to system integrators, ISPs, and enterprises worldwide.
FPR3130-NGFW-K9 Description
FPR3130-NGFW-K9 is a Cisco Secure Firewall 3130 NGFW appliance in the Cisco Secure Firewall 3100 Series, ordered as a 1RU chassis with Cisco Secure Firewall Threat Defense software.
This SKU fits projects that need the 3130 Threat Defense identity instead of the FPR3130-ASA-K9 ASA appliance PID. It keeps the same 3130 hardware class with eight RJ-45 ports, eight 1/10/25G SFP ports, one network module slot, and the Cisco-listed 38 Gbps FW + AVC + IPS performance row for Threat Defense sizing.
The quote file should lock the exact NGFW PID, target Threat Defense release, required Malware Protection, Threat Protection, URL Filtering, or combined subscription term, network module choice, fixed-port optics, 400W power plan, regional power cords, warranty support, price, stock status, and shipping destination before the firewall BOM is approved.
Quick Specs
|
Parameter |
Specification |
|---|---|
|
Product ID |
FPR3130-NGFW-K9 |
|
Product family |
Cisco Secure Firewall 3100 Series |
|
Product type |
Cisco Secure Firewall 3130 NGFW appliance |
|
Security software role |
Cisco Secure Firewall Threat Defense |
|
Form factor |
1RU |
|
Fixed data ports |
8 x RJ-45 and 8 x 1/10/25G SFP fixed ports |
|
Network module slot |
1 removable network module slot |
|
Firewall throughput |
42 Gbps |
|
FW + AVC + IPS throughput |
38 Gbps |
|
Concurrent sessions with AVC |
6 million |
|
New connections per second with AVC |
240000 |
|
IPsec VPN throughput |
17.8 Gbps |
|
Power supply configuration |
Dual 400W AC; single or dual 400W DC optional |
Product Performance
Key Features
FPR3130-NGFW-K9 is the Cisco-listed Secure Firewall 3130 appliance PID for Threat Defense software, which keeps the BOM separate from ASA appliance orders.
The 3130 Threat Defense row combines 38 Gbps FW + AVC + IPS throughput, 38 Gbps NGIPS throughput, and 6 million concurrent sessions with AVC for firewall sizing.
The chassis includes eight RJ-45 Ethernet interfaces plus eight fixed SFP interfaces that Cisco lists for 1/10/25G planning on the 3130 model.
The 3100 Series hardware guide supports one removable network module slot, with higher-speed module choices such as 25G, 40G, and 100G tied to the 3130 and 3140 hardware class.
Cisco ordering guidance separates the appliance PID from Threat Defense Malware Protection, Threat Protection, URL Filtering, and combined subscription part numbers.
The 3130 hardware profile uses dual 400W AC power by default, optional 400W DC power, front-to-rear airflow, hot-swappable fan modules, and regional power cord selection.
Application Scenarios
Choose FPR3130-NGFW-K9 when the approved design names Cisco Secure Firewall Threat Defense and the sizing worksheet maps to the 3130 inspection and session profile.
Use this SKU when the firewall needs RJ-45 copper handoffs, fixed 1/10/25G SFP ports, and a single Cisco-listed module bay for additional network interfaces.
Select this NGFW PID when asset records, licensing, and support coverage must identify Threat Defense software instead of the FPR3130-ASA-K9 ASA orderable role.
Product Comparison
|
Parameter |
FPR3130-NGFW-K9 | ||
|---|---|---|---|
|
Product family |
Secure Firewall 3100 Series |
Secure Firewall 3100 Series |
Secure Firewall 3100 Series |
|
Cisco PID description |
Cisco Secure Firewall 3130 Appliance with Threat Defense software |
Cisco Secure Firewall 3130 ASA Appliance |
Cisco Secure Firewall 3140 Appliance with Threat Defense software |
|
Firewall model |
Secure Firewall 3130 |
Secure Firewall 3130 |
Secure Firewall 3140 |
|
Security software role |
Threat Defense / NGFW |
Cisco Secure ASA |
Threat Defense / NGFW |
|
Form factor |
1RU |
1RU |
1RU |
|
Fixed data ports |
8 x RJ-45 and 8 x 1/10/25G SFP |
8 x RJ-45 and 8 x 1/10/25G SFP |
8 x RJ-45 and 8 x 1/10/25G SFP |
|
Network module slot |
1 |
1 |
1 |
|
FTD FW + AVC + IPS throughput |
38 Gbps |
Not a Threat Defense SKU |
45 Gbps |
|
FTD IPS throughput |
38 Gbps |
Not a Threat Defense SKU |
45 Gbps |
|
FTD concurrent sessions with AVC |
6 million |
Not a Threat Defense SKU |
10 million |
|
FTD new connections per second with AVC |
240000 |
Not a Threat Defense SKU |
300000 |
|
FTD IPsec VPN throughput |
17.8 Gbps |
Not a Threat Defense SKU |
22.4 Gbps |
|
Threat Defense subscription family |
3130 Malware Protection, Threat Protection, URL Filtering, and combined subscriptions |
Not a Threat Defense subscription order |
3140 Malware Protection, Threat Protection, URL Filtering, and combined subscriptions |
|
Power supply configuration |
Dual 400W AC; 400W DC optional |
Dual 400W AC; 400W DC optional |
Dual 400W AC; 400W DC optional |
- In a FPR3130-NGFW-K9 vs FPR3130-ASA-K9 comparison, the hardware model stays at Secure Firewall 3130, but the orderable role changes from Threat Defense / NGFW to Cisco Secure ASA.
- The FPR3130-NGFW-K9 difference from FPR3140-NGFW-K9 is the Threat Defense performance row: the 3140 raises FW + AVC + IPS throughput, IPS throughput, concurrent sessions, new connections, and IPsec VPN throughput.
- For buyers comparing FPR3130-NGFW-K9 vs FPR3130-ASA-K9 vs FPR3140-NGFW-K9, which model to choose should follow the software role first and then the Cisco sizing row for the required firewall capacity.
Selection Guide
1. Confirm the Threat Defense software role first
Select FPR3130-NGFW-K9 when the bill of materials requires the Cisco Secure Firewall 3130 appliance with Threat Defense software.
2. Keep ASA replacement orders separate
Use FPR3130-ASA-K9 only when the approved design, license plan, and operations model require the Cisco Secure ASA appliance role instead of Threat Defense.
3. Match the 3130 row to inspection requirements
Stay with this SKU when 38 Gbps FW + AVC + IPS throughput, 38 Gbps IPS throughput, and 6 million sessions with AVC match the sizing target.
4. Move to the 3140 NGFW SKU for a higher 3100 tier
Compare FPR3140-NGFW-K9 when the same Threat Defense appliance role is needed but the deployment requires the higher Cisco 3140 values shown in the comparison table.
Ordering Checklist
|
Review Area |
Required Decision |
Source-Based Risk |
|---|---|---|
|
Exact appliance PID |
Confirm FPR3130-NGFW-K9 rather than FPR3130-ASA-K9 |
Cisco lists separate 3130 NGFW and ASA appliance PIDs |
|
Threat Defense release |
Verify the target FTD release and management plan |
Compatibility is listed by Secure Firewall model and management mode |
|
Security subscriptions |
Choose Malware Protection, Threat Protection, URL Filtering, or a combined subscription and term |
The appliance PID does not replace Threat Defense subscription ordering |
|
Fixed-port optics |
Match RJ-45 copper and SFP optics to Cisco-supported fixed-port transceiver lists |
Unsupported optics can create support and deployment risk |
|
Network module |
Select the required 1G, 10G, 25G, 40G, or 100G 3100 Series network module |
High-speed module support and transceiver lists differ by model and release |
|
Power and rack plan |
Confirm dual 400W AC or optional DC power, regional cords, airflow, rack kit, and spare needs |
Installation readiness depends on matching the site power and rack plan |
|
Commercial review |
Review price, availability, warranty support, and shipping destination after technical validation |
Buying terms should follow the confirmed PID, subscriptions, modules, optics, and power cords |
Optional Add-ons
|
Model |
Description |
|---|---|
|
FPR3K-XNM-8X10G |
3100 Series 8-port 1G/10G SFP+ network module |
|
FPR3K-XNM-8X25G |
3100 Series 8-port 1/10/25G ZSFP network module |
|
FPR3K-XNM-4X40G |
3100 Series 4-port 40G QSFP+ network module |
|
FPR3K-XNM-2X100G |
3100 Series 2-port 100G QSFP28 network module |
|
FPR3K-XNM-8X1GF |
8-port 10/100/1000Base-T hardware bypass network module |
|
L-FPR3130T-AMP-1Y |
Cisco Secure Firewall 3130 Threat Defense Malware Protection 1Y subscription |
|
L-FPR3130T-T-1Y |
Cisco Secure Firewall 3130 Threat Defense Threat Protection 1Y subscription |
|
L-FPR3130T-URL-1Y |
Cisco Secure Firewall 3130 Threat Defense URL Filtering 1Y subscription |
|
L-FPR3130T-TMC-1Y |
Cisco Secure Firewall 3130 Threat Defense Threat, Malware, and URL 1Y subscription |
|
FPR3K-PWR-AC-400= |
Cisco Secure Firewall 3100 Series 400W AC power supply |
|
FPR3K-SSD900= |
Cisco Secure Firewall 3100 Series 900 GB SSD |
|
FPR3K-SLIDE-RAILS= |
Cisco Secure Firewall 3100 Series slide rail kit |
Specifications
| Parameter | Specification | Parameter | Specification |
|---|---|---|---|
| Product ID | FPR3130-NGFW-K9 | Product Family | Cisco Secure Firewall 3100 Series |
| Product Type | Cisco Secure Firewall 3130 NGFW appliance | Firewall Model | Secure Firewall 3130 |
| Security Software Role | Cisco Secure Firewall Threat Defense | Form Factor | 1RU |
| Dimensions | 1.75 x 17 x 20 in. (4.4 x 43.3 x 50.8 cm) | Airflow | Front to rear; I/O side to non-I/O side |
| Fixed RJ-45 Ports | 8 x 10M/100M/1GBASE-T Ethernet interfaces | Fixed SFP Ports | 8 x 1/10/25 Gigabit Ethernet SFP interfaces |
| Management Port | 1 x 1/10G SFP management port | Console Port | 1 x RJ-45 serial console |
| USB Port | 1 x USB 3.0 Type-A port | Network Module Slot | One removable network module slot |
| Supported Module Types | 8-port 1/10G, 8-port 1/10/25G, 4-port 40G, and 2-port 100G network modules | 100G Module Support | FPR3K-XNM-2X100G supported on 3130 and 3140 |
| Storage | 1 x 900 GB SSD with 1 spare slot | Fan Modules | 2 hot-swappable fan modules with 2 fans each |
| Power Supply Configuration | Dual 400W AC; single or dual 400W DC optional | Power Redundancy | 1+1 AC or DC with dual supplies |
| AC Input Voltage | 100 to 240V AC | AC Maximum Output Power | 400W |
| DC Input Voltage | -48V to -60VDC | DC Maximum Output Power | 400W |
| Firewall Throughput | 42 Gbps | FW + AVC Throughput | 38 Gbps |
| FW + AVC + IPS Throughput | 38 Gbps | NGIPS Throughput | 38 Gbps |
| Concurrent Sessions with AVC | 6 million | New Connections with AVC | 240000 per second |
| TLS Throughput | 9.1 Gbps | IPsec VPN Throughput | 17.8 Gbps |
| Projected IPsec VPN with Offload | 33 Gbps with FTD 7.2 | Maximum VPN Peers | 15000 |
| On-Device Management | Supported | Centralized Management | Firewall Management Center or Cisco Defense Orchestrator |
| Operating Temperature | 32 to 104F (0 to 40C) | Operating Humidity | 10 to 85% noncondensing |
| Operating Altitude | 10000 ft maximum | Power Cord Requirement | Approved Secure Firewall 3100 power cord or jumper power cord |
Get More Information
Need pricing, stock, or shipping details for the FPR3130-NGFW-K9 ? Layer23-Switch can help you check current availability, lead time, and delivery options for this. Send us the part number, quantity, and destination country via live chat or email sales@layer23-switch.com for a fast quotation.
Quality Certifications
Customer Reviews
Questions & Answers
Warranty
Layer23-Switch.com offers genuine, high-quality ICT products at competitive wholesale prices—ensuring exceptional value without compromising quality.
All items are brand new, original, and factory-sealed.
Upon request, each unit can be fully tested and verified by a Cisco CCIE-certified engineer to ensure perfect working condition before shipment.
Our Cisco CCIE-certified experts provide free professional support via phone, email, online chat, or remote login—helping you deploy and troubleshoot with confidence.
If you are not satisfied with your purchase, you may request an exchange or full refund. Our customer service team will guide you through the return process quickly and smoothly. Visit Return Policy page for more information.
We support multiple secure payment and logistics options, backed by industry-leading verification:












Visit How to Pay page for more information
Extended, Worry-Free Warranty Coverage Factory New Sealed Enterprise Hardware:
· 3 Years Factory New Sealed
Visit Warranty Policy page for more information
Device Authenticity & Lifecycle Verification
Verify Cisco hardware by serial number and check lifecycle status before deployment.
Standard Services
Personalized Service, Superior Product Maintenance for Ultimate Satisfaction.
- Projects and Technical Support
- Easy Purchasing Supply
- Product Lifecycle Protection
- Exclusive F3 Team Support
Customized Support for Your Needs with CCIE, HCIE, HPE ASE, etc.
Deployed during business hours with no impact. Clean, fast installation.
Inspection went smoothly. Layer23 sends out clean product.
Same product, same quality, same great pricing. That’s why we keep ordering.