SlideShare a Scribd company logo
©2017 Check Point Software Technologies Ltd. All rights reserved. [Protected] Non-confidential content | January 23, 2017 | Page 1
Check Point 3100 Security Gateway | Datasheet
CHECK POINT
3100 NEXT GENERATION SECURITY GATEWAY
FOR THE BRANCH AND SMALL OFFICE
CHECK POINT 3100 NEXT
GENERATION SECURITY
GATEWAY
Branch and small office security
in a compact form factor
Product Benefits
 Enable the most advanced threat
prevention security
 Unique “first time prevention” for the
most sophisticated zero day attack
 Optimized for inspecting SSL
encrypted traffic
 Future-proofed technology
safeguards against tomorrow’s risks
 Simplify administration with a single
integrated management console
Product Features
 Compact desktop form factor
 Simple deployment and management
 Secure branch office connections
with site-to-site and client-to-site VPN
 Redundant clustering technologies
eliminate a single point of failure
OVERVIEW
The Check Point 3100 Next Generation Security Gateway combines the most
comprehensive security protections to safeguard your branch and small office
deployments, all in a compact desktop form factor. This powerful Next Generation
Security Gateway is optimized to deliver threat prevention for your business against
present and future threats to secure your critical assets and environments.
COMPREHENSIVE THREAT PREVENTION
Check Point delivers fully integrated, comprehensive Threat Prevention with award-
winning SandBlast™ Threat Emulation and Threat Extraction for complete protection
against the most sophisticated threats and zero-day vulnerabilities.
Unlike traditional solutions that are subject to evasion techniques, introduce
unacceptable delays, or let potential threats through while evaluating files, Check
Point SandBlast stops more malware from entering your network. Our solution enables
your employees to work safely - no matter where they are and without compromising
their productivity.
PERFORMANCE HIGHLIGHTS
Firewall IPS NGFW
1
Threat Prevention
2
4 Gbps 1.1 Gbps 850 Mbps 200 Mbps
Performance measured under ideal testing conditions. Additional performance details on page 3.
1. Includes Firewall, Application Control, and IPS Software Blades.
2. Includes Firewall, Application Control, URL Filtering, IPS, Antivirus, Anti-Bot and SandBlast Zero-Day Protection Software
Blades.
©2017 Check Point Software Technologies Ltd. All rights reserved. [Protected] Non-confidential content | January 23, 2017 | Page 2
Check Point 3100 Security Gateway | Datasheet
ALL-INCLUSIVE SECURITY SOLUTIONS
Check Point 3100 Next Generation Security Gateways offer a
complete and consolidated security solution available in two
complete packages:
 NGTP: prevent sophisticated cyber-threats with
Application Control, URL Filtering, IPS, Antivirus,
Anti-Bot and Email Security.
 NGTX: NGTP with SandBlast Zero-Day Protection,
which includes Threat Emulation and Threat
Extraction.
INSPECT ENCRYPTED CONNECTIONS
There is a shift towards more use of HTTPS, SSL and TLS
encryption to increase Internet security. At the same time
files delivered into the organization over SSL and TLS
represent a stealthy attack vector that bypasses traditional
security implementations. Check Point Threat Prevention
looks inside encrypted SSL and TLS tunnels to detect
threats, ensuring users remain in compliance with company
policies while surfing the Internet and using corporate data.
BEST-IN-CLASS MANAGEMENT
Every Check Point appliance can either be managed locally
with its available integrated security management or via
central unified management. Using local management, the
appliance can manage itself and one adjacent appliance for
high availability deployments. When centrally managed
administrators can define security policy for the entire
network — including internal security, main sites, and remote
sites — from a single, centrally located Check Point Security
Management server.
PREVENT KNOWN AND ZERO-DAY THREATS
The 3100 Next Generation Security Gateway protects
organizations from both known and unknown threats with
Antivirus, Anti-Bot, SandBlast Threat Emulation
(sandboxing), and SandBlast Threat Extraction technologies.
As part of the Check Point SandBlast Zero-Day Protection
solution, the cloud-based Threat Emulation engine detects
malware at the exploit phase, even before hackers can apply
evasion techniques attempting to bypass the sandbox. Files
are quickly quarantined and inspected, running in a virtual
sandbox to discover malicious behavior before it enters your
network. This innovative solution combines cloud-based
CPU-level inspection and OS-level sandboxing to prevent
infection from the most dangerous exploits, and zero-day and
targeted attacks.
Furthermore, SandBlast Threat Extraction removes
exploitable content, including active content and embedded
objects, reconstructs files to eliminate potential threats, and
promptly delivers sanitized content to users to maintain
business flow.
NGTP
NGTX
(SandBlast)
Prevent known
threats
Prevent known
and zero-day
attacks
Firewall  
VPN (IPsec)  
IPS  
Application Control  
URL Filtering  
Anti-Bot  
Anti-Virus  
Anti-Spam  
SandBlast Threat Emulation  
SandBlast Threat Extraction  
3100 SECURITY GATEWAY
Management 10/100/1000Base-T RJ45 port
5x 10/100/1000Base-T RJ45 ports
2x USB ports for ISO installation
RJ45/micro USB console port
Power connector
1
3
1
2
3
4
5
2 54
©2017 Check Point Software Technologies Ltd. All rights reserved. [Protected] Non-confidential content | January 23, 2017 | Page 3
Check Point 3100 Security Gateway | Datasheet
Performance
Ideal Testing Conditions
 4 Gbps of UDP 1518 byte packet firewall throughput
 1.1 Gbps IPS
 850 Mbps of NGFW
1
 200 Mbps of Threat Prevention
2
 1.7 Gbps of AES-128 VPN throughput
 40,000 connections per second, 64 byte response
 3.2 million concurrent connections, 64 byte response
Real-World Production Conditions
 160 SecurityPower Units
 2.1 Gbps of firewall throughput
 350 Mbps IPS
 220 Mbps of NGFW
1
 95 Mbps of Threat Prevention
2
Your performance may vary depending on different factors.
Visit www.checkpoint.com/partnerlocator to find an appliance
that matches your unique requirements.
1. Includes Firewall, Application Control and IPS Software Blades. 2. Includes Firewall, Application
Control, URL Filtering, IPS, Antivirus, Anti-Bot and SandBlast Zero-Day Protection Software
Blades.
Network
Network Connectivity
 Total physical and virtual (VLAN) interfaces per gateway:
1024/4096 (single gateway/with virtual systems)
 802.3ad passive and active link aggregation
 Layer 2 (transparent) and Layer 3 (routing) mode
High Availability
 Active/Active and Active/Passive - L3 mode
 Session failover for routing change, device and link failure
 ClusterXL or VRRP
Networking (continued)
IPv6
 NAT66, NAT64
 CoreXL, SecureXL, HA with VRRPv3
Unicast and Multicast Routing (see SK98226)
 OSPFv2 and v3, BGP, RIP
 Static routes, Multicast routes
 Policy-based routing
 PIM-SM, PIM-SSM, PIM-DM, IGMP v2, and v3
Hardware
Base Configuration
 6 on-board 10/100/1000Base-T RJ-45 ports
 8 GB memory
 1 power supply
 1x 320GB (HDD) or 1x 240GB (SSD) drive
Power Requirements
 Single Power Supply rating: 40W
 AC power input: 90-264V, (47-63Hz)
 Power consumption maximum: 29.5W
 Maximum thermal output: 100.7 BTU/hr.
Dimensions
 Enclosure: Desktop
 Dimensions(W x D x H): 8.3x8.3x1.65 in. (210x210x41.9mm)
 Weight: 2.9 lbs. (1.3 kg)
Environmental Conditions
 Operating: 0° to 40°C, humidity 5% to 95%
 Storage: –40° to 70°C, humidity 5% to 95% at 60°C
Certifications
 Safety: UL, CB, CE, TUV GS
 Emissions: FCC, CE, VCCI, RCM/C-Tick
 Environmental: RoHS, REACH
1
, ISO14001
1
1
factory certificate
ORDERING INFORMATION
BASE CONFIGURATION 1
3100 Next Generation Security Gateway base configuration, includes 6x1GbE copper ports, 8GB RAM, 1
HDD, 1 AC power unit, Next Generation Threat Prevention (NGTP) security subscription package for 1
year
CPAP-SG3100-NGTP
3100 SandBlast Next Generation Security Gateway base configuration, includes 6x1GbE copper ports,
8GB RAM, 1 HDD, 1 AC power unit, SandBlast (NGTX) security subscription package for 1 year
CPAP-SG3100-NGTX
SPARES AND MISCELLANEOUS
Replacement AC/DC power supply for 3100 security gateway CPAC-PSU-3100
Single/Dual chassis rack shelf for 1400/3100 security gateways CPAC-RM-1400/3100
1. SKUs for 2 and 3 years, for High Availability and Appliances with an SSD option are also available, see the online Product Ca talog
CONTACT US
Worldwide Headquarters | 5 Ha’Solelim Street, Tel Aviv 67897, Israel | Tel: 972-3-753-4555 | Fax: 972-3-624-1100 | Email: info@checkpoint.com
U.S. Headquarters | 959 Skyway Road, Suite 300, San Carlos, CA 94070 | Tel: 800-429-4391; 650-628-2000 | Fax: 650-654-4233 | www.checkpoint.com

More Related Content

PDF
Как развернуть кампусную сеть Cisco за 10 минут? Новые технологии для автомат...
PDF
Putting Firepower Into The Next Generation Firewall
PDF
Cisco Connect Toronto 2017 - Putting Firepower into the Next Generation Firewall
PPTX
Secure Data Center Solution with FP 9300 - BDM
DOCX
Migration to cisco next generation firewall
PDF
Новая эра корпоративных сетей с Cisco Catalyst 9000 и другие инновации для ма...
PDF
Cisco Connect Toronto 2017 - Security Through The Eyes of a Hacker
PDF
Hillstone-Corporate-Overview-EN-V3.0
Как развернуть кампусную сеть Cisco за 10 минут? Новые технологии для автомат...
Putting Firepower Into The Next Generation Firewall
Cisco Connect Toronto 2017 - Putting Firepower into the Next Generation Firewall
Secure Data Center Solution with FP 9300 - BDM
Migration to cisco next generation firewall
Новая эра корпоративных сетей с Cisco Catalyst 9000 и другие инновации для ма...
Cisco Connect Toronto 2017 - Security Through The Eyes of a Hacker
Hillstone-Corporate-Overview-EN-V3.0

What's hot (19)

PDF
Presentación - Cisco ASA with FirePOWER Services
PDF
FireSIGHT Management Center (FMC) slides
PDF
ASA Firepower NGFW Update and Deployment Scenarios
PDF
Deployment of cisco_iron_portweb_security_appliance
PPT
Asa sslvpn security
PDF
Cisco Connect Toronto 2017 - Model-driven Telemetry
PDF
CCNP Security-Firewall
PPTX
Vision one-customer
PDF
Brkcrt 1160 c3-rev2
PDF
Cisco Connect Vancouver 2017 - Anatomy of Attack
PDF
Meraki powered services bell
DOCX
How to use mtr 2
PPTX
Cisco ASA Firepower
PDF
Cisco Connect Toronto 2017 - Accelerating Incident Response in Organizations...
PDF
Cisco, Sourcefire and Lancope - Better Together
PDF
Novosco Zero day protection webinar
PDF
TechWiseTV Workshop: Programmable ASICs
PPTX
Kaspersky Kesb ep10 no_cm_v01a
PDF
Emerging Threats - The State of Cyber Security
Presentación - Cisco ASA with FirePOWER Services
FireSIGHT Management Center (FMC) slides
ASA Firepower NGFW Update and Deployment Scenarios
Deployment of cisco_iron_portweb_security_appliance
Asa sslvpn security
Cisco Connect Toronto 2017 - Model-driven Telemetry
CCNP Security-Firewall
Vision one-customer
Brkcrt 1160 c3-rev2
Cisco Connect Vancouver 2017 - Anatomy of Attack
Meraki powered services bell
How to use mtr 2
Cisco ASA Firepower
Cisco Connect Toronto 2017 - Accelerating Incident Response in Organizations...
Cisco, Sourcefire and Lancope - Better Together
Novosco Zero day protection webinar
TechWiseTV Workshop: Programmable ASICs
Kaspersky Kesb ep10 no_cm_v01a
Emerging Threats - The State of Cyber Security
Ad

Viewers also liked (20)

PDF
CHECK POINT 5100 NEXT GENERATION SECURITY GATEWAY FOR THE SMALL ENTERPRISE AN...
PDF
CHECK POINT 5900 NEXT GENERATION SECURITY GATEWAY FOR THE MID-SIZE ENTERPRISE
PPTX
CheckPoint Sandblast _Защита от угроз Нулевого дня
PPTX
Prostokvashino maslenitsa case for digital branding
PPTX
RTB-Media Ukraine, Cчастье Хаб 19.11
PDF
Н.Зайцев Советник по ИТ Л’Этуаль "Визуальные цифровые технологии Digital sign...
PPTX
Digital signage для логистических компаний
PDF
Интерактивные возможности видеорекламы и Digital Signage
PDF
iBeacons для ритейла и ТРЦ
PDF
Мобильная интернет-реклама, Mail ru Group, Mobile Maketing Day
PDF
Аудитория Интернета
PPTX
решения для трк и трц
PDF
"Нужны ли социальные сети в маркетинге ТРЦ". Презентация выступления Михаила ...
PDF
Как превратить посетителей ТРЦ в лояльных покупателей
 
PPSX
Сила букв: как текст объявления повышает CTR
PDF
Digital signage in a FMCG network // Grocery stores
PDF
Программатик кампании в потоковом видео
PDF
Программа лояльности для ТРЦ
PDF
Стратегия взаимодействия с потребителем на основе PROGRAMMATIC
PPT
Digital signaga общая презентация
CHECK POINT 5100 NEXT GENERATION SECURITY GATEWAY FOR THE SMALL ENTERPRISE AN...
CHECK POINT 5900 NEXT GENERATION SECURITY GATEWAY FOR THE MID-SIZE ENTERPRISE
CheckPoint Sandblast _Защита от угроз Нулевого дня
Prostokvashino maslenitsa case for digital branding
RTB-Media Ukraine, Cчастье Хаб 19.11
Н.Зайцев Советник по ИТ Л’Этуаль "Визуальные цифровые технологии Digital sign...
Digital signage для логистических компаний
Интерактивные возможности видеорекламы и Digital Signage
iBeacons для ритейла и ТРЦ
Мобильная интернет-реклама, Mail ru Group, Mobile Maketing Day
Аудитория Интернета
решения для трк и трц
"Нужны ли социальные сети в маркетинге ТРЦ". Презентация выступления Михаила ...
Как превратить посетителей ТРЦ в лояльных покупателей
 
Сила букв: как текст объявления повышает CTR
Digital signage in a FMCG network // Grocery stores
Программатик кампании в потоковом видео
Программа лояльности для ТРЦ
Стратегия взаимодействия с потребителем на основе PROGRAMMATIC
Digital signaga общая презентация
Ad

Similar to CHECK POINT 3100 NEXT GENERATION SECURITY GATEWAY FOR THE BRANCH AND SMALL OFFICE (20)

PPTX
Checkpoint Overview
PDF
Sns en-sn160 w-datasheet-201702
PDF
DDoS Falcon_Tech_Specs-Haltdos
PDF
Cisco Firepower Next-Generation Firewall (NGFW).pdf
PDF
Cisco Firewall secure firewall configuration
PPTX
Checkpoint Portfolio.pptx
PDF
SANGFOR NGAF FIREWALL SG TECHNICAL PVT LTD 03002019693
PDF
Check point response to Cisco NGFW competitive
PDF
Fortinet FortiGate 100D
PDF
Telecommunication Datasheet Template
PDF
Barracuda in Microsoft Azure
PPT
Prueba de Presentacion
PDF
NGINX DevSecOps Workshop
PDF
Insecure mag-19
PDF
Cisco Cloud Networking Workshop
PDF
Cisco Secure Firewall Test Drive Presentation
PDF
Ecom CK7X ATEX Certified Hazardous Area PDA (Mobile Computer) Datasheet
PDF
Ecom CN70X ATEX Certified Hazardous Area PDA (Mobile Computer) Datasheet
PDF
Sourcefire - A Next-Generation Intrusion Prevention Solution Delivering Scala...
PPTX
Jimbob's Towing and Wrecker Services Presentation
Checkpoint Overview
Sns en-sn160 w-datasheet-201702
DDoS Falcon_Tech_Specs-Haltdos
Cisco Firepower Next-Generation Firewall (NGFW).pdf
Cisco Firewall secure firewall configuration
Checkpoint Portfolio.pptx
SANGFOR NGAF FIREWALL SG TECHNICAL PVT LTD 03002019693
Check point response to Cisco NGFW competitive
Fortinet FortiGate 100D
Telecommunication Datasheet Template
Barracuda in Microsoft Azure
Prueba de Presentacion
NGINX DevSecOps Workshop
Insecure mag-19
Cisco Cloud Networking Workshop
Cisco Secure Firewall Test Drive Presentation
Ecom CK7X ATEX Certified Hazardous Area PDA (Mobile Computer) Datasheet
Ecom CN70X ATEX Certified Hazardous Area PDA (Mobile Computer) Datasheet
Sourcefire - A Next-Generation Intrusion Prevention Solution Delivering Scala...
Jimbob's Towing and Wrecker Services Presentation

More from Alexander Kravchenko (7)

PDF
Penta Security
PPTX
Check Point Infinity
PPTX
Not petya business case
PDF
CheckPoint DEMO Azerbaijan
PDF
Check point sandblast2
DOCX
Radware все продукты_ua
PDF
Penta Security
Check Point Infinity
Not petya business case
CheckPoint DEMO Azerbaijan
Check point sandblast2
Radware все продукты_ua

Recently uploaded (20)

PPTX
INFERTILITY (FEMALE FACTORS).pptxgvcghhfcg
PPT
Hypersensitivity Namisha1111111111-WPS.ppt
PPTX
Syllabus Computer Six class curriculum s
PPTX
Nanokeyer nano keyekr kano ketkker nano keyer
DOCX
A PROPOSAL ON IoT climate sensor 2.docx
PPTX
Sem-8 project ppt fortvfvmat uyyjhuj.pptx
PPTX
02fdgfhfhfhghghhhhhhhhhhhhhhhhhhhhh.pptx
PDF
Layer23-Switch.com The Cisco Catalyst 9300 Series is Cisco’s flagship stackab...
PDF
Smarter Security: How Door Access Control Works with Alarms & CCTV
PPTX
ERP good ERP good ERP good ERP good good ERP good ERP good
PDF
Cableado de Controladores Logicos Programables
PPTX
了解新西兰毕业证(Wintec毕业证书)怀卡托理工学院毕业证存档可查的
PPTX
1.pptxsadafqefeqfeqfeffeqfqeqfeqefqfeqfqeffqe
PPTX
Fundamentals of Computer.pptx Computer BSC
PPTX
Computers and mobile device: Evaluating options for home and work
PPTX
Embedded for Artificial Intelligence 1.pptx
PDF
PPT Determiners.pdf.......................
PPTX
quadraticequations-111211090004-phpapp02.pptx
PDF
-DIGITAL-INDIA.pdf one of the most prominent
PPTX
code of ethics.pptxdvhwbssssSAssscasascc
INFERTILITY (FEMALE FACTORS).pptxgvcghhfcg
Hypersensitivity Namisha1111111111-WPS.ppt
Syllabus Computer Six class curriculum s
Nanokeyer nano keyekr kano ketkker nano keyer
A PROPOSAL ON IoT climate sensor 2.docx
Sem-8 project ppt fortvfvmat uyyjhuj.pptx
02fdgfhfhfhghghhhhhhhhhhhhhhhhhhhhh.pptx
Layer23-Switch.com The Cisco Catalyst 9300 Series is Cisco’s flagship stackab...
Smarter Security: How Door Access Control Works with Alarms & CCTV
ERP good ERP good ERP good ERP good good ERP good ERP good
Cableado de Controladores Logicos Programables
了解新西兰毕业证(Wintec毕业证书)怀卡托理工学院毕业证存档可查的
1.pptxsadafqefeqfeqfeffeqfqeqfeqefqfeqfqeffqe
Fundamentals of Computer.pptx Computer BSC
Computers and mobile device: Evaluating options for home and work
Embedded for Artificial Intelligence 1.pptx
PPT Determiners.pdf.......................
quadraticequations-111211090004-phpapp02.pptx
-DIGITAL-INDIA.pdf one of the most prominent
code of ethics.pptxdvhwbssssSAssscasascc

CHECK POINT 3100 NEXT GENERATION SECURITY GATEWAY FOR THE BRANCH AND SMALL OFFICE

  • 1. ©2017 Check Point Software Technologies Ltd. All rights reserved. [Protected] Non-confidential content | January 23, 2017 | Page 1 Check Point 3100 Security Gateway | Datasheet CHECK POINT 3100 NEXT GENERATION SECURITY GATEWAY FOR THE BRANCH AND SMALL OFFICE CHECK POINT 3100 NEXT GENERATION SECURITY GATEWAY Branch and small office security in a compact form factor Product Benefits  Enable the most advanced threat prevention security  Unique “first time prevention” for the most sophisticated zero day attack  Optimized for inspecting SSL encrypted traffic  Future-proofed technology safeguards against tomorrow’s risks  Simplify administration with a single integrated management console Product Features  Compact desktop form factor  Simple deployment and management  Secure branch office connections with site-to-site and client-to-site VPN  Redundant clustering technologies eliminate a single point of failure OVERVIEW The Check Point 3100 Next Generation Security Gateway combines the most comprehensive security protections to safeguard your branch and small office deployments, all in a compact desktop form factor. This powerful Next Generation Security Gateway is optimized to deliver threat prevention for your business against present and future threats to secure your critical assets and environments. COMPREHENSIVE THREAT PREVENTION Check Point delivers fully integrated, comprehensive Threat Prevention with award- winning SandBlast™ Threat Emulation and Threat Extraction for complete protection against the most sophisticated threats and zero-day vulnerabilities. Unlike traditional solutions that are subject to evasion techniques, introduce unacceptable delays, or let potential threats through while evaluating files, Check Point SandBlast stops more malware from entering your network. Our solution enables your employees to work safely - no matter where they are and without compromising their productivity. PERFORMANCE HIGHLIGHTS Firewall IPS NGFW 1 Threat Prevention 2 4 Gbps 1.1 Gbps 850 Mbps 200 Mbps Performance measured under ideal testing conditions. Additional performance details on page 3. 1. Includes Firewall, Application Control, and IPS Software Blades. 2. Includes Firewall, Application Control, URL Filtering, IPS, Antivirus, Anti-Bot and SandBlast Zero-Day Protection Software Blades.
  • 2. ©2017 Check Point Software Technologies Ltd. All rights reserved. [Protected] Non-confidential content | January 23, 2017 | Page 2 Check Point 3100 Security Gateway | Datasheet ALL-INCLUSIVE SECURITY SOLUTIONS Check Point 3100 Next Generation Security Gateways offer a complete and consolidated security solution available in two complete packages:  NGTP: prevent sophisticated cyber-threats with Application Control, URL Filtering, IPS, Antivirus, Anti-Bot and Email Security.  NGTX: NGTP with SandBlast Zero-Day Protection, which includes Threat Emulation and Threat Extraction. INSPECT ENCRYPTED CONNECTIONS There is a shift towards more use of HTTPS, SSL and TLS encryption to increase Internet security. At the same time files delivered into the organization over SSL and TLS represent a stealthy attack vector that bypasses traditional security implementations. Check Point Threat Prevention looks inside encrypted SSL and TLS tunnels to detect threats, ensuring users remain in compliance with company policies while surfing the Internet and using corporate data. BEST-IN-CLASS MANAGEMENT Every Check Point appliance can either be managed locally with its available integrated security management or via central unified management. Using local management, the appliance can manage itself and one adjacent appliance for high availability deployments. When centrally managed administrators can define security policy for the entire network — including internal security, main sites, and remote sites — from a single, centrally located Check Point Security Management server. PREVENT KNOWN AND ZERO-DAY THREATS The 3100 Next Generation Security Gateway protects organizations from both known and unknown threats with Antivirus, Anti-Bot, SandBlast Threat Emulation (sandboxing), and SandBlast Threat Extraction technologies. As part of the Check Point SandBlast Zero-Day Protection solution, the cloud-based Threat Emulation engine detects malware at the exploit phase, even before hackers can apply evasion techniques attempting to bypass the sandbox. Files are quickly quarantined and inspected, running in a virtual sandbox to discover malicious behavior before it enters your network. This innovative solution combines cloud-based CPU-level inspection and OS-level sandboxing to prevent infection from the most dangerous exploits, and zero-day and targeted attacks. Furthermore, SandBlast Threat Extraction removes exploitable content, including active content and embedded objects, reconstructs files to eliminate potential threats, and promptly delivers sanitized content to users to maintain business flow. NGTP NGTX (SandBlast) Prevent known threats Prevent known and zero-day attacks Firewall   VPN (IPsec)   IPS   Application Control   URL Filtering   Anti-Bot   Anti-Virus   Anti-Spam   SandBlast Threat Emulation   SandBlast Threat Extraction   3100 SECURITY GATEWAY Management 10/100/1000Base-T RJ45 port 5x 10/100/1000Base-T RJ45 ports 2x USB ports for ISO installation RJ45/micro USB console port Power connector 1 3 1 2 3 4 5 2 54
  • 3. ©2017 Check Point Software Technologies Ltd. All rights reserved. [Protected] Non-confidential content | January 23, 2017 | Page 3 Check Point 3100 Security Gateway | Datasheet Performance Ideal Testing Conditions  4 Gbps of UDP 1518 byte packet firewall throughput  1.1 Gbps IPS  850 Mbps of NGFW 1  200 Mbps of Threat Prevention 2  1.7 Gbps of AES-128 VPN throughput  40,000 connections per second, 64 byte response  3.2 million concurrent connections, 64 byte response Real-World Production Conditions  160 SecurityPower Units  2.1 Gbps of firewall throughput  350 Mbps IPS  220 Mbps of NGFW 1  95 Mbps of Threat Prevention 2 Your performance may vary depending on different factors. Visit www.checkpoint.com/partnerlocator to find an appliance that matches your unique requirements. 1. Includes Firewall, Application Control and IPS Software Blades. 2. Includes Firewall, Application Control, URL Filtering, IPS, Antivirus, Anti-Bot and SandBlast Zero-Day Protection Software Blades. Network Network Connectivity  Total physical and virtual (VLAN) interfaces per gateway: 1024/4096 (single gateway/with virtual systems)  802.3ad passive and active link aggregation  Layer 2 (transparent) and Layer 3 (routing) mode High Availability  Active/Active and Active/Passive - L3 mode  Session failover for routing change, device and link failure  ClusterXL or VRRP Networking (continued) IPv6  NAT66, NAT64  CoreXL, SecureXL, HA with VRRPv3 Unicast and Multicast Routing (see SK98226)  OSPFv2 and v3, BGP, RIP  Static routes, Multicast routes  Policy-based routing  PIM-SM, PIM-SSM, PIM-DM, IGMP v2, and v3 Hardware Base Configuration  6 on-board 10/100/1000Base-T RJ-45 ports  8 GB memory  1 power supply  1x 320GB (HDD) or 1x 240GB (SSD) drive Power Requirements  Single Power Supply rating: 40W  AC power input: 90-264V, (47-63Hz)  Power consumption maximum: 29.5W  Maximum thermal output: 100.7 BTU/hr. Dimensions  Enclosure: Desktop  Dimensions(W x D x H): 8.3x8.3x1.65 in. (210x210x41.9mm)  Weight: 2.9 lbs. (1.3 kg) Environmental Conditions  Operating: 0° to 40°C, humidity 5% to 95%  Storage: –40° to 70°C, humidity 5% to 95% at 60°C Certifications  Safety: UL, CB, CE, TUV GS  Emissions: FCC, CE, VCCI, RCM/C-Tick  Environmental: RoHS, REACH 1 , ISO14001 1 1 factory certificate ORDERING INFORMATION BASE CONFIGURATION 1 3100 Next Generation Security Gateway base configuration, includes 6x1GbE copper ports, 8GB RAM, 1 HDD, 1 AC power unit, Next Generation Threat Prevention (NGTP) security subscription package for 1 year CPAP-SG3100-NGTP 3100 SandBlast Next Generation Security Gateway base configuration, includes 6x1GbE copper ports, 8GB RAM, 1 HDD, 1 AC power unit, SandBlast (NGTX) security subscription package for 1 year CPAP-SG3100-NGTX SPARES AND MISCELLANEOUS Replacement AC/DC power supply for 3100 security gateway CPAC-PSU-3100 Single/Dual chassis rack shelf for 1400/3100 security gateways CPAC-RM-1400/3100 1. SKUs for 2 and 3 years, for High Availability and Appliances with an SSD option are also available, see the online Product Ca talog CONTACT US Worldwide Headquarters | 5 Ha’Solelim Street, Tel Aviv 67897, Israel | Tel: 972-3-753-4555 | Fax: 972-3-624-1100 | Email: info@checkpoint.com U.S. Headquarters | 959 Skyway Road, Suite 300, San Carlos, CA 94070 | Tel: 800-429-4391; 650-628-2000 | Fax: 650-654-4233 | www.checkpoint.com