Cisco Secure Firewall FPR1120 Branch Next-Generation Firewall

The Cisco Secure FPR1120 provides branch-scale threat defence for small sites that need firewall control, VPN access and network segmentation in one Cisco appliance. It helps edge teams enforce policy locally and keep distributed environments protected without sending every decision back to a central firewall.

Submit an enquiry for pricing

Cisco Secure FPR1120 Overview

Branch sites increasingly need security controls that handle inspection, encrypted access and segmentation without adding overhead to already busy local infrastructure.

Branch Firewall for Operational Edge Sites

The Cisco Secure FPR1120 is a branch next-generation firewall for small sites that need threat defence, VPN access and network segmentation in one appliance. It suits distributed offices, depots and other edge locations where policy control must stay close to the workload.

Designed for Local Traffic Patterns

With 8×RJ45 and 4×SFP ports, the platform fits mixed connectivity at the site edge. Its 1 Gbps NGFW throughput and 1.2 Gbps IPsec VPN throughput give IT a clear fit for branch-scale traffic, remote access and secure site links.

Practical Control Without Excess Capacity

That balance helps keep firewall policy easier to govern across smaller environments. It supports stronger protection than a basic edge device, while avoiding the cost and complexity of oversized firewall tiers.

For branch security planning, the Cisco Secure FPR1120 gives small sites a practical control point. Our team can help you assess fit, align deployment, and plan the right branch firewall profile.

Cisco Secure FPR1120 Key Features​

Cisco Secure FPR1120 is a secure networking platform for branch and small-site environments, designed to deliver controlled connectivity, threat-focused traffic handling, and operational simplicity across distributed deployments.

Branch Security Architecture

Integrated Secure Networking
The platform combines secure connectivity and policy enforcement in a compact appliance design for distributed network environments.

Site Edge Placement
It is suited to branch and small-site deployment models where local traffic control and security processing are required at the edge.

VPN Service Capacity
The platform supports site-to-site and remote-access VPN operation with up to 1.2 Gbps IPsec throughput and 1500 tunnels.

Flexible Wired Connectivity
Its interface set includes 8 RJ45 ports and 4 SFP ports to support varied network attachment requirements.

Operational Control

Policy-Driven Traffic Control
The platform applies security policy at the network edge to help maintain consistent control over inbound and outbound traffic.

Distributed Deployment Management
It supports operational use in multi-site environments where consistent security configuration across locations is important.

Resilient Edge Connectivity
The combination of Ethernet and SFP interfaces supports flexible uplink design for edge network resilience.

Speak to a Cisco Networking Specialist

When you need secure branch connectivity with controlled VPN handling and practical edge integration, our Cisco experts can help align the platform to your site requirements.

Cisco Secure FPR1120 Technical Specifications

Full specifications for this model are listed below.

Additional information

Evaluating whether this is the right fit for your environment?

Our specialists are here to help assess compatibility, compare suitable alternatives, or talk through your configuration needs before committing to a solution.

Contact us today for a no-obligation chat.

Cisco Secure FPR1120 Deployment Scenarios

The Cisco Secure FPR1120 is a compact next-generation firewall for branch and edge sites that need local threat inspection, VPN access and segmentation without adding heavy administration. It fits small, distributed environments where security must stay close to the users and devices.

Professional Services Branch Offices

Consulting and legal branch offices often run mixed staff traffic, SaaS access and remote-user VPN on a small local team. The FPR1120 keeps policy enforcement at the edge, helping protect client data without forcing security decisions back to head office.

Clinic and Outpatient Site Perimeters

Healthcare clinics need to separate clinical systems, admin users and guest access while keeping remote access available for support teams. The FPR1120 supports that split at the site edge, where inspection and VPN load should not disrupt care workflows.

Regulated Finance Branch Networks

Banking and advisory branches need strong perimeter control, internal segmentation and audit-friendly access handling. The FPR1120 gives smaller sites the firewall control they need locally, reducing dependence on wider WAN paths and keeping regulated traffic policies consistent.

Hotel Guest and Back-Office Segmentation

Hotels must isolate guest, staff, POS and back-office traffic while protecting the internet edge from common threats. The FPR1120 helps smaller properties enforce those boundaries cleanly, without requiring large security platforms for modest site traffic.

Warehouse and Depot Edge Security

Logistics sites depend on scanners, cameras, remote users and cloud applications, often across multiple distributed depots. The FPR1120 keeps that traffic segmented and protected at each site, giving operations teams local control without unnecessary firewall capacity.

Planning a Cisco Secure FPR1120 Deployment?

We can help design and deploy Cisco Secure FPR1120 for branch offices, clinics, branches, hotels and warehouses, with the right policy model, resilience planning and rollout support for your site requirements.

Through Cisco’s Capital Finance and Flexible Payment Solutions, we help enterprises and data centres fund new initiatives in ways that fit both IT and business priorities.

Speak with our team today to explore how Cisco financing can help to launch your next IT project sooner.

Cisco Refresh gives you access to certified remanufactured equipment that performs like new and has the same warranty, but at a lower cost and environmental impact.

Cisco Refresh must be purchased via authorised partners like Steel City Consulting. Ask us to check Cisco Refresh stock availability and provide a cost comparison for your next upgrade or expansion project today.

As a certified partner, we provide access to Cisco promotions that reduce upfront spend and accelerate upgrades.

When you work with us, we can bundle and stack multiple offers, navigate application processes, and secure pricing that often isn’t accessible without a Cisco partner. Visit our promotions hub for current Cisco offers and to discuss your eligibility

Tailored recommendations for your infrastructure

Below you’ll find alternative models, suitable software and services that pair with this solution – helping you to avoid compatibility issues, reduce support overhead and deploy with confidence.

Not sure where to start?

Not all deployments fit standard configurations. If you’re weighing up options or want a second opinion on your setup, our team is here to help with honest, straightforward advice backed by decades of vendor knowledge.

Need to define the right IT solution?

Alternatively, If you’re unsure whether this product fully meets your project’s needs, we’re here to help.
A group discussing IT solutions