Juniper SRX340 – Services Gateway

Guide price: Price range: £380.00 through £1,641.48 Ex. VAT

Product Overview

The Juniper SRX340 is a midsize branch-class next-generation firewall and secure SD-WAN gateway that consolidates routing, switching, WAN connectivity and advanced threat protection in a single 1 U platform. It delivers up to 4.7 Gbps firewall throughput and 733 Mbps IPsec VPN performance, with a rich security services suite including intrusion prevention, application control, antivirus, anti-spam and enhanced web filtering.

Powered by Junos OS, it supports secure connectivity, comprehensive threat defence and Juniper Mist-enabled automation for distributed enterprise environments.

Ideal deployment / environment:
The SRX340 is well suited to midsize distributed enterprise branch offices and regional sites that need robust perimeter security, secure SD-WAN connectivity and integrated routing/switching without separate appliances. Its combination of multi-gigabit throughput, advanced threat protection and secure VPN services makes it appropriate for securing office networks, remote sites, retail or branch deployments with traffic volumes beyond small office offerings, while its support for Juniper Mist-managed operations and automation simplifies large-scale roll-outs and reduces operational overhead.

Key Features

  • High performance: up to 4.7 Gbps firewall throughput and 733 Mbps IPsec VPN performance.
  • Ports: 16 x 1 GbE RJ45 and 8 x 1 GbE SFP ports for LAN/WAN connectivity.
  • Security services: next-generation firewall, IPS, application visibility & control, antivirus, anti-spam and enhanced web filtering.
  • Secure VPN: IPsec site-to-site, dynamic endpoint, AutoVPN/ADVPN and SSL remote access.
  • Routing & networking: IPv4/IPv6 routing, OSPF/BGP/IS-IS, policy-based routing, NAT, VLANs and MPLS support.
  • Security scale: up to ~256 000 concurrent sessions, 64 000 AppID sessions, route table up to 1 000 000 entries.
  • High availability: VRRP, stateful HA, active/active and configuration session sync.
  • Management & automation: CLI, J-Web GUI, SNMP, Security Director, Security Director Cloud and Juniper Mist WAN Assurance with AI-driven insights.

Specification

Additional information

Compatible licenses for SRX340 and SRX345
Subscription licenses (1, 3, and 5-years available)
S-SRX340-A1-1Includes: SRX340 Advanced 1 - JSE/SD-WAN, includes SD-WAN features App+ (AppID, AppFW, AppQoS, AppRoute, AppQoE, AppTrack) and IPS; 1-year subscription
S-SRX345-A1-1Includes: SRX345 Advanced 1 - JSE/SD-WAN, includes SD-WAN features App+ (AppID, AppFW, AppQoS, AppRoute, AppQoE, AppTrack) and IPS; 1-year subscription
S-SRX340-P1-1Includes: SRX340 Premium 1, includes App+ (AppID, AppFW, AppQoS, AppRoute, AppQoE, AppTrack), IPS and Juniper ATP; 1-year subscription
S-SRX345-P1-1Includes: SRX345 Premium 1, includes App+ (AppID, AppFW, AppQoS, AppRoute, AppQoE, AppTrack), IPS and Juniper ATP; 1-year subscription
S-SRX340-A2-1Includes: SRX340 Advanced 2, includes App+ (AppID, AppFW, AppQoS, AppRoute, AppQoE, AppTrack),IPS and Content Security (UTM, Cloud AV, URLF and AS); 1-year subscription
S-SRX345-A2-1Includes: SRX345 Advanced 2, includes App+ (AppID, AppFW, AppQoS, AppRoute, AppQoE, AppTrack),IPS and Content Security (UTM, Cloud AV, URLF and AS); 1-year subscription
S-SRX340-P2-1Includes: SRX340 Premium 2, includes App+ (AppID, AppFW, AppQoS, AppRoute, AppQoE, AppTrack), IPS, Content Security (UTM, Cloud AV, URLF and AS) and Juniper Sky ATP; 1-year subscription
S-SRX345-P2-1Includes: SRX345 Premium 2, includes App+ (AppID, AppFW, AppQoS, AppRoute, AppQoE, AppTrack), IPS, Content Security (UTM, Cloud AV, URLF and AS) and Juniper Sky ATP; 1-year subscription
Remote Access/Juniper Secure Connect VPN license (1, 3, and 5-years available)
S-RA3-SRX340-S-1Includes: SRX340 SW, Remote Access VPN - Juniper, 150 Concurrent Users, Standard, with SW support, 1 Year
S-RA3-SRX345-S-1Includes: SRX345 SW, Remote Access VPN - Juniper, 250 Concurrent Users, Standard, with SW support, 1 Year
S-RA3-500CCU-S-1Includes: SW, Remote Access VPN - Juniper, 500 Concurrent Users, Standard, with SW support, 1 Year

Spread the cost of your next IT upgrade or refresh!

Many of our vendor partners offer their own flexible finance programs, available for orders over a certain threshold. 

 

As part of our free consultation and advisory service, we can:

Alternatively, we also work independently with third-party organisations to offer the best possible flexible leasing solutions.

 

Our team is here to help your businesses avoid upfront costs and keep your next IT project on budget. Submit an enquiry today to explore your options.

Trade-in your old IT hardware to save money on your purchase!

Instead of letting unused hardware depreciate or go to waste, our simple IT Asset Trade-In Service helps businesses to regain capital or receive credit towards future purchases.

Our team will assesses the market value of your equipment, managing the entire process from secure collection through to resale or responsible recycling.

To get started, simply submit an enquiry and we’ll respond within 24 working hours.

As a certified partner to industry-leading vendors, we provide access to promotions that reduce upfront spend and accelerate upgrade strategies.

When you work with us, we can bundle and stack multiple offers, navigate application processes, and secure pricing that often isn’t accessible without an official vendor partner.

 

Visit our promotions hub to explore current offers and discuss your eligibility.

Cisco Catalyst 9500 Network Switches

Steel City Consulting is an official Cisco Partner.

Cisco Catalyst 9500 Series (C9500) switches are purpose-built fixed core and aggregation switches for enterprises and data centres. The C9500 family leads the Catalyst 9000 line with high throughput, advanced programmability, and enterprise-grade resiliency, making it a foundation for campus core and distribution layers.

  • High-performance programmable switching: Based on Cisco’s UADP 3.0 (standard C9500) or Silicon One Q200 ASIC (C9500X), C9500 platforms provide up to 3.2 Tbps (per ASIC) and advanced forwarding pipelines for core data fabric operations.

 

  • Rich routing, VPN & fabric capability: Support for MPLS, L2/L3 VPN, Multicast VPN (MVPN), VRF, SD-Access (LISP, host tracking), and advanced virtualisation make the C9500 suitable for large enterprise campus and data centre edge fabrics.

 

  • High availability & redundancy architecture: Dual, platinum-rated redundant power supplies, variable-speed redundant fans, and support for Nonstop Forwarding / Stateful Switchover (NSF/SSO) ensure continuous operation in mission-critical environments.

 

  • Secure, cloud-ready, software-defined infrastructure: With MACsec encryption, Secure Boot, and full integration with Cisco DNA Center & catalyst software subscriptions, the C9500 enables secure programmable networks that scale across on-premises and cloud.

Why Choose Steel City Consulting?

As a trusted Cisco partner, we bring decades of expertise in networking and security solutions. Our team has an extensive technical understanding of Cisco’s product portfolio – enabling us to assess, integrate, and optimise solutions for even the most complex or high-demand environments.

Expert guidance for the right fit

We don’t just sell IT hardware. Every Cisco solution we recommend is assessed against your specific security concerns, performance requirements, and both current and future infrastructure plans. This consultative approach ensures that our guidance is aligned with your bespoke needs, so that you can invest in new network switches with complete confidence.

Exclusive access and strategic advantages

Through our partnership with Cisco, your business will gain access to partner-only promotions, bundled solutions, and live demos. Combined with our technical expertise and ongoing support, this ensures your hardware is secure, cost-optimised, and future-ready.

Expert Networking Services

When you buy Cisco hardware from Steel City Consulting, you’ll receive expert deployment and maximum benefits. We also provide support in the following specialist areas:

Our service What to expect
Networking Design & Installation + Custom architecture aligned to your business goals
+ Scalable networks built for growth
+ Expert installation with minimal disruption to operations
+ 30-day support window post-installation
Network Management & Support + Real-time performance and traffic monitoring
+ Network design tools for scaling and upgrades
+ Security alerting and incident response
+ Backup and failover strategy implementation
WiFi Site Surveys + Heatmapping and signal analysis
+ Access point optimisation
+ Detailed reports and tailored recommendations
+ Security enhancements and interference mitigation
Business Fibre & FTTP Installation + Up to 1Gbps dedicated bandwidth
+ Private and uncontended connections
+ Seamless installation and expert aftercare
+ 24/7 support and monitoring

Through Cisco’s Capital Finance and Flexible Payment Solutions, we help enterprises and data centres fund new initiatives in ways that fit both IT and business priorities.

Speak with our team today to explore how Cisco financing can help to launch your next IT project sooner.

Cisco Refresh gives you access to certified remanufactured equipment that performs like new and has the same warranty, but at a lower cost and environmental impact.

Cisco Refresh must be purchased via authorised partners like Steel City Consulting. Ask us to check Cisco Refresh stock availability and provide a cost comparison for your next upgrade or expansion project today.

As a certified partner, we provide access to Cisco promotions that reduce upfront spend and accelerate upgrades.

When you work with us, we can bundle and stack multiple offers, navigate application processes, and secure pricing that often isn’t accessible without a Cisco partner. Visit our promotions hub for current Cisco offers and to discuss your eligibility

Cisco offers a wide portfolio of subscription-based services that enhance visibility, security, and operational resilience across enterprise and data center networks.

With the right combination of platforms and licenses, you can simplify management, protect critical infrastructure, and unlock advanced analytics. Explore Cisco service options below.

What is Cisco Identity Services Engine (ISE)?

Cisco Identity Services Engine (ISE) is a network access control (NAC) platform that delivers secure, identity-based access for users and devices across wired, wireless, and VPN connections. It provides centralised policy control and is a foundation for Zero Trust networking.

ISE Licenses Features Advantages
Essentials Basic access control, guest services, device visibility. Ensure every device on your network is identified and authenticated.
Advantage Advanced policy, posture assessment, and integration with threat intelligence. Improve compliance and security with centralised, automated enforcement.
Premier Includes all Advantage features plus profiling, segmentation, and advanced integrations. Enable full Zero Trust and protect against lateral movement in hybrid networks.

Why work with a Cisco partner?

Licensing can be complex. Our team ensures you select the right tier for your needs, integrate successfully with Catalyst/Nexus environments, and deploy ISE to full effect.

What is Cisco ThousandEyes?
Cisco ThousandEyes is a subscription-based digital experience monitoring platform that provides visibility into every network and application path your users rely on. It integrates directly with Catalyst 9000 switches for built-in observability.

ThousandEyes Subscriptions Features Advantages
Enterprise Agents Continuous visibility from on-prem, data centre, or cloud environments. Identify bottlenecks and resolve connectivity issues proactively.
Endpoint Agents Monitors end-user devices and SaaS application performance. Improve employee experience across hybrid work and cloud applications.
Internet Insights (Add-on) Aggregated visibility into global Internet, BGP, and SaaS outages. Anticipate issues beyond your own network and mitigate before users are impacted.

Why work with a Cisco partner?

ThousandEyes is most powerful when integrated with your switching and WAN environments. We ensure correct deployment and monitoring that aligns with your business-critical SLAs.

What is Cisco SMARTnet (Smart Net Total Care)?

Cisco SMARTnet is a support and maintenance subscription that ensures critical Catalyst and Nexus infrastructure is always supported, patched, and covered by hardware replacement SLAs.

SMARTnet Service Levels Features Advantages
Next Business Day Replacement hardware shipped by the next business day. Cost-effective option for less critical infrastructure.
4-Hour Onsite 24/7 support with 4-hour onsite replacement. Minimise downtime for mission-critical switches and data centre infrastructure.
2-Hour Onsite 24/7 support with 2-hour replacement (where available). Protect core network services with the fastest recovery option.

Why work with a Cisco partner?

SMARTnet can only be purchased via authorised partners. Our role is to ensure you receive the right coverage, rapid hardware replacement, and lifecycle insights.

What is Cisco DNA Software for Switching?

Cisco DNA Software subscriptions deliver advanced automation, assurance, and security for Catalyst switching environments. Licenses are purchased per-switch and unlock software-defined capabilities.

DNA License Tiers Features Advantages
Essentials Basic automation, software image management, and telemetry. Simplify device management with centralised updates and monitoring.
Advantage Adds policy-based automation, assurance, and security integrations. Automate provisioning and reduce manual configuration errors.
Premier Includes Advantage features plus full SD-Access with advanced segmentation. Enable Zero Trust and simplify policy deployment across the entire fabric.

Why work with a Cisco partner?

We ensure DNA licenses are aligned to your hardware refresh cycles and future requirements—so you avoid overspending while unlocking maximum value

Not sure where to begin?

Talk to a certified Cisco expert. We’ll help you choose the right combination of hardware, licenses, and services.

Contact us today or book a 30-minute consultation.

Customer FAQ: Cisco Catalyst 9500

Upgrading to C9500 network switches? Our FAQ answers 6 common questions.

Q1. What are the main advantages of moving from Catalyst 6800 or C4500 to the C9500?
Catalyst 9500 delivers significantly higher port speeds (10/25/40/100G vs 1/10G on older platforms) and greater route scale (up to 2M IPv4 entries). Plus, support for modern overlays such as EVPN and VXLAN, and tighter integration with Cisco DNA Center for automation. This positions the C9500 as both a direct successor and a long-term platform for campus and aggregation roles.

 

Q2. How does the Cisco C9500 compare to C3850 and C4500-X-LE switches?

FactorCatalyst 9500Catalyst 3850 / 4500-X-LE
Switching capacityUp to 6.4 Tbps (StackWise Virtual)~480 Gbps (limited stacking)
Routing / MAC scaleLarge tables (MPLS, SD-Access, 2M+ routes)Smaller scale, fewer features
Uplinks1/10/25/40/100G optionsMostly 1/10G only
Security & featuresUADP ASIC, MACsec, DNA Center integrationLimited modern security/SDN
Migration fitModern enterprise core/aggregation

Legacy campus/core

Answer: Cisco’s C9500 offers higher bandwidth, flexible uplinks, and advanced security / automation,  making it the natural upgrade path from Catalyst C3850 or C4500-X-LE network switches.

Q3. How scalable is the C9500 in terms of routing and fabric size?
The Catalyst 9500 offers broad scalability: route scale up to 2M IPv4 entries, support for thousands of VRFs, and advanced segmentation for SD-Access and VPN services. Higher-end C9500X models deliver larger buffer capacity and higher route scale, making them suitable for large campus cores or data centre edge roles.

 

Q4. How does licensing and software model work for the C9500?
Cisco uses a software subscription model with Cisco DNA and Catalyst Software subscriptions. Base hardware licenses (Network Essentials / Advantage) are perpetual. Cisco recommends combining these with Cisco DNA for full automation and analytics capabilities.

 

Q5. Can I run SD-Access fabrics on Catalyst C9500?
Yes. The Catalyst 9500 line includes support for SD-Access features such as host tracking database, VRF-aware LISP, and cross-domain connectivity. These features rely on compatible software images. 

 

Q6. What high-availability features should enterprises expect from C9500?
Cisco C9500 switches support critical resiliency capabilities: NSF/SSO (Nonstop Forwarding with Stateful Switchover) for control-plane failover, redundant power supplies and fans, and support for in-service upgrades and patching. These capabilities allow core/aggregation deployments to achieve minimal downtime and seamless upgrades.

Shop Cisco Catalyst 9500 Network Switches

Documentation

Not the model you need?

You may also like…