Trusted by the Highest-Stakes Buyers
Federal agencies and Fortune 500 operations source through ORM Systems.
US Government & Defense
Enterprise Clients
Hand-picked by our procurement team for standout value. This unit is offered at our sharpest price on current stock, verified against live market rates.
Name:
2 In stock - Ready to Ship
Professionally inspected, bench-tested, and firmware-verified, with configurations wiped. Restored to full working order and backed by our warranty.
3 Year Extended Warranty
Same-day Shipping
30-Day Money Back Guarantee
Shipping:
Payment:
3 Year Extended Warranty
Same-day Shipping
30-Day Money Back Guarantee
Need Additional Discount on Product?
Request a quote below - Get Exclusive Pricing and Support.
Shipping:
Payment:
FPR1120-ASA-K9
Cisco Firepower 1120 ASA Firewall Appliance, 4.5 Gbps Statef...
Federal agencies and Fortune 500 operations source through ORM Systems.
US Government & Defense
Enterprise Clients
Regional teams and 25+ distribution partners keep stock near you and accountability in your time zone.
Pay by PayPal or Revolut with full chargeback rights. Order on PO terms, Net-30 for government.
Every registration we claim is public record — check our federal contractor status yourself before you spend a dollar.

Ten years serving buyers who audit their vendors. From federal agencies to 20,000+ enterprise clients worldwide.
FPR1120-ASA-K9 is the Cisco Firepower 1120 1U appliance ordered with Cisco ASA Software rather than the Cisco Secure Firewall Threat Defense image. The platform belongs to the Firepower 1000 Series, a fixed rack-mount firewall family for small business, branch, and internet-edge deployments that need ASA policy behavior on current Firepower hardware. The chassis provides eight 1G RJ-45 data interfaces and four 1G SFP interfaces, plus one 1G RJ-45 management interface, one RJ-45 serial console, USB 3.0 Type-A, integrated AC input, a 200 GB SSD, and included two-post rack mounting brackets. This hardware SKU is not a Threat Defense subscription bundle; ASA Smart Licensing, encryption licensing, and optional security-context licensing are handled separately where required. FPR1120-NGFW-K9 is the closest image sibling, running FTD software instead of the ASA software image supplied with this PID. The ASA-image ordering path helps teams retain existing rule migration, failover behavior, and management practices while moving to Firepower hardware without FTD policy conversion work.
4.5 Gbps of stateful inspection firewall throughput under 1500-byte UDP testing supports routed ASA perimeter policy, NAT, access control, and branch firewall edge designs. 2.5 Gbps of multiprotocol stateful throughput provides an additional mixed-traffic reference point for HTTP, SMTP, FTP, IMAPv4, BitTorrent, and DNS style profiles. 1 Gbps of IPsec VPN throughput under 450-byte UDP LAN-to-LAN testing handles site-to-site encrypted traffic, while 150 maximum VPN peers define the published VPN scale. 200,000 concurrent firewall connections and 75,000 new connections per second provide connection-state capacity for the 1120 ASA model. FPR1120-ASA-K9 also supports two included security contexts with expansion up to five contexts through optional licensing, Active-Active and Active-Passive high availability, ASDM web management, CLI administration, Cisco Security Manager, Cisco Defense Orchestrator, and ASA routing with static routes, BGP, EIGRP, OSPF, and RIP.
FPR1120-ASA-K9 operates at the branch perimeter, small-business internet edge, or segmentation boundary where copper access links, SFP handoffs, site-to-site VPN peers, and ASA policy operations meet. Rack-mount installation, integrated single AC input, fixed 1G RJ-45 and SFP interfaces, and same-model HA pairing support refreshes from older ASA platforms without adopting the FTD image. The appliance purchase remains separate from optional ASA licenses, so context count, encryption entitlement, support coverage, and refurbished transfer checks need review before deployment. ORM Systems offers this firewall in new and certified refurbished condition, with full boot validation, RJ-45 and SFP interface testing, factory reset, serial review, SSD checks, rack accessory confirmation, and license-state review before dispatch. Request a quote for single-site replacement, active-standby pairs, or multi-site Cisco ASA standardization across mixed new and refurbished fleets.
FPR1120-ASA-K9 price is is available on request. Get immediate quote.
Request bulk order quote for FPR1120-ASA-K9 for additional pricing. Browse the full Cisco Firepower 1000 Series Appliances series or explore all Cisco products.
FPR1120-ASA-K9 sits at a branch perimeter where SFP uplinks, copper access handoffs, NAT policy, and IPsec VPN peers converge on Cisco ASA Software. Eight 1G RJ-45 interfaces and four 1G SFP interfaces define the fixed edge layout, while ASDM, CLI, Cisco Security Manager, or Cisco Defense Orchestrator manage policy operations. The 4.5 Gbps ASA stateful throughput and 200,000 connection limit frame sizing before rollout. The branch gains a rack-mounted ASA firewall boundary with documented capacity and repeatable operations.
Infrastructure teams place FPR1120-ASA-K9 between internal routed segments that require ASA access control, NAT separation, and VPN termination without moving to the Threat Defense image. Copper and SFP interfaces map to local zones, upstream handoffs, and service networks, while security contexts divide policy domains when licensed. Active-Passive or Active-Active HA pairs align failover behavior with the ASA design. The deployment creates a clear segmentation edge with separate policy ownership, centralized logging, measured connection-state limits, and predictable route control onsite.
FPR1120-ASA-K9 supports refresh projects that move older ASA deployments onto Firepower 1120 hardware while retaining ASA Software workflows. Teams validate the exact ASA PID, confirm Smart Licensing and optional security-context licensing, stage ASDM or centralized management, and test RJ-45, SFP, console, USB, SSD, and power functions before cutover. The 1U chassis and included two-post brackets support rack replacement planning. The refresh produces a consistent ASA hardware standard for spare pools, HA pairs, staged lifecycle replacement, and support documentation records.
Mon–Fri: [09:00-16:00]
Avg. response under 30 mins
| Product Type | Enterprise Firewall / SMB Firewall / Branch Firewall / VPN Firewall | Next-Generation Firewall / UTM Firewall / SMB Firewall / Branch Firewall / VPN Firewall / IPS Appliance |
| Architecture | Fixed | Fixed |
| Deployment Type | Small Business | Small Business |
| Use Case | Perimeter Security / Secure Access / Network Segmentation | Perimeter Security / Secure Access / Network Segmentation / Threat Protection |
| Firewall Layer Supported | Layer 3 / Layer 4 | Layer 3 / Layer 4 / Layer 7 |
| Power Source | AC Power Supply | AC Power Supply |
| Redundant Power Supply Supported | Redundant PSU Not Supported | Redundant PSU Not Supported |
| Firewall Throughput | 4.5 Gbps 1500-byte UDP; 2.5 Gbps multiprotocol | 890 Mbps FW plus AVC 1024-byte |
| VPN Throughput | 1 Gbps IPsec 450-byte UDP L2L | 400 Mbps IPsec 1024-byte TCP Fastpath |
| Concurrent Sessions | 200,000 | 100,000 |
| New Sessions Per Second | 75,000 | 6,000 |
| Supported VPN Types | IPsec | IPsec |
| Routing Protocols Supported | BGP / EIGRP / OSPF / RIP / Static Routing | BGP / EIGRP / OSPF / RIP / Static Routing |
| High Availability | Active-Active / Active-Passive | Active-Passive |
| Interfaces | RJ-45 / SFP | RJ-45 |
| LAN Ports | 8 x 1G RJ-45 (any role); 4 x 1G SFP (any role) | 8 x 1G RJ-45 (any role) |
| Management Options | CLI / Web GUI / Central Manager | CLI / Web GUI / Central Manager |
| Logging & Monitoring | Syslog / On-Box Logging / Cloud Logging | On-Box Logging / Cloud Logging |
| Flash Storage | 200 GB SSD | 200 GB M.2 SATA SSD |
| Form Factor | Rack-Mount 1U | Desktop |
| Device Type | Firewall | Firewall |
| Product Name | Cisco Firepower 1120 ASA Appliance, 1U | Cisco Firepower 1010 NGFW Appliance, Desktop, PoE |
| Height | 1.7 in | 1.8 in |
| Width | 17.2 in | 7.9 in |
| Depth | 10.6 in | 8.1 in |
| Weight | 3.6 kg | 1.4 kg |
Every unit is authentic, sourced through trusted and authorised channels, and serial-verified on request. Genuine networking and IT hardware, guaranteed, or your money back.
New products are backed by up to 3 years of extended warranty, and certified refurbished units by up to 3 months, for dependable protection on every order. Coverage is clear, honoured in full, and confirmed on each product page.
If a unit ever falls short, our streamlined RMA process gets a replacement to you fast, with advance replacement available to keep your network running. No jargon, no runaround.
Every device is inspected, bench-tested, and firmware-verified, with configurations wiped before dispatch. Additional testing can be arranged to confirm full working condition on request.
Our specialists assist with compatibility, configuration, licensing, and installation, before and after you buy. Real hardware expertise, whenever you need it.
dispatched quickly and shipped worldwide from regional hubs, fully tracked and insured.
The ASA-image 1120 arrived reset, tested, and ready for staged firewall migration.
Good checks on SFP ports, SSD status, rack brackets, and ASA licensing requirements.
The 1U form factor and ASA software matched our branch edge standard.
ORM Systems confirmed this was the ASA image SKU, not the FTD variant.
Refurbished condition was accurate, and the RJ-45 and SFP interfaces passed checks.
Lead time was clear, and the rack accessory details were confirmed before dispatch.
Worked as a same-model ASA spare after license and HA planning were completed.
FPR1120-ASA-K9 is the Cisco Firepower 1120 1U firewall appliance ordered with Cisco ASA Software. It uses Firepower 1000 Series hardware with ASA firewall, NAT, VPN, routing, high-availability, CLI, ASDM, Cisco Security Manager, and Cisco Defense Orchestrator management options. It is an ASA-image hardware SKU, not a Threat Defense subscription bundle.
The FPR1120-ASA-K9 model number identifies the Firepower 1120 appliance with the ASA software image. The ASA suffix separates it from FPR1120-NGFW-K9, which runs Firewall Threat Defense software. It is also different from license-only PIDs, spare accessories, power supplies, and subscription SKUs because it is the physical firewall chassis.
FPR1120-ASA-K9 is a hardware firewall and VPN security appliance. It performs routing as part of Cisco ASA Software, but its primary category is enterprise firewall, branch firewall, perimeter firewall, and IPsec VPN appliance. That makes it a firewall SKU rather than a router, switch, access point, module, cable, power supply, or license.
FPR1120-ASA-K9 is the 1U rack-mount model above the compact Firepower 1010 and below Firepower 1140 and 1150 models. In ASA performance tables, it provides 4.5 Gbps stateful inspection throughput, 2.5 Gbps multiprotocol throughput, 200,000 concurrent connections, and 1 Gbps IPsec VPN throughput for branch firewall deployments.
Cisco lists Firepower 1120 ASA stateful inspection firewall throughput at 4.5 Gbps under 1500-byte UDP test conditions. The same ASA performance table lists 2.5 Gbps stateful inspection throughput for multiprotocol traffic. Buyers should size production traffic around packet size, NAT rules, VPN encryption, failover design, and application mix.
FPR1120-ASA-K9 is an ASA-image SKU, so Cisco's Threat Defense IPS and NGFW inspection throughput figures should not be applied to this row. ASA performance should be evaluated with the ASA stateful inspection and IPsec VPN tables instead. Buyers needing FTD threat subscription behavior should compare FPR1120-NGFW-K9.
FPR1120-ASA-K9 supports 200,000 concurrent firewall connections in Cisco's ASA performance table for Firepower 1000 appliances. The same table lists 75,000 new connections per second for the 1120 model. These figures help size perimeter, VPN, and segmentation designs where connection count is a major ordering filter.
Cisco lists Firepower 1120 ASA IPsec VPN throughput at 1 Gbps under a 450-byte UDP LAN-to-LAN test. The ASA performance table also lists 150 maximum VPN peers for the 1120 model. VPN sizing should account for cipher choice, packet mix, remote peer count, failover design, and active ASA licensing.
FPR1120-ASA-K9 includes eight 1G RJ-45 network interfaces and four 1G SFP interfaces. The hardware specification also lists one 1G RJ-45 management interface, one RJ-45 serial console, and one USB 3.0 Type-A port. The 1120 model is a fixed 1U platform with no modular network bay.
FPR1120-ASA-K9 is managed through Cisco ASA Software tools. Cisco lists Adaptive Security Device Manager as web-based local management for small-scale deployments, and centralized configuration, logging, monitoring, and reporting through Cisco Security Manager or Cisco Defense Orchestrator. CLI administration is also part of ASA operational workflows for firewall engineers.
The main use case for FPR1120-ASA-K9 is ASA-based perimeter firewalling, NAT, segmentation, and IPsec VPN on a 1U Firepower 1000 Series appliance. It suits teams standardizing on ASA policy behavior while moving to Firepower 1120 hardware with eight RJ-45 ports, four SFP ports, and documented ASA throughput.
FPR1120-ASA-K9 fits small business, branch, and compact enterprise edge environments that need 4.5 Gbps ASA stateful firewall throughput, 200,000 concurrent connections, and 1 Gbps IPsec VPN throughput. Larger sites with higher throughput, more VPN peers, or higher context needs should compare Firepower 1140 or 1150 ASA models.
FPR1120-ASA-K9 is suitable for branch perimeter security when the deployment requires ASA Software, 1G RJ-45 and SFP connectivity, stateful inspection, NAT, IPsec VPN, and ASA high availability. It provides a 1U rack form factor with included two-post mounting brackets for branch racks and small edge cabinets.
FPR1120-ASA-K9 supports ASA security contexts according to Cisco's ASA performance table, with two contexts included and five maximum contexts listed for the 1120 model. Optional security context licensing should be reviewed when more than the included context count is required. Context planning should align with routing, failover, and management design.
Cisco's ordering guide states that Firepower appliances with ASA are available through Smart Licenses and include a Base license, with optional licenses such as Encryption, Security Contexts, and Carrier. For the Firepower 1000 Series, the standard ASA license family is FPR1000-ASA or L-FPR1000-ASA. License transfer and entitlement should be verified.
FPR1120-ASA-K9 does not include integrated Wi-Fi. It is a wired 1U firewall appliance with RJ-45, SFP, management, console, USB, SSD, and AC power hardware. Sites that require wireless access should deploy separate access points behind the firewall and manage wireless policy through the appropriate Cisco or Meraki platform.
FPR1120-ASA-K9 does not include an embedded cellular modem or cellular WAN interface. It provides wired Ethernet interfaces and ASA IPsec VPN functionality. Cellular backup designs should use an external cellular router, modem service, or WAN handoff in front of the firewall according to the site's carrier and failover architecture.
Cisco's ASA performance table lists Firepower 1120 high availability as Active-Active and Active-standby. HA planning should use compatible ASA software, matching hardware, correct licenses, synchronized interface roles, and tested failover links. Buyers should confirm whether the deployment needs active-standby perimeter resilience or context-based active-active behavior.
FPR1120-ASA-K9 is a higher-capacity rack-mount ASA appliance than FPR1010-ASA-K9. Cisco lists Firepower 1120 ASA stateful throughput at 4.5 Gbps and 200,000 concurrent connections, while the Firepower 1010 ASA model is listed at 2 Gbps and 100,000 concurrent connections. The 1120 also adds SFP interfaces.
FPR1120-ASA-K9 runs Cisco ASA Software, while FPR1120-NGFW-K9 runs Firewall Threat Defense software. The hardware platform is the same 1120 class, but image selection changes management tools, licenses, feature behavior, and performance tables. Buyers should not apply FTD threat subscription assumptions to an ASA-image FPR1120-ASA-K9 appliance.
FPR1120-ASA-K9 sits below FPR1140-ASA-K9 in ASA performance. Cisco lists Firepower 1120 at 4.5 Gbps stateful throughput, 2.5 Gbps multiprotocol throughput, 200,000 connections, and 1 Gbps IPsec VPN throughput. Firepower 1140 raises those figures to 6 Gbps, 3.5 Gbps, 400,000 connections, and 1.2 Gbps VPN.
FPR1120-ASA-K9 is a smaller ASA platform than FPR1150-ASA-K9. Cisco lists Firepower 1150 ASA stateful throughput at 7.5 Gbps, multiprotocol throughput at 4.5 Gbps, 600,000 concurrent connections, and 1.7 Gbps IPsec VPN throughput. Buyers needing 10G SFP+ connectivity should compare the 1150.
FPR1120-ASA-K9 is commonly requested in new condition for ASA standardization, hardware refreshes, and branch firewall deployments. Availability depends on Cisco channel status, distributor stock, region, and requested quantity at quote time. ORM Systems checks condition, serial status, accessories, warranty options, and licensing requirements before confirming an order.
Refurbished FPR1120-ASA-K9 stock is often requested for ASA replacement projects, spare appliances, lab-to-production staging, and cost-controlled firewall refreshes. Refurbished units should be factory reset, boot tested, serial checked, and validated across RJ-45, SFP, management, console, USB, SSD, and power functions before shipment and deployment scheduling.
FPR1120-ASA-K9 price depends on condition, order quantity, sourcing channel, region, warranty coverage, accessories, and whether ASA licenses or support services are quoted at the same time. Refurbished pricing differs from new pricing because availability and testing history matter. ORM Systems provides quote-based pricing from current stock and sourcing options.
FPR1120-ASA-K9 lead time depends on new or refurbished condition, warehouse location, quantity, export checks, accessory requirements, and current channel supply. Single replacement units often follow available inventory, while multi-site ASA refreshes need staged allocation. ORM Systems confirms current lead time during quotation before purchase order release.
Bulk discounts for FPR1120-ASA-K9 depend on quantity, condition mix, sourcing route, warranty package, and whether licenses, support, or accessories are included. Multi-site ASA standardization projects and spare pool builds often receive project pricing review. ORM Systems evaluates the bill of materials and returns pricing based on available new and refurbished inventory.
Warranty options for FPR1120-ASA-K9 depend on condition, sourcing route, and commercial terms available when quoted. ORM Systems offers up to three-year warranty options on eligible new and refurbished firewall hardware. Cisco Smart Net, ASA software support, and Smart Licensing entitlement should be reviewed separately from hardware warranty terms.
Refurbished FPR1120-ASA-K9 units should receive chassis inspection, power-on validation, factory reset, serial review, SSD checks, and interface testing across RJ-45 data, SFP, management, console, and USB ports. License-state review is also important because ASA Smart Licensing and optional context entitlements should not be assumed transferable with refurbished hardware.
Compliance details for FPR1120-ASA-K9 should be checked against Cisco Firepower 1000 Series documentation and regional deployment requirements. Cisco lists regulatory compliance, CE marking, UL 60950-1 safety alignment, and FCC Class A EMC information for the series. Buyers should also confirm power cord and import requirements for the destination.
Before configuring FPR1120-ASA-K9, deployment teams should confirm ASA software version, Smart Account status, interface roles, SFP requirements, WAN addressing, VLAN or routed design, NAT policy, access rules, IPsec VPN requirements, failover mode, security context count, logging targets, ASDM workflow, and migration rollback planning steps.
FPR1120-ASA-K9 does not include Threat Defense subscriptions because it is an ASA-image SKU. Cisco's ordering guide states that threat defense subscriptions apply to chassis running Firewall Threat Defense software. ASA deployments use ASA Smart Licensing and optional ASA licenses, so subscription and entitlement requirements should be checked separately before purchase.
Relevant FPR1120-ASA-K9 accessories include 2-post rack mounting brackets, cable management brackets for 1120 or 1140 or 1150 models, FIPS kit options, a 200 GB SSD spare, power cords, and SFP modules as needed. Cisco lists two-post mounting brackets as included for the 1120 class. Refurbished orders should confirm accessory contents.
UK buyers purchase FPR1120-ASA-K9 through Cisco channels, specialist IT hardware suppliers, or refurbished enterprise firewall providers depending on condition, lead time, and licensing requirements. ORM Systems supports quote-based sourcing for new and refurbished FPR1120-ASA-K9 appliances, with accessory checks, serial review, warranty options, and ASA license planning before confirmation.
International availability for FPR1120-ASA-K9 depends on stock location, export controls, destination country, power cord requirements, carrier handling, and regional compliance needs. Buyers should verify ASA licensing, support coverage, import obligations, and accessory requirements before rollout. ORM Systems reviews shipment details during quotation so fulfillment expectations remain clear.