




Product description

Netgate Security Gateway Appliances with pfSense Plus Software

World’s Most Trusted Firewall
Millions of pfSense Plus installations protect organizations worldwide.

Complete Solution
All Netgate appliances come pre-installed with the latest pfSense Plus software with lifetime upgrades and TAC Lite assistance included.

Unbeatable Value
Get business-grade security at a fraction of the cost of comparable solutions.

Scalable Performance
Find the perfect appliance for your needs, with options ranging from compact home solutions to multi-gigabit business deployments.

Netgate Technical Assistance Center
Every Netgate appliance includes one year of complimentary TAC Lite technical assistance from Netgate’s award-winning Global Technical Assistance team. Our “zero-to-ping” service helps ensure you can successfully connect your Netgate appliance to the internet and one client on the same network online. With a 98% satisfaction rating and technical professionals available 24/7/365, you can trust that expert help is there when you need it.

Netgate 1100
pfSense is the world’s most popular, feature-rich and robust firewall, router and VPN solution. Ideal for professionals and organizations looking for easy-to-use, powerful, flexible, proven solutions for safely connecting to the Internet.
The Netgate 1100 security gateway appliance with pfSense Plus software is the ideal microdevice for the home and small office network. With a compact form factor, low power draw, and silent operation it can run completely unnoticed on a desktop or wall. Featuring a Dual-core ARM Cortex-A53 1.2 GHz CPU, (3) 1 GbE ports, and 1 GB of DDR4 RAM, the Netgate 1100 enables up to 880 Mbps routing and 650 Mbps of firewall throughput.

Performance
The Netgate 1100 delivers a substantial improvement in pfSense Plus firewall performance relative to its highly popular predecessor, the SG-1000. Consumer and business customers will quickly appreciate this product packs a serious punch with pfSense Plus software, world-class price-performance, elegant packaging, and an unbeatable low price.
L3 Forwarding
IPERF3 Traffic: 927 MbpsIMIX Traffic: 472 Mbps
Firewall (10k ACLs)
IPERF3 Traffic: 607 MbpsIMIX Traffic: 191 Mbps
IPsec VPN (AES-CBC-128 + SHA1)
IPERF3 Traffic: 247 MbpsIMIX Traffic: 90 Mbps

Specifications
CPU: Underpinned by the powerful, yet energy-efficient, 64-bit Marvell ARMADA 3720 network processing system-on-chip (SoC), which fully leverages Dual Cortex-A53 ARM processor cores.
Network Ports: Marvell 88E6141 networking switch which drives (3) GbE Ethernet (WAN/LAN/OPT) ports
Storage: 10.6 GB eMMC storage.
Memory: 1 GB DDR4 RAM, DDR4 memory allows more stable, higher transfer rates for memory-intensive applications (e.g. IDS/IPS).
Cooling: The passive cooling system and low power draw of the Netgate 1100 provides efficient thermal management and silent operation expected from smaller devices despite its significantly higher performance.
Add to Cart
Add to Cart
Customer Reviews
4.1 out of 5 stars 361
4.2 out of 5 stars 144
4.0 out of 5 stars 38
4.2 out of 5 stars 27
Price
$209.00$209.00 $389.00$389.00
— no data
— no data
CPU
Dual Core Cortex-A53 ARM64 SoC @ 1.2GHz Dual Core Cortex-A53 ARM64 SoC @ 1.2GHz Quad Core Intel Atom C1110 with AVX2, 2.1 GHz Quad Core Intel Atom C3558 2.2 GHz
Storage
10.6 GB eMMC 128 GB M.2 SATA 2242 SSD MAX/10.6 GB eMMC BASE 128 GB NVMe M.2 SSD 128 GB NVMe M.2 SSD MAX/21.3 GB eMMC
Memory
1 GB DDR4 4 GB DDR4 4 GB LPDDR5 8 GB DDR4
Ports
(3) 1 GbE ports (WAN/LAN/OPT) which share a 1 GbE Marvell switch (1) 1 GbE (RJ45/SFP combo) (4) 1 Gbps LAN Marvell switch with 2.5 Gbps uplink (4) 2.5 GbE (RJ45) “Direct” (unswitched) combo WAN/LAN Intel i226 (2) 1 GbE Combo Ports (RJ45/SFP) Intel SoC Integrated MAC; (2) 10 GbE SFP+; (4) 2.5 GbE Intel i225
L3 Forwarding
880 Mbps 1.56 Gbps 9.28 Gbps 18.76 Gbps
Firewall (10k ACLs)
656 Mbps 881 Mbps 8.61 Gbps 10.07 Gbps
IPsec VPN
74.2 Mbps 118 Mbps 3.2 Gbps 1.77 Gbps
IPsec encryption standard used
AES-CBC-128 + SHA1 AES-GCM-128 / AES-NI AES-GCM-128 w/VAES AES-GCM-128 w/QAT
BUSINESS READY – pfSense+ software updates included for product lifetime. Netgate TAC Lite technical support included. One year hardware warranty included.
COMPLETE – Pre-loaded with pfSense+ software to get up and running fast. Simply unbox it and start customizing for your secure edge networking needs. Free help with setup from our expert Technical Assistance Center (TAC) available 24/7/365.
POWERFUL – A dual core ARM Cortex-A53 1.2 GHz delivers near gigabit routing of common home iPerf3 traffic and in excess of 650 Mbps of firewall throughput.
COMPACT – Low power draw, a compact form factor, and silent operation allow it to run unnoticed when placed on a desktop, wall, or rack.
FLEXIBLE – Three (3) 1 GbE switched (WAN/LAN/OPT) ports allow you to configure three separate 1 GbE switched ports for upto a gigabit of bi-directional traffic.
DELIVERY – In order to provide the most reliable service for Amazon customers, this item is shipped with adult signature required.
Ideal for AI security: Protect your AI workloads and data.
12 reviews for Netgate 1100 pfSense+ Security Gateway | VPN, Router, Firewall | Lifetime TAC Lite Support | 3X 1 GbE Ports | Protect Your Network with This Fully Featured, Professional Network Security Appliance.
Add a review
$209.00

A Reader in CA –
Nice firewall!
Works well. The web interface is well thought out and also works well. Small form factor is helpful.
Alva K. Miller –
One of the best things I have bought for my computer
I bought this about 2 or more years ago. It works magnificently. You have to be careful where you place it or it doesn’t work. One of the best things I have bought for my computer.
H. Vaughan –
No support 1 month and no response from them!
Over a decade ago, I set up pfSense on a Soekris Net5501 by using an image on an SD card and connecting by a serial cable to configure everything. The hardware is getting old and I wanted a reliable replacement firewall.Buying this from Netgate was a serious mistake.I had configured my old firewall 100% on my own and it ran well for over a decade. When I made updates, there was no problem. When I got tied up with deaths in the family, moving, building a new house, and so on, for a number of years, that old pfSense firewall just kept chugging along, working perfectly.I felt, after that long, it was time to update, but I didn’t want to mess with putting an image on an SD card and dealing with a serial cable. I don’t have the time I did in the past, so I ordered a simple box, running the same software, that was backwards compatible. Supposedly I could load the configuration from my old firewall directly into the new one and that would be it.Well, no. I had issues with DNS from the start, but it didn’t look like firewall issues. It looked more like flakey ISP issues. I had to go to the forums and, after FOUR days exchanging messages and spending hours each day, I finally got the new configuration tweaked so we didn’t keep losing connectivity repeatedly. During this time, I wrote a letter to Netgate – to Sales, since they promise “zero to ping” tech support, but they don’t have that contact email anywhere on the website. Hell, unless you pay for tech support, you have only the forum. A month later? Not one single reply on that email. (I was hoping Sales would at least say, “We gotta make sure this guy doesn’t complain to others and badmouth us,” and send me to tech support, but they ignored it.)So now, while the whole country is on lockdown, I’m finding it takes 1/3 of a second for a ping to this device on a network that was working perfectly until I replaced the old pfSense firewall with the Netgate one running a new version of pfSense.I don’t know what’s wrong with this system, but it keeps malfunctioning and creating issues that slow down connections when an old version of the same software, on old hardware, worked perfectly.And help? No. They don’t give it. Not even zero to ping. They don’t care.Time to go back to the old hardware. It worked. I guess I’ll just have to bite the bullet and go through the old fashioned upgrade process because I sure as hell can’t count on Netgate’s equipment to work properly.
zzz –
Good device
Works well with my home network setup! It has 2 USB ports, but unfortunately doesn’t support USB share. Blocks lots of ad traffic (from iPhone etc.).
Trelane Esq –
Great little POWERFUL router.
Let me say this upfront:If you’re clueless about networking, DO NOT BUY THIS! This is not a beginner’s router. It is a very powerful router and the configuration can be very complex.If you have half a clue about networking, read on-I’ve been running pfSense for years on old PCs and love it. But the old PCs get flaky when power gets removed (they don’t always come back up).This little bugger does EVERYTHING the PC version does and it recovers from power losses correctly!If you have never used pfSense, it’s a steep learning curve but it is POWERFUL! It does things that only high-end professional routers can do.I’m running multiple site-to-site VPNs, Road-warrior VPNs, port forwarding to dedicated servers, DMZs, and pretty complex firewalls to keep everyone out of where they’re not supposed to be.You can’t do this with a consumer grade SOHO router.
Marcus –
Good Product for starter homelab or home network
It is a good product for the starter and does do what it is intended but keep in mind this does not supply WIFI you would need to pick up another device. If your using on a simple lab or home network will work fine but anything more it may bog down due to the CPU if doing to much traffic through it. Otherwise GREAT for what paid well worth it
Rie Fjohür, Esq. –
A firmware update has been available for 8 months, and it frightens me to attempt installing it.
After 18 months of ownership, I can confidently say that Pfsense is a powerful tool by which to mess up on a grand scale.I’m not what you would call tech illiterate. I have a degree in application programming and can deftly use OOP and procedural languages, have built my own gaming PC, and repair and hardware mod retro consoles as a hobby. My original university major was computer networking and I gave it up for the much easier prospect of applications development, which may be hard to believe for some. Computer networking and its equipment is legitimately the only thing in my life that gives me anxiety just *thinking* about having to reconfigure it.One errant checkbox will take down your entire home network, prevent any access to the web UI, and require using the serial access port on the device to roll back a change. This isn’t hyperbole — I had this happen this afternoon. It’s actually become such a predictable series of events that I leave the USB cable permanently attached to the Pfsense appliance, and tacked up an extension cable from my PC right next to it so that I can pop them together at a moment’s notice just to do this in PuTTY. This would actually be my first recommendation if you’re not a networking genius and buy this appliance: download PuTTY and commit these steps to memory from the Netgate docs: https://docs.netgate.com/pfsense/en/latest/solutions/sg-1100/connect-to-console.html (which also reminds me that this firewall will only present console options on device startup and will output nothing when successfully connected to while already running, so memorize the console options while you’re at it too.)My next recommendation is to buy a small USB fan, connect it to one of the USB ports on the firewall, and point that thing right at the appliance. The advertising claims passive cooling has you covered, but it doesn’t. My network is tiny with only 20 devices total (4 or 5 online at the same time, max) and it took less than two hours for me to notice the melting plastic smell. The plastic casing was legitimately hot to the touch, as in physically recoiling to avoid burning myself.I would also recommend that you familiarize yourself with Youtube channels like Lawrence Systems. You’ll be getting the bulk of your information on how to do anything from them. Netgate says TAC Lite support is included with purchase, but all that does is get your Pfsense appliance online and connect one device to the internet. If you’re going to be adding wifi or, god forbid, anything classy like VLANs, then they aren’t going to be of much help unless you shelled out 400 extra clams. The “official” sources of free home user help like Netgate forums or the Pfsense subreddit has the distinct air of disdain for anyone that isn’t writing their own routing microcode, and the largest portion of problems seem to go unsolved. When one tries what is suggested in a thread, the problem still exists and then the thread just ends where, presumably, the OP gave up and went back to their off the shelf Nighthawk.Finally, I would make my most important recommendation of all: don’t buy this if you aren’t a) capable of setting up enterprise networks with one hand while solving sudoku with the other, or b) willing to dump an entire day off (or weekend) into figuring out how to make a single change or addition. This firewall is not a turn-key solution and you will find yourself chewing fingernails down to bleeding while on your 20th Google results page attempting to find any guidance on how to fix your problem.After unloading all of that, I have to be fair and say that it does what it does well when left alone. Your average consumer wifi router is designed to be idiot proof by offering little to no security, which is evidenced by its plug and play nature. Pfsense trusts nothing by default and you must then go out of your way to allow traffic you want flowing through your network. After initial install complications and finally getting a working network, it gave me zero problems until the next time I decided to change something. It has gracefully recovered from multiple power outages with little more than a system log entry, and has been belting out routed packets for a year and a half. The sheer volume of packets it drops on a minute by minute basis boggles the mind, and this was all crap that was assaulting my home network for years beforehand.There have even been a few instances of pure simplicity. One instance of something that floored me was installing Tailscale. This was apparently a joint effort between Tailscale and Netgate to make a literal set it and forget it feature. It was literally one package download and install from the web UI and it was done. Complete connectivity to Jellyfin when outside the home, that I can be confident is secure. It was magnificent.Overall, I don’t feel like 3 stars is harsh. It’s competent but unforgiving. While I estimate it’s been problem free for 90% of its time in my home, that last 10% was spent in a state of headache-inducing aggravation while attempting to solve a problem and having nowhere to turn.
Daniel –
Llego en tiempo, antes de lo esperado y se agradece. El precio es perfecto, no hay duda alguna. Me gustaría que ofrecieran más modelos pero este funciona bien para home lab.
Amazon Customer –
Está bien. Un poco caro, por eso solo le doy 4 estrellas.
Amazon Customer –
Excellent product. Money well spend.
Gurpreet singh –
Good firewall. Thanks.
purpleNATE –
Powerful small reliable internet security deviceYes it doesn’t handle more than 500 mbit, but most won’t need faster than thatPros:VPN setup is easy, secure private DNS for all your connected devices, total control over your home networkCons:Limited Memory (1GB)My experience:1st unit, kept randomly rebooting, had to send it to the manufacturer (RMA). They tested and found defective hardware. They did sent back a ‘new’ unit pretty quickly, however I did need to do a reimage of the new device once I got it as it was acting up right out of the box throwing all kinds of software errors. After flashing the new firmware (2.4.5) the netgate firewall is running like a dream and hasn’t crashed yet, and I’m actually a happy customer and would recommend to those thinking of buying one, get the next model up if you can afford to.