<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Securing the Internet 'www' connections? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/securing-the-internet-www-connections/m-p/1123858#M78771</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;WebWasher is good stuff.  It does all those things you mention (proxy,content caching, URL filtering, anti-x). It is also very expensive though.  It is absolutely a best of breed solution though and you get what you pay for. The ASA is just not best of breed.  It is probably cheaper though so maybe it's "good enough".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The ASA AIP SSM just isn't designed to do the things you want.  It is a network IPS.  Cisco does have an ASA module for this called CSC-SSM. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/prod_brochure0900aecd80402e88.html" target="_blank"&gt;http://www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/prod_brochure0900aecd80402e88.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However, it doesn't proxy or cache.  It isn't capable of inspecting HTTPS. For A LOT more reasons, it just isn't in the same league as WW. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ISA 2006 doesn't really do anything, by itself, to protect desktops.  You don't need it with WW.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 24 Sep 2008 15:13:50 GMT</pubDate>
    <dc:creator>mhellman</dc:creator>
    <dc:date>2008-09-24T15:13:50Z</dc:date>
    <item>
      <title>Securing the Internet 'www' connections?</title>
      <link>https://community.cisco.com/t5/network-security/securing-the-internet-www-connections/m-p/1123857#M78769</link>
      <description>&lt;P&gt;With an advanced Inspection and Prevention Security Services Module (AIP-SSM 20) for the Cisco ASA 5500 Series Adaptive Security Appliance residing at my perimeter, I am in need of choosing a solution for granting safe and secure Internet access to my 2000+ userbase on the inside. A solution that would suffice as my proxy/web caching needs too and possibly allowing me to do URL filtering according to my policy.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I was looking at secure computing's webwasher and Microsoft's ISA 2006 as possible solutions. Bluecoat is expensive. These guys tout of their L7 capabilities to detect malwares and scan HTTPS traffic but I feel that my AIP SSM should be able to do that job.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What do you guys advise!!? Wouldn't my SSM module check all the internet traffic floating by for all malwares/viruses/http attacks etc?&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 11:18:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/securing-the-internet-www-connections/m-p/1123857#M78769</guid>
      <dc:creator>fahim</dc:creator>
      <dc:date>2019-03-10T11:18:07Z</dc:date>
    </item>
    <item>
      <title>Re: Securing the Internet 'www' connections?</title>
      <link>https://community.cisco.com/t5/network-security/securing-the-internet-www-connections/m-p/1123858#M78771</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;WebWasher is good stuff.  It does all those things you mention (proxy,content caching, URL filtering, anti-x). It is also very expensive though.  It is absolutely a best of breed solution though and you get what you pay for. The ASA is just not best of breed.  It is probably cheaper though so maybe it's "good enough".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The ASA AIP SSM just isn't designed to do the things you want.  It is a network IPS.  Cisco does have an ASA module for this called CSC-SSM. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/prod_brochure0900aecd80402e88.html" target="_blank"&gt;http://www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/prod_brochure0900aecd80402e88.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However, it doesn't proxy or cache.  It isn't capable of inspecting HTTPS. For A LOT more reasons, it just isn't in the same league as WW. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ISA 2006 doesn't really do anything, by itself, to protect desktops.  You don't need it with WW.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 24 Sep 2008 15:13:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/securing-the-internet-www-connections/m-p/1123858#M78771</guid>
      <dc:creator>mhellman</dc:creator>
      <dc:date>2008-09-24T15:13:50Z</dc:date>
    </item>
  </channel>
</rss>

