cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
9419
Views
15
Helpful
5
Replies

Cisco ASA with FirePOWER vs. Cisco IPS Appliance

DOMJAHN DAVID
Level 1
Level 1

hi there,

Question: are there any functional differences between an ASA with FirePOWER functionality enabled and the "pure" FirePOWER IPS Appliances (e. g. 7000 and 8000 Series IPS Modules)?

Thanks a lot!

Kind regards,

David

1 Accepted Solution

Accepted Solutions

Hello Team,

The features will be same except hardware bypass and other expected trhougputs .Ofcourse the throughput will be high for hardwrae appliances and it also has the capability of hardware bypass. Apart from that the URL filtering and all other features will be same.

Kindly rate if this post helps you.

Regards
Jetsy

View solution in original post

5 Replies 5

Pujita Patni
Cisco Employee
Cisco Employee

Hello David,

In my opinion, FirePOWER 7000 / 8000 appliances will be be good fit as NGIPS, AVC, URL filtering and Advance Malware Protection solution. These devices have fire-walling and basic VPN functionality too.

With ASA w/FP, we get ASA fire-walling and VPN support (Site2Site, WebVPN, RA, etc), along with NGFW, NGIPS, AVC,URL, AMP, etc features with Firepower services.

We also have a unified solution Firepower Threat Defense, which offers combined features of both ASA and Firepower devices.

Link :http://www.cisco.com/c/en/us/products/collateral/security/firepower-4100-series/datasheet-c78-736661.html

Regards,

Pujita

Hello Jetsy, hello Pujita,

thanks a lot!

Since the FirePOWER feature set seem to be the same (?) on the 7000 / 8000 appliances and ASA any ASA firewall w/FP can exactly to the same as the FP 7000 / 8000 appliances?

Kind regards,

david

Hello Team,

The features will be same except hardware bypass and other expected trhougputs .Ofcourse the throughput will be high for hardwrae appliances and it also has the capability of hardware bypass. Apart from that the URL filtering and all other features will be same.

Kindly rate if this post helps you.

Regards
Jetsy

Hello Jetsy,

thanks a lot!

Asking google I also found some helpful information describing the differences between ASA w/FP and pure FP applicances, see http://d2zmdbbm9feqrf.cloudfront.net/2015/usa/pdf/BRKSEC-2030.pdf

Kind regards,

David

Jetsy Mathew
Cisco Employee
Cisco Employee

Hello David,

You can also look at the datasheet to know about the expected throughputs through the the hardrware appliances.

http://www.cisco.com/c/en/us/products/collateral/security/firepower-7000-series-appliances/datasheet-c78-732954.html

http://www.cisco.com/c/en/us/products/security/firepower-8000-series-appliances/datasheet-listing.html

http://www.cisco.com/c/en/us/products/collateral/security/firepower-4100-series/datasheet-c78-736661.html

Rate if this post helps you.

Regards Jetsy

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card