06-27-2016 01:11 PM - last edited on 03-25-2019 06:16 PM by ciscomoderator
hi there,
Question: are there any functional differences between an ASA with FirePOWER functionality enabled and the "pure" FirePOWER IPS Appliances (e. g. 7000 and 8000 Series IPS Modules)?
Thanks a lot!
Kind regards,
David
Solved! Go to Solution.
06-28-2016 11:08 PM
Hello Team,
The features will be same except hardware bypass and other expected trhougputs .Ofcourse the throughput will be high for hardwrae appliances and it also has the capability of hardware bypass. Apart from that the URL filtering and all other features will be same.
Kindly rate if this post helps you.
Regards
Jetsy
06-27-2016 05:36 PM
Hello David,
In my opinion, FirePOWER 7000 / 8000 appliances will be be good fit as NGIPS, AVC, URL filtering and Advance Malware Protection solution. These devices have fire-walling and basic VPN functionality too.
With ASA w/FP, we get ASA fire-walling and VPN support (Site2Site, WebVPN, RA, etc), along with NGFW, NGIPS, AVC,URL, AMP, etc features with Firepower services.
We also have a unified solution Firepower Threat Defense, which offers combined features of both ASA and Firepower devices.
Link :http://www.cisco.com/c/en/us/products/collateral/security/firepower-4100-series/datasheet-c78-736661.html
Regards,
Pujita
06-28-2016 09:24 AM
Hello Jetsy, hello Pujita,
thanks a lot!
Since the FirePOWER feature set seem to be the same (?) on the 7000 / 8000 appliances and ASA any ASA firewall w/FP can exactly to the same as the FP 7000 / 8000 appliances?
Kind regards,
david
06-28-2016 11:08 PM
Hello Team,
The features will be same except hardware bypass and other expected trhougputs .Ofcourse the throughput will be high for hardwrae appliances and it also has the capability of hardware bypass. Apart from that the URL filtering and all other features will be same.
Kindly rate if this post helps you.
Regards
Jetsy
06-29-2016 01:15 PM
Hello Jetsy,
thanks a lot!
Asking google I also found some helpful information describing the differences between ASA w/FP and pure FP applicances, see http://d2zmdbbm9feqrf.cloudfront.net/2015/usa/pdf/BRKSEC-2030.pdf
Kind regards,
David
06-27-2016 09:03 PM
Hello David,
You can also look at the datasheet to know about the expected throughputs through the the hardrware appliances.
http://www.cisco.com/c/en/us/products/collateral/security/firepower-7000-series-appliances/datasheet-c78-732954.html
http://www.cisco.com/c/en/us/products/security/firepower-8000-series-appliances/datasheet-listing.html
http://www.cisco.com/c/en/us/products/collateral/security/firepower-4100-series/datasheet-c78-736661.html
Rate if this post helps you.
Regards Jetsy
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide