07-12-2017 03:45 AM - edited 03-12-2019 02:41 AM
Hello,
I need a firewall that will protect web applications from attacks. We have no control over the source code.
What do people recommend?
trying to prevent things like .. SQL Injections, Buffer Overflow and PHP and ASP vulnerabilities.
Solved! Go to Solution.
07-12-2017 08:09 AM
If you contact your preferred Cisco reseller there are various demos they should be able to arrange. They range from instant demo (WebEx walkthrough) to dCloud-based to on-site deployment of an ASA with FirePOWER services that can use and analyze your actual traffic. That last one is known as "proof of value" program.
If you don't have a regular relationship with a Cisco partner, I recommend you use the partner locator tool and do an advanced search for one who is a Master Security partner.
https://locatr.cloudapps.cisco.com/WWChannels/LOCATR/openBasicSearch.do
07-12-2017 05:32 AM
Any of the Cisco products with Firepower can do this - ASA with FirePOWER service module, Firepower appliance running FTD image, or Firepower NGIPS appliance.
Which product depends on if you want to replace your existing firewall and what throughput you require.
07-12-2017 05:42 AM
Hello Marvin,
Thanks for the Advice, I have not heard of FirePOWER.
I stopped working with Firewalls when PIX became ASA so I am not familiar with what they can do now.
Thanks, I will take a look.
07-12-2017 05:48 AM
You're welcome.
Firepower is the technology from Cisco's acquisition of Sourcefire in Fall 2013. Sourcefire was the series of commercial products that were built on and extend and enhance the open source Snort IPS.
Cisco has integrated it across most of their security portfolio. Add to it things like endpoint protection with AMP (Advanced Malware Protection) for Endpoints and Cisco Umbrella (former OpenDNS product) and you have a very complete and effective security portfolio.
Please mark your question as answered if it has been.
07-12-2017 05:57 AM
Thanks Marvin,
Would you know how I could get a Product on Demo to make sure it would do what I need?
07-12-2017 08:09 AM
If you contact your preferred Cisco reseller there are various demos they should be able to arrange. They range from instant demo (WebEx walkthrough) to dCloud-based to on-site deployment of an ASA with FirePOWER services that can use and analyze your actual traffic. That last one is known as "proof of value" program.
If you don't have a regular relationship with a Cisco partner, I recommend you use the partner locator tool and do an advanced search for one who is a Master Security partner.
https://locatr.cloudapps.cisco.com/WWChannels/LOCATR/openBasicSearch.do
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide