Replacing a Fortigate 600C with a Cisco ASA 5500-X series

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-18-2016 08:03 AM - edited 03-12-2019 01:24 AM
A customer needs to replace a firewall fortigate 600C, and the company wants to recomend a Cisco Solution, what would be the best option?. I don't have any detail about the current's perimeter security device configuration.
- Labels:
-
NGFW Firewalls
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-18-2016 08:59 AM
The 600C is a quite powerful device. An ASA 5585-X (SSP-20 or SSP40) with FirePOWER could be comparable to it. But if it's a pure perimeter device, it could be oversized and a smaller one could be enough.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-18-2016 10:03 AM
I agree with Karsten. From an ASA perspective, Cisco doesnt have anything but the 5585 that would be comparable to the 600C or up and that would be overkill. If replacing a Fortinet box you would really have no choice but to go to a Cisco Firepower 4100 or up to get comparable performance. Fortinet is a leader in security appliance ASIC technologies so you will see that even their lower end boxes like the 300C blow away the upper end X series ASA's by alot! With the exception of the 5585 of course. However, since Cisco acquired Sourcefire, the Firepower boxes are now an option.
Hope this helps.
