08-15-2012 07:58 AM - edited 03-11-2019 04:42 PM
Dear All,
-
I have a company ( main office and branches), all computers in branches and main office access to a server so I need to do protection for this server what model of ASA firewall do you suggest?
Total computers in branchs and main office are about 70 PC, which access concerent about 50PC.
Regards.
Solved! Go to Solution.
08-15-2012 08:04 AM
The most important fact is missing in your question: How much bandwidth do you want to get through the firewall to the server.
The answer can range from ASA 5505 if 100 MBit/s is enough over ASA 5545-X for Gigabit up to the 5585-X for 10Gig.
And if you want HighAvailability you should at least go for the 5515-X.
--
Don't stop after you've improved your network! Improve the world by lending money to the working poor:
http://www.kiva.org/invitedby/karsteni
08-15-2012 08:06 AM
Hi,
Depends on your budget.
Have a look at one of the smaller ASAs, 5505 or 5510. See below
https://www.cisco.com/en/US/products/ps6120/prod_models_comparison.html
If you have 3 or less VLANs choose the 5505. If you need more then choose the 5510.
Don't forget to rate all pots that are helpful.
Cheers
Sean
08-15-2012 08:04 AM
The most important fact is missing in your question: How much bandwidth do you want to get through the firewall to the server.
The answer can range from ASA 5505 if 100 MBit/s is enough over ASA 5545-X for Gigabit up to the 5585-X for 10Gig.
And if you want HighAvailability you should at least go for the 5515-X.
--
Don't stop after you've improved your network! Improve the world by lending money to the working poor:
http://www.kiva.org/invitedby/karsteni
08-15-2012 08:06 AM
Hi,
Depends on your budget.
Have a look at one of the smaller ASAs, 5505 or 5510. See below
https://www.cisco.com/en/US/products/ps6120/prod_models_comparison.html
If you have 3 or less VLANs choose the 5505. If you need more then choose the 5510.
Don't forget to rate all pots that are helpful.
Cheers
Sean
08-15-2012 08:30 AM
Dear all,
all branches aggregated over one E1 link so 100M is enough also 3 VLANS is enough, do you think ASA5505-BUN-K9 is good, because ASA5510-BUN-K9 so expensive.
Regards
08-15-2012 11:17 PM
Do you need a fully functional DMZ or more then 10 IPSec Peers? Then you need the 5505 SecPlus-Bundle. SecPlus is also needed if you want failover on the ASA. Keep in mind that failover is always stateless on the 5505. So if the active unit fails all connections have to reconnect.
Sent from Cisco Technical Support iPad App
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide