Cisco ASA 5585-X with FirePOWER Services
Threat-Focused Next-Generation Firewall (NGFW) Designed for a New Era of Threat
ASA 5585-X chassis with SSP-10
ASA 5585-X chassis with SSP-20, SSP-40, and SSP-60
Includes: 16 Port Gigabit Ethernet Data, 4 Port Gigabit Ethernet Management, 1 AC power supply, 3DES/AES
Our Price: Request a Quote
Includes: 16 Port Gigabit Ethernet Data, 4 Port SFP+, 1 AC power supply, 3DES/AES
Our Price: Request a Quote
Includes: 16 Port Gigabit Ethernet Data, 4 Port Gigabit Ethernet Management, 1 AC power supply, 3DES/AES
Our Price: Request a Quote
Includes: 16 Port Gigabit Ethernet Data, 4 Port SFP+, 1 AC power supply, 3DES/AES
Our Price: Request a Quote
Includes: 12 Port Gigabit Ethernet Data, 8 Port SFP+, 1 AC power supply, 3DES/AES
Our Price: Request a Quote
Includes: 12 Port Gigabit Ethernet Data, 8 Port SFP+, 2 AC power supply, 3DES/AES
Our Price: Request a Quote
Click here for more options and pricing!
Please Note: All Prices are Inclusive of GST
Overview:
Meet the industry's first adaptive, threat-focused next-generation firewall (NGFW) designed for a new era of threat and advanced malware protection. Cisco ASA with FirePOWER Services delivers integrated threat defense for the entire attack continuum - before, during, and after an attack - by combining the proven security capabilities of the Cisco ASA firewall with the industry-leading Sourcefire threat and advanced malware protection features together in a single device. The solution uniquely extends the capabilities of the Cisco ASA 5500-X Series Next-Generation Firewalls beyond what today's NGFW solutions are capable of.
Superior Multilayered Protection
Cisco ASA with FirePOWER Services brings distinctive threat-focused next-generation security services to the Cisco ASA 5500-X Series Next-Generation Firewalls and Cisco ASA 5585-X Adaptive Security Appliance firewall products. It provides comprehensive protection from known and advanced threats, including protection against targeted and persistent malware attacks (Figure 1). Cisco ASA with FirePOWER Services features these comprehensive capabilities:
- Site-to-site and remote access VPN and advanced clustering provide highly secure, high-performance access and high availability to help ensure business continuity.
- Granular Application Visibility and Control (AVC) supports more than 3,000 application-layer and risk-based controls that can launch tailored intrusion prevention system (IPS) threat detection policies to optimize security effectiveness.
- The industry-leading Cisco ASA with FirePOWER next-generation IPS (NGIPS) provides highly effective threat prevention and full contextual awareness of users, infrastructure, applications, and content to detect multivector threats and automate defense response.
- Reputation- and category-based URL filtering offer comprehensive alerting and control over suspicious web traffic and enforce policies on hundreds of millions of URLs in more than 80 categories.
- AMP provides industry-leading breach detection effectiveness, a low total cost of ownership, and superior protection value that helps you discover, understand, and stop malware and emerging threats missed by other security layers.
Cisco ASA with FirePOWER Services
Unprecedented Network Visibility
Cisco ASA with FirePOWER Services is centrally managed by the Cisco FireSIGHT Management Center. Management Center provides security teams with comprehensive visibility into and control over activity within the network. Such visibility includes users, devices, communication between virtual machines, vulnerabilities, threats, client-side applications, files, and websites. Holistic, actionable indications of compromise (IoCs) correlate detailed network and endpoint event information and provide further visibility into malware infections.
Management Center also provides content awareness with malware file trajectory that aids infection scoping and root cause determination to speed time to remediation.
Cisco Security Manager provides scalable and centralized network operations workflow management. It integrates a powerful suite of capabilities; including policy and object management, event management, reporting, and troubleshooting for Cisco ASA firewall functions. For small-scale and simple deployments, the Cisco Adaptive Security Device Manager (ASDM) is available to provide on-device, GUI-based firewall network operations management.
Cisco's enterprise-class management tools help administrators reduce complexity with unmatched visibility and control across NGFW deployments.
Cisco FireSIGHT Management Center:
Intuitive High-level and Detailed Drill-Down Dashboards
Reduced Costs and Complexity
Cisco ASA with FirePOWER Services incorporates an integrated approach to threat defense, reducing capital and operating costs and administrative complexity. It smoothly integrates with the existing IT environment, work stream, and network fabric. The purpose-built appliance family is highly scalable, performs at up to multigigabit speeds, and provides consistent and robust security across branch, Internet edge, and data centers in both physical and virtual environments.
With Cisco FireSIGHT Management Center, administrators can streamline operations to correlate threats, assess their impact, automatically tune security policy, and easily attribute user identities to security events. Management Center continually monitors how the network is changing over time. New threats are automatically assessed to determine which can affect your business. Response efforts are then focused on remediation, and network defenses are adapted to changing threat conditions. Critical security activities such as policy tuning are automated, saving time and effort, while protections and countermeasures are maintained in an optimal state.
Cisco FireSIGHT Management Center integrates easily with third-party security solutions through the eStreamer API to streamline operation workflows and fit existing network fabrics.
Features and Benefits:
Feature | Benefits |
---|---|
Next-generation firewall | Industry's first threat-focused NGFW; provides ASA firewall functionality, advanced threat protection, and advanced breach detection and remediation combined in a single device |
Proven ASA firewall | Rich routing, stateful firewall, Network Address Translation, and dynamic clustering for high-performance, highly secure, and reliable access with Cisco AnyConnect VPN |
Market-leading NGIPS | Superior threat prevention and mitigation for both known and unknown threats |
Advanced malware protection | Detection, blocking, tracking, analysis, and remediation to protect the enterprise against targeted and persistent malware attacks |
Full contextual awareness | Policy enforcement based on complete visibility of users, mobile devices, client-side applications, communication between virtual machines, vulnerabilities, threats, and URLs |
Application control and URL filtering | Application-layer control (over applications, geolocations, users, websites) and ability to enforce usage and tailor detection policies based on custom applications and URLs |
Enterprise-class management | Dashboards and drill-down reports of discovered hosts, applications, threats, and indications of compromise for comprehensive visibility |
Streamlined operations automation | Lower operating cost and administrative complexity with threat correlation, impact assessment, automated security policy tuning, and user identification |
Purpose-built, scalable | Highly scalable security appliance architecture that performs at up to multigigabit speeds; consistent and robust security across branch, Internet edge, and data centers in physical and virtual environments |
On-device management | Simplifies advanced threat defense management for small and medium sized business with small scale deployments |
Remote Access VPN | Extends secure corporate network access beyond corporate laptops to personal mobile devices, regardless of physical location; support for Cisco AnyConnect Secure Mobility Solution, with granular, application-level VPN capability, as well as native Apple iOS and Android VPN clients |
Site-to-site VPN | Protect traffic, including VoIP and client-server application data, across the distributed enterprise and branch offices |
Third-party technology ecosystem | Open API that enables the third-party technology ecosystem to integrate with existing customer work streams |
Integration with Snort and OpenAppID | Open source security integration with Snort and OpenAppID for access to community resources and ability to easily customize security to address new and specific threats and applications quickly |
Collective Security intelligence (CSI) | Globally acclaimed security and web reputation intelligence for real-time security protection |
Technical Specifications:
Cisco ASA 5585-X with FirePOWER Services | ||||
---|---|---|---|---|
Firewall | Cisco ASA 5585-X SSP-10 w/ FirePOWER Services | Cisco ASA 5585-X SSP-20 w/ FirePOWER Services | Cisco ASA 5585-X SSP-40 w/ FirePOWER Services | Cisco ASA 5585-X SSP-60 w/ FirePOWER Services |
Maximum application control (AVC) throughput | 4.5 Gbps | 7 Gbps | 10 Gbps | 15 Gbps |
Maximum application control (AVC) and IPS throughput | 2 Gbps | 3.5 Gbps | 6 Gbps | 10 Gbps |
Maximum concurrent sessions | 500,000 | 1,000,000 | 1,800,000 | 4,000,000 |
Maximum New Connections per second | 40,000 | 75,000 | 120,000 | 160,000 |
Application control (AVC) or IPS sizing throughput [440 byte HTTP]* | 1.2 Gbps | 2 Gbps | 3.5 Gbps | 6 Gbps |
Supported applications | More than 3,000 | |||
URL categories | 80+ | |||
Number of URLs categorized | More than 280 million | |||
Centralized configuration, logging, monitoring, and reporting | Multi-device Cisco Security Manager and Cisco FireSIGHT Management Center | |||
Hardware | ||||
Memory (RAM) | 12 GB | 24 GB | 24 GB | 48 GB |
Minimum Flash | 8 GB | 8 GB | 8 GB | 8 GB |
Management and Monitoring Interface | 2 Ethernet 10/100/1000 ports |
* Activating more features will change performance
Platform Support / Compatibility:
Cisco ASA with FirePOWER Services include ASA firewalling, AVC, URL filtering, NGIPS, and Advanced Malware Protection (AMP). This unique set of capabilities is available on the Cisco ASA 5500-X Series NGFW platforms: Cisco ASA 5506-X, 5512-X, 5515-X, 5525-X, 5545-X, 5555-X, and 5585-X with Security Services Processor SSP-10, SSP-20, SSP-40, and SSP-60.
The Cisco ASA 5585-X FirePOWER Services SSP-10, SSP-20, SSP-40, and SSP-60 hardware blades are supported on the Cisco ASA 5585-X platform. Cisco ASA 5585-X SSP-10, SSP-20, SSP-40, and SSP-60 firewalls require Cisco ASA Software Release 9.2.2 and later. Cisco ASA with FirePOWER Services software is supported on the Cisco ASA 5500-X Series of next-generation midrange security appliances running Cisco ASA Software Release 9.2.2 and later. Regardless of form factor, Cisco ASA with FirePOWER Services is managed by the Cisco Security Manager and the Cisco FireSIGHT Management Center.
Documentation:
Download the Cisco ASA 5500-X Series with FirePOWER Services Datasheet (PDF).
Pricing Notes:
- All Prices are Inclusive of GST
- Pricing and product availability subject to change without notice.
Includes: 16 Port Gigabit Ethernet Data, 4 Port Gigabit Ethernet Management, 1 AC power supply, 3DES/AES
Our Price: Request a Quote
Includes: 16 Port Gigabit Ethernet Data, 4 Port SFP+, 1 AC power supply, 3DES/AES
Our Price: Request a Quote
Includes: 16 Port Gigabit Ethernet Data, 4 Port Gigabit Ethernet Management, 1 AC power supply, 3DES/AES
Our Price: Request a Quote
Includes: 16 Port Gigabit Ethernet Data, 4 Port SFP+, 1 AC power supply, 3DES/AES
Our Price: Request a Quote
Includes: 12 Port Gigabit Ethernet Data, 8 Port SFP+, 1 AC power supply, 3DES/AES
Our Price: Request a Quote
Includes: 12 Port Gigabit Ethernet Data, 8 Port SFP+, 2 AC power supply, 3DES/AES
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote
Our Price: Request a Quote