Product Id: 28273952
Description: Cisco 5525-X Next-Generation Firewall Services, Intrusion Prevention - Subscription license (1 year) - 1 appliance - ESD
Mfr Part #: L-ASA5525-IP1Y=
Cisco ASA Next-Generation Firewall Services include Cisco Application Visibility and Control (AVC), Web Security Essentials (WSE), and Intrusion Prevention System (IPS). They blend a proven stateful inspection firewall with next-generation firewall capabilities and network-based security controls for end-to-end network intelligence and streamlined security operations.
Corporate networks are encountering the highest levels of change in history. Users require anywhere, anytime access to the network from a variety of company-owned and personal mobile devices. In addition, applications have evolved to be highly dynamic and multifaceted, blurring the line between business applications and personal ones that may increase the company's exposure to Internet-based threats. As a result, organizations must take an approach to that unifies the network's streamlined security operations without abandoning time-tested methods. Cisco ASA Next-Generation Firewall Services enable organizations to rapidly adapt to dynamic business needs while maintaining the highest levels of security.
- Control specific behaviors within allowed micro applications
- Restrict web and web application use based on the reputation of the site
- Proactively protect against Internet threats
- Enforce differentiated policies based on the user, device, role, application type, and threat profile
- Application awareness
Enforces access policy based on more than 1200 commonly used applications and 150000 micro applications; provides access control based on "behavior" (for example, a file upload or a post on a social networking site) to further control user activity related to applications; controls port- and protocol-hopping applications that can evade classic security controls.
- Identity-based firewalling
Provides differentiated access control based on user and user role; supports common identity mechanisms such as Windows Active Directory agent, LDAP, Kerberos, and Windows NT LAN Manager.
- Device-type-based enforcement
Uses Cisco AnyConnect clients to identify the types of devices (such as iPads, iPhones, and Android devices) that are accessing the network, and controls which devices will be permitted or denied.
- URL filtering
It is enables precise control of Internet traffic with an enterprise-class, full-featured URL filtering solution.
- Intrusion prevention
Detects and blocks Internet-born threats that target end users and their personal devices. Cisco ASA Next-Generation Firewalls with IPS protect the Internet edge and reduce complexity through simplified policies integrated with Cisco ASA Next-Generation Firewall Services.
- Global threat intelligence
It is uses the global footprint of Cisco security deployments for more comprehensive network protection. Cisco SIO delivers regularly updated threat intelligence feeds for near-real-time protection from zero-day malware.
- Stateful firewall capabilities
In addition to enabling Layer 7 context-aware rules, provides extensive support for Layer 3 and Layer 4 stateful firewall features, including access control, network address translation, and stateful inspection.
- Intuitive management solution
It is comes preloaded with Cisco Prime Security Manager, a powerful, intuitive management solution that simplifies the management of context-aware firewalls.