Cisco Adaptive Security Appliance (ASA) software is the core OS for the ASA suite. It provides firewall functionality, as well as integration with context-specific Cisco security modules. It is scaled for enterprise-level traffic and connections.
N/A
Cisco Firepower 4100 Series
Score 7.2 out of 10
N/A
The Cisco Firepower 4100 Series’ 1-rack-unit size is presented by the vendodr as ideal at the Internet edge and in high-performance environments. They further state that it shows what’s happening on your network, detects attacks earlier so you can act faster, and reduces management complexity.
N/A
Pricing
Cisco Adaptive Security Appliance (ASA) Software
Cisco Firepower 4100 Series
Editions & Modules
No answers on this topic
Firepower 4100
50,000-250,000
per appliance
Offerings
Pricing Offerings
Cisco Adaptive Security Appliance (ASA) Software
Cisco Firepower 4100 Series
Free Trial
No
No
Free/Freemium Version
No
No
Premium Consulting/Integration Services
No
No
Entry-level Setup Fee
No setup fee
No setup fee
Additional Details
—
—
More Pricing Information
Community Pulse
Cisco Adaptive Security Appliance (ASA) Software
Cisco Firepower 4100 Series
Features
Cisco Adaptive Security Appliance (ASA) Software
Cisco Firepower 4100 Series
Firewall
Comparison of Firewall features of Product A and Product B
Cisco Adaptive Security Appliance (ASA) Software
7.8
Ratings
10% below category average
Cisco Firepower 4100 Series
8.6
Ratings
0% below category average
Identification Technologies
6.50 Ratings
8.00 Ratings
Visualization Tools
6.50 Ratings
8.00 Ratings
Content Inspection
8.00 Ratings
8.00 Ratings
Policy-based Controls
9.00 Ratings
8.00 Ratings
Active Directory and LDAP
7.50 Ratings
10.00 Ratings
Firewall Management Console
7.50 Ratings
9.00 Ratings
Reporting and Logging
5.90 Ratings
8.00 Ratings
VPN
9.00 Ratings
10.00 Ratings
High Availability
9.00 Ratings
10.00 Ratings
Stateful Inspection
9.00 Ratings
10.00 Ratings
Proxy Server
8.00 Ratings
5.50 Ratings
Best Alternatives
Cisco Adaptive Security Appliance (ASA) Software
Cisco Firepower 4100 Series
Small Businesses
pfSense
Score 9.9 out of 10
pfSense
Score 9.9 out of 10
Medium-sized Companies
Quantum Firewalls and Security Gateways
Score 9.6 out of 10
Quantum Firewalls and Security Gateways
Score 9.6 out of 10
Enterprises
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
Score 10.0 out of 10
Palo Alto Networks Virtualized Next-Generation Firewalls - VM Series
We moved our operations entirely to the cloud a few years ago. We loved the stability and scalability of the ASA and wanted to, somehow, keep using it. We discovered that ASA was available in the cloud as well and it was branded ASAv. We tested it and noticed that it was equally robust and a perfect fit for us. During the entire migration period, we used ASAv for cloud operations and put a lot of load on it. ASAv performed very well and gave us an easy transition from on-prem to the cloud.
When we are asked by local partners which security equipment we use we always recommend our Cisco security products. The Firepower firewall is no exception and we can easily recommend this to others who need a fast, secure, and well built system that integrates well with all your existing hardware and software.
Policy management in the GUI. I'm old-school, and still create ACLs in the CLI, but using the GUI for this is very nice.
Event monitoring and reporting is great, and you can get very granular when it comes to what information you are viewing.
I really like the troubleshooting features that are built in, especially the packet tracer and the ability to generate and download a troubleshooting package to review or send to TAC.
The Java based ASDM can botch commands and isn't compatible on some more locked down systems.
Monitoring. Really the same complaint as above, the monitoring available through the ASDM is crappy at best. A much better solution is to send the logs and mirror packets to a SEIM, but that can create issues of its own when looking for realtime analysis.
Compatibility across other ASA models. ASA 5520s don't play well with 5525X which don't play well with older 5510s. Each is great on it's own, but it's next to impossible to logically stack them or have them as layers of firewalls in an infrastructure.
Lack of cloud based management. The Cisco Meraki security devices do this well, but the ASAs are still behind in this regard.
To be honest there has been now great products out in the market compared to Cisco ASA. I beleieve Cisco has to do a lot of improvement in this area. The other defeiniete factors is the cost when it comes to renewals which is always a premium on Cisco products
It not easy to understand the different features it offers. Sometimes you need to spend a couple of minutes to implement a change or even open a ticket with cisco tac to figure it out. Once support is on the phone with you they know how to resolve problems. But it's not an intuitive tool
I generally have not noticed the outages, however since it's a machine it can malfunction, we need to implement the firewall infrastructure in such a way that it is highly available with device failure, region failure etc. Else any solution will be having the issues if they are not build with resiliency.
The support is usually very good and gets back to you very quickly. However I had some instances of when two engineers will give me wildly different answers to what I thought was a simple question. Overall however I do rate the support highly and they are generally always very good.
It was quite a good one, how ever requires an expertise to deploy hence the SMB segment would be finding it difficult to implement this product. The one good reason is that there are lot of ASA certified engineers in compared to the other certified engineers. Hence this resembles positively on the deployment as you have quite a lot of experienced engineer on your deployment
Cisco has made it easy to buy, set up, and manage all of our firewalls with the central FirePower Management Center. All licensing is done via one license portal too. Tech support is standardized for all ASA devices and like support engineers who know the different models to provide timely help for any issues. Cisco Talos is a premier could platform which scours the internet looking for threats and develops protections for the ASA's and as such provides zero second coverage when it best can detect global issues.
We switch to Palo Alto due the amount of tickets open with Cisco Firepower 4100 Series. It was taking a great amount of time for our engineers to fix problems. But it was a great tool when it was working as we were expecting. The fact it has a lot of instability on the releases was the deciding factor.
The 5510 is still being used in one of our setups, and still doing its job this is a lot of Return on Investment.
We have managed to turn around projects quickly because most of our engineers understand this firewall very well. We deploy them in a matter of minutes[.]