Cisco ASA
From Wikipedia, the free encyclopedia
In computer networking, Cisco Adaptive Security Appliance 5500 Series, or simply Cisco ASA, is Cisco's line of network security devices introduced in 2005,[1] that succeeded three existing lines of popular Cisco products:
- ASA succeeded Cisco PIX, which provided firewall and network address translation (NAT) functions.
- ASA succeeded Cisco IDP 4200, which worked as intrusion prevention system (IPS).
- ASA succeeded Cisco VPN 3000 Series Concentrators, which provided virtual private networking (VPN).
Contents |
[edit] Specifications of past and present models
Like the Cisco PIX firewalls, the ASAs are based on Intel x86 architecture. The ASA series of devices run PIX code 7.0 and later. Through PIX OS release 7.x the PIX and the ASA use the same software images.
Beginning with version PIX OS version 8.x, the codes diverge, with the ASA using a Linux kernel and PIX continuing to use the traditional Finesse/PIX OS combination.[2]
| Model | 5505 | 5510 | 5520 | 5540 | 5550 | 5580-20 | 5580-40 |
|---|---|---|---|---|---|---|---|
| Introduced | 2006 | 2005 | 2005 | 2005 | 2006 | 2008 | 2008 |
| CPU Type | AMD Geode LX | Intel Celeron | Intel Pentium 4 Celeron |
Intel Pentium 4 | Intel Pentium 4 | AMD Opteron (2 CPU, 4 cores) | AMD Opteron (4 CPU, 8 cores) |
| CPU Speed | 500 MHz | 1.6 GHz | 2.0 GHz | 2.0 GHz | 3.0 GHz | 2.6 GHz | 2.6 GHz |
| Chipset | Geode CS5536 | Intel 875P Canterwood |
|||||
| Default RAM | 256 MB | 256 MB | 512 MB | 1 GB | 4 GB | 8 GB | 12 GB |
| Boot Flash Device | ATA CompactFlash | ATA CompactFlash | |||||
| Default Flash | 64MB | 64MB | 64MB | 64MB | 64MB | 1GB | 1GB |
| Min OS Version | 7.x | 8.1(1) | 8.1(1) | ||||
| Max Interfaces | 3 (trunking disabled) / 20 (trunking enabled) | 50/100 | 150 | 200 | 250 | ||
| Network chipset(s) | Marvell 88E6095 | ||||||
| Expansion Modules Supported | AIP, SSC | CSC-SSM, AIP-SSM, 4GE-SSM | CSC-SSM, AIP-SSM, 4GE-SSM | CSC-SSM, AIP-SSM, 4GE-SSM | No | 6 Interface Cards | 6 Interface Cards |
| Supports SSL VPN | Yes - 25 | Yes - 250 | Yes - 750 | Yes - 2500 | Yes - 5000 | Yes - 10000 | Yes - 10000 |
| Failover Supported | Stateless Active/Standby | Active/Standby, Active/Active | Active/Standby, Active/Active | Active/Standby, Active/Active | Active/Standby, Active/Active | Active/Standby, Active/Active | Active/Standby, Active/Active |
| Model | 5505 | 5510 | 5520 | 5540 | 5550 | 5580-20 | 5580-40 |
[edit] Performance specifications
| Model | ASA 5505 [3] | ASA 5510 [3] | ASA 5520 [3] | ASA 5540 [3] | ASA 5550 [3] | ASA 5580-20 [3] | ASA 5580-40 [3] |
|---|---|---|---|---|---|---|---|
| Cleartext throughput, Mbit/s | 150 | 300 | 450 | 650 | 1,200 | 5,000 | 10,000 |
| AES/Triple DES throughput, Mbit/s | 100 | 170 | 225 | 325 | 425 | 1,000 | 1,000 |
| Max simultaneous connections | 10,000/25,000 | 50,000/130,000 | 280,000 | 400,000 | 650,000 | 1,000,000 | 2,000,000 |
| Max site-to-site and remote access VPN sessions | 10/25 | 250 | 750 | 5,000 | 5,000 | 10,000 | 10,000 |
| Max number of SSL VPN user sessions | 25 | 250 | 750 | 2,500 | 5,000 | 10,000 | 10,000 |
| Model | ASA 5505 | ASA 5510 | ASA 5520 | ASA 5540 | ASA 5550 | ASA 5580-20 | ASA 5580-40 |
[edit] References
- ^ Cisco press release quote: "Las Vegas (Interop) May 3, 2005 – Cisco Systems, Inc., today announced the availability of the Cisco Adaptive Security Appliance (ASA) 5500 Series"
- ^ "Cisco open source license page". http://www.cisco.com/en/US/docs/security/asa/asa80/license/opensrce.html. Retrieved on 2007-08-21.
- ^ a b c d e f g "Cisco ASA Model Comparison page". http://www.cisco.com/en/US/products/ps6120/prod_models_comparison.html. Retrieved on 2008-05-15.
[edit] External links
| This article needs references that appear in reliable third-party publications. Primary sources or sources affiliated with the subject are generally not sufficient for a Wikipedia article. Please add more appropriate citations from reliable sources. (October 2007) |

