Cisco ASA is the way to go
August 04, 2017

Cisco ASA is the way to go

Anonymous | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User

Overall Satisfaction with Cisco ASA

We use the ASA as a firewall, intrusion prevention and VPN. This is used for the whole organization. Basically a proactive threat defense that tops attacks before they spread through the network.
  • Real-time protection against attacks from DOS applications, detection and filtering of network activity from worms and viruses, spyware, adware and malware detection.
  • The ability to use multiple contexts or also known as Firewall multimode.
  • The ability to use dynamic routing protocols.
  • GUI interface is lacking. The interface is java specific.
  • Would like more SLA and event manager functionality.
  • The complex way of connecting external connectivity.
  • Positive would be the VPN functionality with the ease of setup and security. Being a Cisco shop, this proved to be more cost effective with less need of multiple expertise in house.
  • Negative is the inability to use VPN while in multimode. Would prefer a single entry point with load balancing.
The ease of use and the in house experience was the big factor for purchasing Cisco products. Though the other two products worked within our environment, they proved a little difficult when working with other Cisco products. This could have been due to the lack of knowledge/experience with these products.
The ASA is best suited for firewall and VPN usage. The ease of use for setting up firewall rules and NAT translations makes it ideal for preventing hacking of your company's most private information. VPN usage and setup is just as easy with the ability to lock it down to the bare minimums for access. I feel its less appropriate in the IPS world. The older separate IPS units were more robust and easier to work with.