Cisco ASA at glance.
May 21, 2021

Cisco ASA at glance.

Anonymous | TrustRadius Reviewer
Score 9 out of 10
Vetted Review
Verified User

Overall Satisfaction with Cisco ASA

Cisco ASA is a very advanced device used for network and security. It is also used by many clients as a headend for Site to Site or Route-based VPN. It is very well known for Stateful filtering and addresses the concerns of load balancing, packet filtering, AAA support, and much more. It is the most advanced and stable version. The device can be customized with an advanced version of the license to support big enterprise customers support a huge amount of thought, both normal and encrypted traffic.
  • Act as VPN headend
  • Stateful filtering
  • Transparent mode
  • AAA support
  • Load balancing
  • Routing support
  • Debug logs taken from Cisco ASA are very granular and gives a perfect resolution while troubleshooting
  • Configuring from GUI is not always a better option
  • Sometimes old features are removed due to vulnerability, which creates issues in the existing environment. Like you cannot remove additional ACL lines from an ACL that is being used in the crypto map. This feature has been depreciated after 9.15 due to Cisco ASA crash issues
  • Enhancement requests are not easily considered by the Dev team unless it is a major impact
  • During the time of the pandemic, this device has been much smooth and reliable for people connecting from home. Hence caused zero to minimal business impact during these days.
  • In case we have to Increase the capacity of throughput or the number of tunnels to be used, we can simply buy additional licenses most of the times, hence reducing the chances of hardware upgrades
  • You can always roll back to the previous image without corrupting the current configuration as it happens in other firewalls. Hence safer to roll back in case an issue happened after graduation and there is no workaround except rollback
The stability of the device is one of the main reasons. The firewall power is the most valuable asset.
It is an easy-to-deploy and dependable device that every big company trust for security.
The support provided by TAC is amazing and your escalation is taken care of by CCIE experts. Multiple BUs are involved to resolve the issue The support is above and beyond.

Do you think Cisco Adaptive Security Appliance (ASA) Software delivers good value for the price?

Yes

Are you happy with Cisco Adaptive Security Appliance (ASA) Software's feature set?

Yes

Did Cisco Adaptive Security Appliance (ASA) Software live up to sales and marketing promises?

I wasn't involved with the selection/purchase process

Did implementation of Cisco Adaptive Security Appliance (ASA) Software go as expected?

Yes

Would you buy Cisco Adaptive Security Appliance (ASA) Software again?

Yes

Cisco AnyConnect, Cisco 1000 Series Aggregation Services Routers (ASR 1000), Cisco Firepower 2100 Series
If there a need for a lot of users to connect to a corporate network using VPN, the AnyConnect option is very stable and reliable. Cisco ASA acts as a very good headend for VPN termination.
It is suitable for a banking environment, where Cisco ASA can act as a hub or spoke for DMVPN and hence reducing the burden of the configuration of 100' s of tunnels.


Cisco Adaptive Security Appliance (ASA) Software Feature Ratings

Identification Technologies
8
Visualization Tools
6
Content Inspection
8
Policy-based Controls
9
Active Directory and LDAP
7
Firewall Management Console
9
Reporting and Logging
10
VPN
10
High Availability
7
Stateful Inspection
8
Proxy Server
9