- Mythbuster busts his own tale
- 10 open source companies to watch
- Sony recalls 73,000 Vaio laptops
- Tool to evade China's Web censorship
- Chrome and Firefox and add-ons
Newsletters | Podcasts | Chats | Opinions | RSS Feeds | This Week In Print | IT Careers | Community | Reports | Downloads | Slideshows | New Data Center
Partner Sites:App Performance | On Demand Security | Networking Solution | SOA | Value of WDS
Cisco is coming out with a new high-end firewall/VPN device for large businesses that is part of the company's ASA line of security appliances.
While boasting large firewall and VPN throughput the ASA 5580 devices (Learn more about desktop firewalls from our Desktop Firewalls Buyer's Guide) lack the intrusion-prevention and antivirus, antispam, antispyware options other ASAs have. Cisco says that is because customers that need a firewall this fast want to run separate IPS and anti-X software.
Cisco says the ASA 5580 supports 10Gbps of firewall throughput using typical flow patterns encountered in customer networks. It also supports up to 10,000 simultaneous VPN users. Ten of the devices can be clustered to support 100,000 VPN users.
The previous top-of-the-line ASA device has a 1.2Gbps firewall and supports 5,000 simultaneous VPN users. The new boxes compete against fast firewall/VPN gear from the likes of Check Point and Juniper. (For comparison of enterprise firewalls, see our Enteprise Firewall Buyer’s Guide.)
To handle logging for the faster gear, Cisco is also introducing NetFlow Security Event Logging, which boils down into a more manageable format the syslog events that would be recorded for its slower ASAs.
The software upgrade correlates related incidents into a smaller number of security events that are recorded in a NetFlow collector. Cisco says it is pushing for IETF standardization of this logging so it can work with third-party event logging gear.
The company says it will eventually make this correlation of events available for earlier ASA models.
ASA 5580 comes in three models, ASA 5580-20, ASA 5580-20 VPN bundle and ASA 55800-40.
The ASA 5580-20 starts at $50,000 for a chassis and firewall software that supports 5Gbps. The ASA 5580-20 VPN bundle costs extra depending on the number VPN use licenses, which can cost as little as $20 per seat.
The ASA 5580-40 pricing starts at $100,000 for the hardware and 10Gbps firewall. All the ASA 5580 models are available next month.

Gartner summarizes its view on Application Delivery Controllers, evaluates strengths and weaknesses...
Vulnerability Management For DummiesDownload this concise book "Vulnerability Management for Dummies," to learn about the simple steps...
The ROI and TCO Benefits of Data Deduplication for Data Protection in the EnterpriseThis paper examines and quantifies the costs and benefits of backup with deduplication storage as...

Life on the edge of your WAN has changed dramatically. With the need to deliver advanced services,...
PoE Plus: Impact on the PoE MarketThe standard for Power over Ethernet (PoE), IEEE Std. 802.3af(tm)-2003, advanced networking,...
Harnessing the power of communications to increase workplace performanceDue to the convergence of IT and telecommunications technologies, the business workplace has been...

We have so many holes punched in our firewalls today that many industry insiders question the value...
The self-managed networkWe aren't there yet, but advances in network and systems management tools are making it possible to...
Partner Content
Brilliantly simple security and control solutions for email, web and endpoint
www.sophos.com
Stopping data leakage
Learn how to exploit your current security investment to control the information that flows into, through and out of your network.
Download the white paper.
Why detection rates aren't enough
Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask prospective vendors to get the right endpoint solution.
Download the white paper.
Applications: taking back control
Employees installing unauthorized applications is a growing threat to business security and productivity. Cost-effectively reduce this threat by integrating control into your malware protection.
Learn more today.
Comments (3)
ASA DOA again...By Anonymous on January 23, 2008, 7:14 pmLooking at this product's specs, I'd have say this is too little too late and very expensive. Non-modular means no real intelligence in the packet filtering ala...
Reply | Read entire comment
>Cisco, how about focusingBy Anonymous on January 23, 2008, 4:05 pm>Cisco, how about focusing on making the ASA more >stable and less buggy before making it faster? I will go along with that statement, we started using the ASAs...
Reply | Read entire comment
RE: Cisco launches faster firewall/VPN applianceBy Anonymous on January 23, 2008, 12:00 amCisco, how about focusing on making the ASA more stable and less buggy before making it faster?
Reply | Read entire comment
View all comments