Cisco PIX firewalls and ASA Series firewalls integrate next-generation firewall, intrusion defense, and Virtual Private Network functionality in an affordable, single-box format. Both product lines have been superseded by the ASA 5500-X line of firewalls with Firepower Services. (See integration and troubleshooting help with Cisco AA 5500-X firewalls with Firepower Services.) Still, PIX and earlier-generation Cisco ASA 5500 Series adaptive security appliances are extensively deployed and continue to offer small and mid-size organizations a reliable firewall solution.

Cisco PIC and the original ASA 5500 firewalls deliver powerful user and program policy support, mutlivector attack protection, and secure connectivity services. The increased knowledge sharing of consolidated security features in a stand-alone package provides customers deploying these integrated firewalls the advantages of advanced security, reduced TCO, and minimal maintenance costs. PIX security appliances and Cisco's ASA 5500 family combine with Cisco IOS Firewall, the Firewall Services Module for Catalyst 6500 Series switches, and 7600 family routers as parts of Cisco's versatile, integrated firewall solutions. Based on an expandable, modular approach, each device is designed with a particular array of options to provide more efficient security to different network situations. These products can be individually installed to protect specific facets of the network environment, or can be grouped for a layered, defense-in-depth strategy following the design best practices outlined in the Cisco SAFE framework. Completing the integrated firewall solutions, Cisco has developed a comprehensive security management portfolio, ranging from Cisco security device and IOS security features and built-in device managers, to self-contained management utilities, moving to ensure that businesses can productively manage their Cisco protection solution purchases. Cisco PIX Firewalls
Cisco PIX firewall appliances offer reliable user and application policy enforcement, multi-source invasion defense, and safe networking services in affordable, out-of-the-box modules. These specialized appliances offer a broad range of built-in protection and connectivity services including process-aware firewall services, Voice over IP (VoIP) and multimedia protection, reliable multi-site and remote-access IP Security (IPsec) VPN networking, high availability, smart networking features, and versatile administration options. The Cisco PIX firewall Appliance product line ranges from compact plug-and-play desktop units for small offices and home offices to modular gigabit products with investment protection for enterprise and ISP customers, PIX firewall appliances provide dependable protection, performance, and availability for environments of all sizes.

PIX Firewalls Consulting Firm
Based around a tested, specialized OS that delivers rich protection features, PIX security appliances offer a high level of security and have been awarded Common Criteria Evaluation Assurance Level (EAL) 4 status and ICSA Firewall and IP Security certification. Cisco PIX firewall appliances provide security for a broad array of VoIP and additional mixed-media conventions including H.323 v. 4, Session Initiation Protocol (SIP), Cisco Skinny Client Control Protocol, RTSP, and Media Gateway Control Protocol (MGCP), helping organizations to protect deployments of a broad range of current and upcoming VoIP and video applications. PIX security appliances offer a wealth of setup, tracking, and troubleshooting features, giving IT managers the flexibility to use the techniques that most closely meet their needs. Management solutions include centralized, policy-based administration utilities, integrated web-accessible administration, and compatibility with remote-tracking protocols like SNMP and syslog. The integrated Adaptive Security Device Manager system provides a world-class web-accessible control solution that greatly streamlines the installation, in-place configuration, and monitoring of a specific Cisco PIX security appliance without requiring any extra software beyond an ordinary web browser and Java plug-in to be installed on an administrator's computer.

IT managers can also remotely set up, monitor, and troubleshoot PIX firewall appliances using a CLI interface. Safe CLI interface communication is available through several methods such as SSHv2 Protocol, Telnet through IP Security (IPsec), and out-of-band through a console port. PIX firewalls also have robust automatic-update features, a collection of secure remote-administration services that ensure firewall configurations and software images are kept up to date. Cisco ASA 5500 Series Firewalls
Cisco ASA 5500 Series Firewalls are specially engineered solutions that incorporate market-proven, best-of-breed protection and Virtual Private Network support plus a flexible design. The end product is a robust, versatile network protection solution better suited to protect small and medium business (SMB) and larger networks and, simultaneously, lower the total deployment and maintenance costs previously associated with this high degree of protection.

Cisco Adaptive Security Appliances 5500 Series Firewalls Support
Cisco Adaptive Security Appliances (ASA) Firewalls build on engineering developed for Cisco's PIX 500 Security Appliance, Cisco's IPS 4200 family Intrusion Prevention System, and the VPN 3000 Series concentrator. These technologies enable the Cisco ASA Firewall family to deliver a firewall that stops a broad range of threats. Cisco ASA 5500 Series Firewalls provide program protection, local containment, and safe VPN functionality throughout the entire product portfolio. This breadth of protection allows the guarding of any network segment, including the most typical threat vectors like remote sites, LAN-connected inside users, and remote connected VPNs. Cisco ASA 5500 Series firewalls provide strong application protection through smart, application-sensitive inspection engines that examine network flows at Layers 4-7. The result is a more secure network covering web, voice, and mobile wireless connectivity. To defend environments against application-layer assaults and to offer organizations more control over the applications and protocols utilized in their environments, these inspection engines incorporate broad application and protocol knowledge and rely on security enforcement solutions such as protocol anomaly detection and state tracking. Also incorporated are assault sensing and remediation techniques such as application and protocol command filters and content verification. Cisco Adaptive Security Appliances 5500 Series firewall inspection engines also deliver control over IM and peer-to-peer file sharing, allowing businesses to police usage policies and conserve network bandwidth for critical business processes. While increasing security, Cisco ASA firewalls also lower deployment and support expenses. By providing extensive VPN and protection functions, the Cisco ASA 5500 Series firewall can be used as the the only platform for a multitude of uses, enabling platform commonality. The Cisco ASA firewall can be deployed as a consolidated threat-protection device at a central location by leveraging its access control, process inspection, and worm, virus, and other malware mitigation technologies. The Cisco Adaptive Security Appliances firewall can also be used as a dedicated remote connectivity solution using its Virtual Private Network features. As an alternative, the Cisco Adaptive Security Appliances (ASA) firewall performs equally well in the network interior for interdepartmental connectivity management and to defend against malicious assaults inside users may inadvertently introduce into the network. For small company and satellite office environments, the Cisco Adaptive Security Appliances 5500 Series firewall serves as an all-in-one platform providing comprehensive intrusion defense and Virtual Private Network functionality while fitting within the budgets and operational models of such situations.

This adaptive one-device, many-solution approach reduces the number of devices that need to be deployed and maintained while offering a common operating and administrative system across all those installations. This architecture simplifies the training of setup, tracking, troubleshooting, and security personnel. To further reduce maintenance expenses, Cisco Adaptive Security Appliances (ASA) firewalls are also highly network aware, enabling them to integrate seamlessly into the environment without interfering with legitimate traffic and processes. How Progent's Consultants Can Help You with Cisco PIX and ASA Security Appliances
Cisco ASA 5500 Series adaptive security appliances and PIX family firewalls provide a wealth of setup, tracking, and analysis features which offer you the flexibility to set up these security appliances to match your company's requirements. Progent's CCIE authorized network experts can show you how to support your current network infrastructure that includes Cisco ASA or PIX firewall technology and that provides protection, resilience, performance, and recoverability. Progent's firewall experts can also help your organization to upgrade to ASA 5500-X firewalls with Firepower Services.

Progent's CISA and CISSP-ISSP-certified information security engineers can help your business to develop a security policy appropriate for your business and can set up your firewall to support your security strategy. Progent's risk assessment consultants can evaluate the effectiveness of your existing firewall solution and help determine the security of your whole IT environment. Progent's Help Desk Call Center can deliver urgent remote technical support for Cisco products and can give you quick access to a Cisco network engineer. To learn more details about Progent's consulting expertise for Cisco solutions, pick a topic:

To get in touch with Progent about engineering help for Cisco products, phone 1-800-993-9400 or see Contact Progent.


© 2002-2026 Progent Corporation. All rights reserved.