Meet the industry's first adaptive, threat-focused next-generation firewall (NGFW) designed for a new era of threat and advanced malware protection. Cisco ASA with FirePOWER Services delivers integrated threat defense for the entire attack continuum - before, during, and after an attack. How? By combining the proven security capabilities of the Cisco ASA firewall with the industry-leading Sourcefire threat and Advanced Malware Protection (AMP) features together in a single device. The solution uniquely extends the capabilities of the Cisco ASA 5500-X Series Next-Generation Firewalls beyond what today's NGFW solutions are capable of. Whether you need protection for a small or midsized business, a distributed enterprise, or a single data center, Cisco ASA with FirePOWER Services provides the needed scale and context in a NGFW solution.
Cisco ASA with FirePOWER Services brings distinctive threat-focused next-generation security services to the Cisco ASA 5500-X Series Next-Generation Firewalls and Cisco ASA 5585-X Adaptive Security Appliance firewall products. It provides comprehensive protection from known and advanced threats, including protection against targeted and persistent malware attacks. Cisco ASA is the world's most widely deployed, enterprise-class stateful firewall.
Cisco ASA with FirePOWER Services is centrally managed by the Cisco FireSIGHT Management Center, which provides security teams with comprehensive visibility into and control over activity within the network. Such visibility includes users, devices, communication between virtual machines, vulnerabilities, threats, client-side applications, files, and web sites. Holistic, actionable indications of compromise (IoCs) correlate detailed network and endpoint event information and provide further visibility into malware infections. Cisco's enterprise-class management tools help administrators reduce complexity with unmatched visibility and control across NGFW deployments. Cisco FireSIGHT Management Center also provides content awareness with malware file trajectory that aids infection scoping and root cause determination to speed time to remediation.
- Next-generation firewall
Industry's first threat-focused NGFW provides ASA firewall functionality, advanced threat protection, and advanced breach detection and remediation combined in a single device.
- Proven ASA firewall
It has a rich routing, stateful firewall, Network Address Translation, and dynamic clustering for high-performance, highly secure and reliable access with Cisco AnyConnect VPN.
- Market-leading NGIPS
It has a superior threat prevention and mitigation for both known and unknown threats.
- Advanced malware protection
Detection, blocking, tracking, analysis, and remediation protect the enterprise against targeted and persistent malware attacks.
- Full contextual awareness
Policy enforcement is based on complete visibility of users, mobile devices, client-side applications, communication between virtual machines, vulnerabilities, threats, and URLs.
- Application control and URL filtering
Application-layer control (over applications, geolocations, users, websites) and ability to enforce usage and tailor detection policies is based on custom applications and URLs.
- Enterprise-class management
It has dashboards and drill-down reports of discovered hosts, applications, threats, and indications of compromise for comprehensive visibility.
- Streamlined operations automation
It provides lower operating cost and administrative complexity with threat correlation, impact assessment, automated security policy tuning, and user identification.
- Purpose-built, scalable
This is a highly scalable security appliance architecture that performs at up to multigigabit speeds (consistent and robust security across small office, branch offices, Internet edge, and data centers in either physical and virtual environments).
- On-device management
It simplifies advanced threat defense management for small and medium sized business with small scale deployments.
- Remote Access VPN
It extends secure corporate network access beyond corporate laptops to personal mobile devices, regardless of physical location; support for Cisco AnyConnect Secure Mobility Solution, with granular, application-level VPN capability, as well as native Apple iOS and Android VPN clients.
- Site-to-site VPN
Protect traffic, including VoIP and client-server application data, across the distributed enterprise and branch offices.
- Integrated wireless access
Integrated Wi-Fi is available in the desktop form factor (ASA 5506W-X) for compact and simplified small office deployments.
- Ruggedized form factor
A ruggedized model (ASA 5506H-X), designed specifically for extreme environmental conditions, is available for critical infrastructure and control network applications.
- Third-party technology ecosystem
Open API enables the third-party technology ecosystem to integrate with existing customer work streams.
- Integration with Snort and OpenAppID
Open source security integration with Snort and OpenAppID gives access to community resources and ability to easily customize security to address new and specific threats and applications quickly.
- Collective Security intelligence (CSI)
Unmatched security and web reputation intelligence provides real-time threat intelligence and security protection.
Processor / Memory / Storage
SSD 50 GB x 1 - mSATA
Data Link Protocol
Inspection throughput: 750 Mbps ¦ Multiprotocol firewall throughput: 300 Mbps ¦ Connection rate: 5000 connections per second ¦ Application control (AVC) throughput: 250 Mbps ¦ Application control (AVC) and IPS throughput: 125 Mbps ¦ VPN throughput (3DES/AES): 100 Mbps ¦ Application control (AVC) or IPS sizing throughput: 90 Mbps
Concurrent sessions: 20000 (maximum 50000) ¦ Cisco AnyConnect Premium/Apex VPN peers: 2 (maximum 50) ¦ IPSec VPN peers: 10 (upgradeable to 50) ¦ Virtual interfaces (VLANs): 5 (upgradeable to 30)
Firewall protection, VPN support, VLAN support, fanless
Triple DES, AES
Expansion / Connectivity
1 x 1000Base-T (management) - RJ-45 ¦ 1 x USB 2.0 - Type A ¦ 1 x mini-USB ¦ 1 x console - RJ-45 ¦ 8 x 1000Base-T - RJ-45
CISPR 22 Class A, CISPR 24, EN 60950, EN 61000-3-2, EN55022, IEC 60950, EN 61000-3-3, EN55024, UL 60950, VCCI V-3, AS/NZS 60950, CAN/CSA C22.2 No. 60950, CNS 13438, EN 301.489-7, EN 301.489-24, EN 301.489.4, EN 301 489-1, EN 301 489-17, EN 300386
External power adapter
AC 120/230 V (50/60 Hz)
Service & Support
Limited warranty - advance parts replacement - 90 days - response time: 10 days
Min Operating Temperature
Max Operating Temperature
Humidity Range Operating
10 - 90% (non-condensing)