

In addition, please take a look at the Quick Start Guide.

Regarding the ACI integration, we have device packages available to integrate FTD into ACI. The related documentation is in the Config Guide. You have to click on “Training Videos”, and then choose “FMC External Authentication & Sources”, in particular “Lesson 3: User Awarenesses & User Policy”. There is a very good webinar that describes this more here.

TechValidate Survey - August 2019 Q: Can you provide some guidance on the benefits of the NGFW, ISE and ACI integration?Ī : There are numerous customer benefits from the NGFW, Cisco Identity Services Engine (ISE) and ACI integration you can correlate user identities with IP addresses, and in addition you can inherit Security Group Tags (SGT) from ISE and use them in the policies. The key difference is FTD has the capacity for enhanced visibility and analysis of traffic and threats all managed from a centralized console Choosing which firewall application is the best fit is all a matter of your requirements. In addition, ASA is optimized to run on the latest Firepower appliance.įirepower Threat Defense (FTD) software delivers the layer 7 NGFW features beyond traditional stateful inspection and VPN, including: NGIPS, Malware protection, URL filtering, etc. There is still a large demand for traditional 元/L4 FW and VPN concentrators that is satisfied by customers running ASA software on Firepower hardware. Q: Overall is NGFW better than ASA?Ī: Choosing between ASA (Adaptive Security Appliance Software ) or NGFW depends on your deployment requirements. In addition, there are numerous customers that still use the Cisco Adaptive Security Appliance ( ASA) Software software for their VPN needs and there are no plans to End Of Life ASA software. Here is a web page that provides additional information on AMP for networks (which runs is only supported on NGFW).
