Cisco Firepower NGFW / NGIPS

Author: Huzeyfe Himmetoglu | Senior Network and Security Specialist

Cisco Firepower is not a lone wolf! Firepower derives its power from the TALOS intelligence team behind it and the product family shown in Figure-1 that provides it with content. Cisco has long acquired the best companies in their fields within the framework of end-to-end security approach in Figure-1 and ensured their integration. For this reason, Cisco Firepower never has to fight against endless attack methods alone. Thanks to Network Discovery, a feature I like about Firepower, it recognizes your inventory and services and optimizes IPS signatures for relevant traffic.

 

 

Cisco's Next Generation IPS and Firewall adventure begins with the acquisition of SourceFire by Martin Roesch, founder of the 2.7 billion open source intrusion detection platform SNORT, in 2013. Regardless of the continuation of this process, we can actually date Firepower's birth year to 1998, the year Snort was released. A few years after the acquisition, Cisco combined the ASA (IOS) Firewall with the SourceFire software and ran the system within the scope of FTD (Firepower Threat Defense). The anatomy of Firepower is summarized in Figure-2.

 

Cisco's series and short descriptions for use in small/medium businesses, enterprises and ISP/Datacenters are shown in Figure-3. Firepower 4100 and 9300 devices work with the chassis operating system FXOS and you can install more than one FTD in it. If you want, you can also run them as active/active or active/passive redundant. If you have ASA Firewalls and want to replace them with Firepower NGFW, you can quickly replace your operating system with FTD with the Firepower Migration Tool without changing your devices. You can access the relevant compatibility table from the link below.

https://www.cisco.com/c/en/us/td/docs/security/firepower/compatibility/firepower-compatibility.html

Please contact us for detailed information.

Useful links:

FirePower
https://www.cisco.com/c/tr_tr/products/security/firewalls/index.html

Talos Web Address
https://talosintelligence.com/

Integration link with security manufacturers
https://www.cisco.com/c/m/en_us/products/security/technical-alliance-partners.html

Related articles

Splunk ile AI destekli siber savunma ve tehdit avcılığı

Geleneksel SIEM’in Ötesi: Splunk ile AI Destekli Siber Savunma ve Tehdit Avcılığı

Yazar:  Huzeyfe Himmetoğlu | Ankara – Teknik Operasyonlar Birim Müdürü

Siber tehdit aktörleri her geçen gün daha sofistike, hızlı ve yapay zeka destekli saldırı yöntemleri geliştiriyor. Günümüzde bir kurumun dijital varlıklarını korumak; her saniye binlerce cihazdan, bulut altyapısından ve uç noktadan (endpoint) akan milyonlarca log satırını analiz etmeyi gerektiriyor. Geleneksel, yalnızca statik kurallara dayalı SIEM (Güvenlik Bilgi ve Olay Yönetimi) sistemleri, bu devasa veri tsunami karşısında yetersiz kalıyor; yüksek oranda yanlış pozitif (false positive) alarm üreterek siber güvenlik analistlerinde alarm yorgunluğuna (alert fatigue) yol açıyor.

Read more »
Agentic AI ve yapay zekâ orkestrasyonu görseli

Cisco’nun Yapay Zekâ ve Siber Güvenlik Dönüşümü

Author: Fatih Ermis | Senior Solution Consultant

Cisco’nun son yıllardaki satın alma stratejisi incelendiğinde, şirketin yalnızca ürün portföyünü genişletmeye çalışmadığı görülmektedir. Asıl hedef, ağ, güvenlik, gözlemlenebilirlik ve yapay zekâ operasyonlarını ortak bir veri katmanında birleştiren entegre bir platform oluşturmaktır. Kurumlar için asıl değer, farklı üreticilerden gelen onlarca ürünün ürettiği veriyi tek başına toplamak değil, bu verileri anlamlı hale getirebilmektir.

Read more »
Contact Us

Write Your Requirements and We Will Contact You

We are happy to answer your questions and help you determine which of our services best suits your needs.

Advantages

Then what happens?
1

We will schedule a call at your convenience

2

We are having an exploratory and advisory meeting

3

We are preparing an offer

Consult Us