Defense-in-Depth Implementation Details

The ASA/PIX Security Appliance is a multifunctional device that includes the following:

  • Stateful firewall services

  • Network intrusion prevention

  • Encryption services (VPN/IPSec)

  • Auditing and reporting functions

  • Authentication capabilities

  • Application firewalling (protocol compliance enforcement)

These services make the Cisco ASA/PIX Security Appliance an excellent solution for defense-in-depth deployment in any network environment.

Authentication, Authorization, and Accounting

For simplicity within this book, you use the ASA/PIX Security Appliance local database to implement authentication. Because the local database is used, this type of username password verification is called local authentication.

Although ...

Get Securing Your Business with Cisco ASA and PIX Firewalls now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.