Description
Performance and Scalability
The ASA-SSP-60-INC is a Security Services Processor (SSP) for the Cisco ASA 5585-X Firewall. It provides advanced security features, including intrusion prevention, anti-virus, anti-spam, and web filtering.
Performance: The ASA-SSP-60-INC is designed to deliver high-performance security services with a throughput of up to 10 Gbps. This makes it suitable for use in large enterprise networks that require high-speed data transfer and security processing. It also supports up to 1 million concurrent connections, which is essential for high-volume traffic environments.
Scalability: The ASA-SSP-60-INC is scalable, allowing it to accommodate the needs of growing networks. It supports clustering, which enables multiple SSPs to work together to provide increased processing power and throughput. Additionally, it supports virtualization, allowing multiple virtual instances of the SSP to be deployed on a single physical device.
Features and Capabilities
The ASA-SSP-60-INC is a security services processor for the Cisco ASA 5585-X firewall appliance. It provides advanced security features and capabilities to protect networks against various types of cyber threats.
Some of the key features and capabilities of the ASA-SSP-60-INC include:
- High-performance firewall: The ASA-SSP-60-INC delivers high-performance firewall capabilities, with throughput rates of up to 20 Gbps.
- Intrusion Prevention System (IPS): The ASA-SSP-60-INC includes an advanced IPS that can detect and prevent a wide range of attacks, including malware, exploits, and other threats.
- VPN and SSL decryption: The ASA-SSP-60-INC supports both VPN and SSL decryption, allowing organizations to securely connect remote workers, partners, and customers to their networks.
- Content filtering: The ASA-SSP-60-INC includes advanced content filtering capabilities that can block access to websites and applications based on specific criteria, such as category, URL, or file type.
- Advanced threat protection: The ASA-SSP-60-INC includes advanced threat protection features, such as sandboxing and file reputation analysis, to detect and prevent advanced threats like zero-day attacks.
- Scalability: The ASA-SSP-60-INC is designed to be highly scalable, with the ability to support multiple virtual contexts and high availability configurations.
VPN Configuration and Management
The Cisco ASA 5585-X Security Services Processor (SSP) is a high-performance security module that is designed to provide advanced firewall and VPN services to large enterprises and data centers. The ASA-SSP-60-INC is one of the modules that can be installed in the ASA 5585-X chassis.
VPN Configuration
The ASA-SSP-60-INC supports a variety of VPN technologies, including IPsec, SSL VPN, and clientless VPN. The VPN configuration on the ASA-SSP-60-INC involves the following steps:
- Configure the VPN policies: VPN policies define the parameters for establishing a VPN connection, such as the encryption algorithms, authentication methods, and access control rules. These policies can be configured using the Cisco ASDM (Adaptive Security Device Manager) or the CLI (Command Line Interface).
- Configure the VPN tunnel: The VPN tunnel is the secure channel that is created between the two endpoints of the VPN connection. The tunnel can be configured to use IPsec, SSL, or clientless VPN.
- Configure the VPN endpoints: The VPN endpoints are the devices that are connected to the VPN tunnel. The endpoints can be configured as VPN clients or VPN servers, depending on their role in the VPN connection.
- Test the VPN connection: Once the VPN configuration is complete, it is important to test the connection to ensure that it is working correctly.
Management of ASA-SSP-60-INC
The ASA-SSP-60-INC can be managed using the Cisco ASDM or the CLI. The ASDM provides a graphical user interface (GUI) that allows administrators to configure and monitor the security services on the ASA-SSP-60-INC. The CLI provides a command line interface that can be used to perform advanced configuration and troubleshooting tasks.
The management of ASA-SSP-60-INC involves the following tasks:
- Configuration: The ASA-SSP-60-INC can be configured using the Cisco ASDM or the CLI. The configuration includes setting up the firewall policies, VPN policies, NAT rules, and other security settings.
- Monitoring: The ASA-SSP-60-INC can be monitored using the Cisco ASDM or the CLI. The monitoring includes viewing the firewall logs, VPN logs, system logs, and other security-related events.
- Troubleshooting: The ASA-SSP-60-INC can be troubleshooted using the Cisco ASDM or the CLI. The troubleshooting includes diagnosing and resolving issues related to the firewall, VPN, and other security services.
General Information
- Manufacturer: Cisco Systems, Inc
- Manufacturer Part Number: ASA-SSP-60-INC
- Brand Name: Cisco
- Product Name: Security Service Processor 60
- Product Type: Service Module
Technical Information:
- Application/Usage: Security
- Application/Usage: Data Networking
Interfaces/Ports:
- Interfaces/Ports Details: 6 x RJ-45 10/100/1000Base-T Network LAN
- Interfaces/Ports Details: 2 x RJ-45 10/100/1000Base-T Network Management
- Interfaces/Ports Details: 2 x USB
- Interfaces/Ports Details: 1 x RJ-45 Console Management
- Interfaces/Ports Details: 1 x RJ-45 Auxiliary Management
Media & Performance:
- Media Type Supported: Twisted Pair
- Ethernet Technology: Gigabit Ethernet
- Network Technology: 10/100/1000Base-T
- Maximum Data Transfer Rate: 100 Mbit/s
I/O Expansions:
- Number of Total Expansion Slots: 4
- Expansion Slot Type: SFP+
Miscellaneous:
- Compatibility-
- Cisco ASA 5585-X Series Adaptive Security Appliances





