ISA is a software product which you would install on a Windows Server Operating System, where as ASA is a purpose made hybrid firewall (hybrid for the reason that now almost upto Layer7 protection is provided)
ASA5500 Series Firewall is a fusion of cisco PIX500 and VPN3000 concentrator lines... And is a command line bred, Java GUI capable, firewall and vpn concentrator appliance...
ASA is better than ISA , maybe because it has the Anti phising, antivirus, anti spyware.
Main Topics
Browse All Topics





by: keith_alabasterPosted on 2009-08-13 at 10:29:16ID: 25090778
Pretty much similar apart from the obvious one - ASA is hardware based and ISA is software, although it can come as an appliance - and not everyone believes the ASA is better in the first place.
Both are EAL4+ accredited - the best you can get.
Both have never been hacked - although both have been passed through to incompetent security rules being applied ie user has no idea or training on how to use the products so opens stupid ports with no concept of what they have done..
Both handle VPNs - although the ASA can handle SSL vpns which ISA doesn't.
Trade off is that ISA is a full blown layer 7 application gateway as well as a firewall. ASA is not.
In addition, ISA can publish services as a reverse proxy to handle SSO for Exchange and Sharepoint
The argument goes on....