EasyManuals Logo
Home>Cisco>Network Hardware>Firepower 1120

Cisco Firepower 1120 Getting Started

Cisco Firepower 1120
42 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #34 background imageLoading...
Page #34 background image
Changes are not active on the device until you deploy them. See Deploying Your Changes, on page 35.
What to do next
Click Policies in the main menu and configure the security policy for the system. You can also click Objects
to configure the objects needed in those policies.
Configuring Security Policies
Use the security policies to implement your organization’s acceptable use policy and to protect your network
from intrusions and other threats.
Procedure
Step 1 Click Policies.
The Security Policies page shows the general flow of a connection through the system, and the order in which
security policies are applied.
Step 2 Click the name of a policy and configure it.
You might not need to configure each policy type, although you must always have an access control policy.
Following is a summary of the policies:
SSL Decryption—If you want to inspect encrypted connections (such as HTTPS) for intrusions, malware,
and so forth, you must decrypt the connections. Use the SSL decryption policy to determine which
connections need to be decrypted. The system re-encrypts the connection after inspecting it. See
Configuring SSL Decryption Policies.
Identity—If you want to correlate network activity to individual users, or control network access based
on user or user group membership, use the identity policy to determine the user associated with a given
source IP address. See Configuring Identity Policies.
Security Intelligence—Use the Security Intelligence policy to quickly drop connections from or to
selected IP addresses or URLs. By blocking known bad sites, you do not need to account for them in
your access control policy. Cisco provides regularly updated feeds of known bad addresses and URLs
so that the Security Intelligence block lists update dynamically. Using feeds, you do not need to edit the
policy to add or remove items in the block lists. See Configuring Security Intelligence.
NAT (Network Address Translation)—Use the NAT policy to convert internal IP addresses to externally
routeable addresses. See Configure NAT.
Access Control—Use the access control policy to determine which connections are allowed on the
network. You can filter by security zone, IP address, protocol, port, application, URL, user or user group.
You also apply intrusion and file (malware) policies using access control rules. Use this policy to
implement URL filtering. See Configuring the Access Control Policy.
Intrusion—Use the intrusion policies to inspect for known threats. Although you apply intrusion policies
using access control rules, you can edit the intrusion policies to selectively enable or disable specific
intrusion rules. See Intrusion Policies.
Getting Started
34
Getting Started
Configuring Security Policies

Other manuals for Cisco Firepower 1120

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco Firepower 1120 and is the answer not in the manual?

Cisco Firepower 1120 Specifications

General IconGeneral
Processor cores12
Processor familyIntel
Built-in processorYes
Firewall throughput1500 Mbit/s
Wi-FiNo
IPSec VPN throughput1 Gbit/s
Maximum firewall connections200000
Maximum firewall connections per second75000
Supported network protocolsSMTP
Console portRJ-45
Connectivity technologyWired
Number of console ports1
SFP module slots quantity4
Ethernet LAN (RJ-45) ports8
SSD capacity200 GB
Storage media typeSSD
Form factor1U
Input current2 A
AC input voltage100-240 V
AC input frequency50 - 60 Hz
Power consumption (max)100 W
Operating altitude0 - 3000 m
Storage temperature (T-T)-25 - 70 °C
Operating temperature (T-T)0 - 40 °C
Operating relative humidity (H-H)10 - 90 %
Country of originMexico
Quantity per pack1 pc(s)
Harmonized System (HS) code85176990
Package depth1409.7 mm
Package width990.6 mm
Package height457.2 mm
Package weight5782.31 g
Weight and Dimensions IconWeight and Dimensions
Depth436.9 mm
Width268.7 mm
Height43.7 mm

Related product manuals