The Cisco Meraki MX firewall series provides Cloud managed security alongside SD-WAN capabilities.
Cisco Meraki MX Firewall
The Cisco Meraki MX Firewall Series
The Cisco Meraki MX Firewall series is a “next generation” firewall. This means it’s a full layer7 firewall providing complete control over applications, content & users.
CISCO Meraki content filtering
Category-based
Cisco Meraki security appliances feature a powerful category-based content filter, which matches content against millions of URLs in dozens of categories.
Active Directory integration
The Cisco Meraki content filtering engine features native Active Directory integration to apply access controls specific to each class of users.
The cloud
Content lists and application signatures are updated dynamically from the cloud, so that security policies remain up to date even as content and applications change.
Our approach
Layer 7 traffic classification and control
The Cisco Meraki proprietary packet processing engine analyses network traffic up to and including layer 7, using sophisticated fingerprinting to identify users, content, and applications on the network. Each network flow is categorised, and access control policies are enforced — for example, blocking Netflix and prioritising video conferencing.
By classifying traffic at layer 7, Cisco Meraki’s next generation firewall controls evasive, encrypted, and peer-to-peer applications, like BitTorrent or Skype, that cannot be controlled by traditional firewalls. Cisco Meraki’s next generation firewall is included in all security appliances.
Intrusion detection engine
Featuring an integrated intrusion detection and prevention (IDS / IPS) engine based on Sourcefire’s Snort, the single most widely deployed intrusion detection and prevention technology in the world, Cisco Meraki security appliances protect your network against malicious entities and threats.
Using a combination of signature, protocol and anomaly-based inspection methods ensures ironclad security for your network. Leveraging the Cisco Meraki cloud management platform, threat signatures are automatically updated, keeping security always up-to-date.
Identity-based and device-aware security
Device-aware access controls enable administrators to ensure the appropriate level of network access for each class of devices. Layer 7 device fingerprints automatically detect and classify Apple iOS, Android, Windows, Mac OS, and other clients.
These fingerprints are integrated into Cisco Meraki firewalls and wireless APs, so that administrators can, for example, apply firewall rules specific to iPads in a Bring Your Own Device (BYOD) network.
LICENSING 1
Enterprise License
- Stateful firewall
- Site to site VPN
- Client VPN
- Branch routing
- Link bonding and failover
- Application control
- Web caching
LICENSING 2
Advanced Security License
All Enterprise License features, plus:
- Content filtering
- Geo-based IP firewall
- Google SafeSearch and YouTube for Schools
- Intrusion detection & prevention (IDS/IPS)
- Advanced Malware Protection (AMP)
- Cisco Threat Grid1 (Grid1 Requires Threat Grid cloud subscription)
FEATURES SUMMARY
Includes
- Identity based firewall
- Intrusion prevention
- Auto VPN
- Content filtering
- Advanced malware protection
- High Availability
- Application visibility & control
- Centralized management
- SD-WAN