Примечания к выпуску для Cisco Cisco Firepower Management Center 2000
Firepower System Release Notes
New Features and Functionality
New Features and Functionality
This section of the release notes summarizes the new and updated features and functionality included in Version 6.0 of
the Firepower System:
the Firepower System:
New Features
The following features are introduced in Version 6.0:
Expanded Threat Protection
URL and DNS-based Security Intelligence
New Security Intelligence feeds based on URLs and Domain Name System (DNS) servers are provided to enhance the
existing IP-based Security Intelligence capability. Currently, IP-based intelligence is used to control access to known
malware, phishing, command & control, and Bot sites. New attack methods designed to defeat IP-based intelligence
(e.g., fast flux) abuse DNS load balancing features in an effort to hide the actual IP address of a malicious server. While
the IP addresses associated with the attack are frequently swapped in and out, the domain name will rarely change. The
URL-based intelligence will supplement the IP-based intelligence in addressing this kind of attack, and the DNS-based
intelligence will help identify known DNS servers that are complicit in these kinds of attacks. Access control policies can
existing IP-based Security Intelligence capability. Currently, IP-based intelligence is used to control access to known
malware, phishing, command & control, and Bot sites. New attack methods designed to defeat IP-based intelligence
(e.g., fast flux) abuse DNS load balancing features in an effort to hide the actual IP address of a malicious server. While
the IP addresses associated with the attack are frequently swapped in and out, the domain name will rarely change. The
URL-based intelligence will supplement the IP-based intelligence in addressing this kind of attack, and the DNS-based
intelligence will help identify known DNS servers that are complicit in these kinds of attacks. Access control policies can
Table 2-3 Management Platform-Managed Device Compatibility by Managed Device
Supported Managed Devices
What can you use to manage this device?
Firepower 7000 Series and 8000 Series (the
7010, 7020, 7030, 7050, 7110, 7115, 7120,
7125, 8120, 8130, 8140, 8250, 8260, 8270,
8290, 8350, 8360, 8370, 8390, AMP7150,
AMP8050, AMP8150, AMP8350, AMP8360,
AMP8370, AMP8380, and the AMP8390)
7010, 7020, 7030, 7050, 7110, 7115, 7120,
7125, 8120, 8130, 8140, 8250, 8260, 8270,
8290, 8350, 8360, 8370, 8390, AMP7150,
AMP8050, AMP8150, AMP8350, AMP8360,
AMP8370, AMP8380, and the AMP8390)
All of the following, running Version 6.0:
Firepower Management Centers (the MC750, MC1500,
MC3500, MC2000, and the MC4000)
MC3500, MC2000, and the MC4000)
64-bit Firepower Management Centers Virtual
Cisco ASA with FirePOWER Services (the ASA
5506-X, ASA 5506H-X, ASA 5506W-X, ASA
5508-X, ASA 5512-X, ASA 5515-X, ASA
5516-X, ASA 5525-X, ASA 5545-X, ASA
5555-X, ASA 5585-X-SSP-10, ASA
5585-X-SSP-20, ASA 5585-X-SSP-40, and the
ASA 5585-X-SSP-60)
5506-X, ASA 5506H-X, ASA 5506W-X, ASA
5508-X, ASA 5512-X, ASA 5515-X, ASA
5516-X, ASA 5525-X, ASA 5545-X, ASA
5555-X, ASA 5585-X-SSP-10, ASA
5585-X-SSP-20, ASA 5585-X-SSP-40, and the
ASA 5585-X-SSP-60)
All of the following, running Version 6.0:
Firepower Management Centers (the MC750, MC1500,
MC3500, MC2000, and the MC4000)
MC3500, MC2000, and the MC4000)
64-bit Firepower Management Centers Virtual
ASDM (the ASA 5506-X, ASA 5506H-X, ASA 5506W-X, ASA
5508-X, ASA 5516-X, ASA 5512-X, ASA 5515-X, ASA
5525-X, ASA 5545-X, ASA 5555-X, ASA 5585-X-SSP-10,
ASA 5585-X-SSP-20, ASA 5585-X-SSP-40, and the ASA
5585-X-SSP-60)
5508-X, ASA 5516-X, ASA 5512-X, ASA 5515-X, ASA
5525-X, ASA 5545-X, ASA 5555-X, ASA 5585-X-SSP-10,
ASA 5585-X-SSP-20, ASA 5585-X-SSP-40, and the ASA
5585-X-SSP-60)
NGIPSv (virtual managed devices)
All of the following, running Version 6.0:
Firepower Management Centers (the MC750, MC1500,
MC3500, MC2000, and the MC4000)
MC3500, MC2000, and the MC4000)
64-bit virtual Firepower Management Centers