Rockwell Automation Publication 1783-UM010C-EN-P - June 2019 91
Chapter 8
Firewall Modes
ASA software provides the firewall features such as ACL, NAT, VPN, and
overall system and platform management. FirePOWER software provides the
Next Generation IPS features, Application Control, Network Discovery, and
Network AMP functionality.
The ASA runs in two different firewall modes:
•Routed
•Transparent
In routed mode, the ASA is considered to be a router hop in the network.
In transparent mode, the ASA acts like a ‘bump in the wire,’ or a ‘stealth
firewall,’ and is not considered a router hop. The ASA connects to the same
network on its inside and outside interfaces.
FirePOWER module can operate in two modes: inline mode and passive
mode. The following figures provide overview of traffic flow in these two
modes.
Figure 21 - Traffic Flow under Inline Mode