Deployment Options
Here are some examples of how you can deploy the Secure Firewall 4200:
• As a firewall:
• At the enterprise internet edge in a redundant configuration
• At branch offices in either a high availability pair or standalone
• At data centers in a high availability pair or clustered, which serves the needs of smaller enterprises
• As a device that provides additional application control, URL filtering, or IPS/threat-centered capabilities:
• Behind an enterprise internet edge firewall in an inline configuration or as a standalone (requires
hardware fail-open network module support)
• Deployed passively off a SPAN port on a switch or a tap on a network, or standalone
• As a branch native SD-WAN solution that offers remote deployment and can be managed over a 4G
LTE
• As a VPN device:
• For remote access VPN
• For site-to-site VPN
Package Contents
The following figure shows the package contents for the Secure Firewall 4200. The contents are subject to
change and your exact contents contain additional or fewer items depending on whether you order the optional
parts. See Product ID Numbers for a list of PIDs associated with the package contents.
Cisco Secure Firewall 4200 Series Hardware Installation Guide
4
Overview
Deployment Options