<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Convert Cisco ASA 5506-X TFD to Cisco ASA OS in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/convert-cisco-asa-5506-x-tfd-to-cisco-asa-os/m-p/3706943#M1014348</link>
    <description>&lt;P&gt;Yes you can convert. You lose the FTD NGIPS functionality of course (but can add it back somewhat if you use the Firepower service module to the ASA 5506 with ASA image but then they would need FMC....).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRIKE&gt;Failover is not a separately licensed feature on the current generation of ASA models so there's no need to add/preserve anything to get that. The old ASA 5505 and 5510 used to require Security Plus license to enable the failover feature but that's not the case anymore with ASA 5500-X series.&lt;/STRIKE&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Edit: You need to purchase Security Plus license for failover feature on the ASA 5506.&lt;/P&gt;</description>
    <pubDate>Fri, 14 Sep 2018 09:22:39 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2018-09-14T09:22:39Z</dc:date>
    <item>
      <title>Convert Cisco ASA 5506-X TFD to Cisco ASA OS</title>
      <link>https://community.cisco.com/t5/network-security/convert-cisco-asa-5506-x-tfd-to-cisco-asa-os/m-p/3706906#M1014347</link>
      <description>&lt;P&gt;Hello ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I would like to ask a question before i do anything .&lt;/P&gt;
&lt;P&gt;A customer has bought 4 Cisco ASA 5506 FTD image , 2 for one site and 2 for another ( so 2 failover pairs ) . Customer has not bought FMC and do not want to work with ftd image , he want to convert ftd to asa os as the 4 firewalls he has right know .&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So i search and see that it is able to convert ASA 5506 FTD to asa 5506 os , i found a guide&amp;nbsp; ,&lt;/P&gt;
&lt;P&gt;but what happens with Firepower services and licenses for failover etc ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As i know i can get 3des/aes licenses but what about failover ?&lt;/P&gt;
&lt;P&gt;and firepower services that customer want to enable in future ?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can anyone inform me or confirm that is it possible to convert asa 5506 ftd image to asa 5506 firepower services with no loss of features and that it is possible to get somehow licenses from cisco for failover feature ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;thanks&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 13:58:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/convert-cisco-asa-5506-x-tfd-to-cisco-asa-os/m-p/3706906#M1014347</guid>
      <dc:creator>pgiouvanellis</dc:creator>
      <dc:date>2019-03-12T13:58:11Z</dc:date>
    </item>
    <item>
      <title>Re: Convert Cisco ASA 5506-X TFD to Cisco ASA OS</title>
      <link>https://community.cisco.com/t5/network-security/convert-cisco-asa-5506-x-tfd-to-cisco-asa-os/m-p/3706943#M1014348</link>
      <description>&lt;P&gt;Yes you can convert. You lose the FTD NGIPS functionality of course (but can add it back somewhat if you use the Firepower service module to the ASA 5506 with ASA image but then they would need FMC....).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRIKE&gt;Failover is not a separately licensed feature on the current generation of ASA models so there's no need to add/preserve anything to get that. The old ASA 5505 and 5510 used to require Security Plus license to enable the failover feature but that's not the case anymore with ASA 5500-X series.&lt;/STRIKE&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Edit: You need to purchase Security Plus license for failover feature on the ASA 5506.&lt;/P&gt;</description>
      <pubDate>Fri, 14 Sep 2018 09:22:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/convert-cisco-asa-5506-x-tfd-to-cisco-asa-os/m-p/3706943#M1014348</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-09-14T09:22:39Z</dc:date>
    </item>
    <item>
      <title>Re: Convert Cisco ASA 5506-X TFD to Cisco ASA OS</title>
      <link>https://community.cisco.com/t5/network-security/convert-cisco-asa-5506-x-tfd-to-cisco-asa-os/m-p/3706969#M1014349</link>
      <description>&lt;P&gt;Ok ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;But as i searched the net i found that when i perform convert from ftd to asa the ASA boot ups with no activation key and from a sh ver i found i can see that neither 3DES/AES license is enabled nor Failover license is enabled .&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;sh version&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cisco Adaptive Security Appliance Software Version 9.6(2)23&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Device Manager Version 7.8(2)151&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Compiled on Thu 28-Sep-17 07:50 PDT by builders&lt;/P&gt;
&lt;P&gt;System image file is "tftp://10.20.30.2/asa962-23-lfbff-k8.SPA"&lt;/P&gt;
&lt;P&gt;Config file at boot was "startup-config"&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;ciscoasa up 6 hours 53 mins&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hardware:&amp;nbsp; &amp;nbsp;ASA5506, 4096 MB RAM, CPU Atom C2000 series 1250 MHz, 1 CPU (4 cores)&lt;/P&gt;
&lt;P&gt;Internal ATA Compact Flash, 7168MB&lt;/P&gt;
&lt;P&gt;BIOS Flash M25P64 @ 0xfed01000, 16384KB&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Encryption hardware device : Cisco ASA Crypto on-board accelerator (revision 0x1)&lt;/P&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Number of accelerators: 1&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;1: Ext: GigabitEthernet1/1&amp;nbsp; : address is 4c77.6d86.f679, irq 255&lt;/P&gt;
&lt;P&gt;&amp;nbsp;2: Ext: GigabitEthernet1/2&amp;nbsp; : address is 4c77.6d86.f67a, irq 255&lt;/P&gt;
&lt;P&gt;&amp;nbsp;3: Ext: GigabitEthernet1/3&amp;nbsp; : address is 4c77.6d86.f67b, irq 255&lt;/P&gt;
&lt;P&gt;&amp;nbsp;4: Ext: GigabitEthernet1/4&amp;nbsp; : address is 4c77.6d86.f67c, irq 255&lt;/P&gt;
&lt;P&gt;&amp;nbsp;5: Ext: GigabitEthernet1/5&amp;nbsp; : address is 4c77.6d86.f67d, irq 255&lt;/P&gt;
&lt;P&gt;&amp;nbsp;6: Ext: GigabitEthernet1/6&amp;nbsp; : address is 4c77.6d86.f67e, irq 255&lt;/P&gt;
&lt;P&gt;&amp;nbsp;7: Ext: GigabitEthernet1/7&amp;nbsp; : address is 4c77.6d86.f67f, irq 255&lt;/P&gt;
&lt;P&gt;&amp;nbsp;8: Ext: GigabitEthernet1/8&amp;nbsp; : address is 4c77.6d86.f680, irq 255&lt;/P&gt;
&lt;P&gt;&amp;nbsp;9: Int: Internal-Data1/1&amp;nbsp; &amp;nbsp; : address is 4c77.6d86.f678, irq 255&lt;/P&gt;
&lt;P&gt;10: Int: Internal-Data1/2&amp;nbsp; &amp;nbsp; : address is 0000.0001.0002, irq 0&lt;/P&gt;
&lt;P&gt;11: Int: Internal-Control1/1 : address is 0000.0001.0001, irq 0&lt;/P&gt;
&lt;P&gt;12: Int: Internal-Data1/3&amp;nbsp; &amp;nbsp; : address is 0000.0001.0003, irq 0&lt;/P&gt;
&lt;P&gt;13: Ext: Management1/1&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: address is 4c77.6d86.f678, irq 0&lt;/P&gt;
&lt;P&gt;14: Int: Internal-Data1/4&amp;nbsp; &amp;nbsp; : address is 0000.0100.0001, irq 0&lt;/P&gt;
&lt;P&gt;The Running Activation Key is not valid, using default settings:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Licensed features for this platform:&lt;/P&gt;
&lt;P&gt;Maximum Physical Interfaces&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: Unlimited&amp;nbsp; &amp;nbsp; &amp;nbsp; perpetual&lt;/P&gt;
&lt;P&gt;Maximum VLANs&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: 5&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; perpetual&lt;/P&gt;
&lt;P&gt;Inside Hosts&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; : Unlimited&amp;nbsp; &amp;nbsp; &amp;nbsp; perpetual&lt;/P&gt;
&lt;P&gt;&lt;U&gt;&lt;EM&gt;&lt;STRONG&gt;Failover&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; : Disabled&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;perpetual&lt;/STRONG&gt;&lt;/EM&gt;&lt;/U&gt;&lt;/P&gt;
&lt;P&gt;Encryption-DES&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; : Enabled&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; perpetual&lt;/P&gt;
&lt;P&gt;&lt;U&gt;&lt;EM&gt;&lt;STRONG&gt;Encryption-3DES-AES&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: Disabled&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;perpetual&lt;/STRONG&gt;&lt;/EM&gt;&lt;/U&gt;&lt;/P&gt;
&lt;P&gt;Carrier&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: Disabled&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;perpetual&lt;/P&gt;
&lt;P&gt;AnyConnect Premium Peers&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; : 2&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; perpetual&lt;/P&gt;
&lt;P&gt;AnyConnect Essentials&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: Disabled&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;perpetual&lt;/P&gt;
&lt;P&gt;Other VPN Peers&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: 10&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;perpetual&lt;/P&gt;
&lt;P&gt;Total VPN Peers&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: 12&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;perpetual&lt;/P&gt;
&lt;P&gt;AnyConnect for Mobile&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: Disabled&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;perpetual&lt;/P&gt;
&lt;P&gt;AnyConnect for Cisco VPN Phone&amp;nbsp; &amp;nbsp; : Disabled&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;perpetual&lt;/P&gt;
&lt;P&gt;Advanced Endpoint Assessment&amp;nbsp; &amp;nbsp; &amp;nbsp; : Disabled&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;perpetual&lt;/P&gt;
&lt;P&gt;Shared License&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; : Disabled&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;perpetual&lt;/P&gt;
&lt;P&gt;Total TLS Proxy Sessions&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; : 2&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; perpetual&lt;/P&gt;
&lt;P&gt;Botnet Traffic Filter&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: Disabled&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;perpetual&lt;/P&gt;
&lt;P&gt;Cluster&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;: Disabled&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;perpetual&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This platform has a Base license.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;About the 3des/aes license ok i can get one from cisco.com but what about failover feature ?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;That is why i am not sure what to do .&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;About the firepower services i suppose i will import sfr image and module and set it up as it was Cisco ASA os from the scratch . am i right ?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks .&lt;/P&gt;</description>
      <pubDate>Fri, 14 Sep 2018 09:13:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/convert-cisco-asa-5506-x-tfd-to-cisco-asa-os/m-p/3706969#M1014349</guid>
      <dc:creator>pgiouvanellis</dc:creator>
      <dc:date>2018-09-14T09:13:06Z</dc:date>
    </item>
    <item>
      <title>Re: Convert Cisco ASA 5506-X TFD to Cisco ASA OS</title>
      <link>https://community.cisco.com/t5/network-security/convert-cisco-asa-5506-x-tfd-to-cisco-asa-os/m-p/3706976#M1014350</link>
      <description>&lt;P&gt;Sorry - I misspoke from memory earlier. You are right you need to purchase a license for failover on the ASA 5506. it's the Security Plus license.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Yes, you can add the Firepower module on a re-imaged ASA by going through the whole image and boot process.&lt;/P&gt;</description>
      <pubDate>Fri, 14 Sep 2018 09:24:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/convert-cisco-asa-5506-x-tfd-to-cisco-asa-os/m-p/3706976#M1014350</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-09-14T09:24:21Z</dc:date>
    </item>
  </channel>
</rss>

