<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA 5516 upgrade to 9,16 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/5080315#M1111718</link>
    <description>&lt;P&gt;Hello Marvin,&amp;nbsp;&lt;/P&gt;&lt;P&gt;It's an old conversation but that topic prompted me, I m running now into another use case with the same thing,&amp;nbsp;&lt;/P&gt;&lt;P&gt;I want to try now the ASAv(EVENG) method to insert my config and look at the logs,&amp;nbsp;&lt;/P&gt;&lt;P&gt;should I perform a tftp configuration restore? a console prompt will show up with&amp;nbsp; a sort of summary of what it s need to be updated ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;what is the best way, process to do it ?&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sat, 27 Apr 2024 11:27:52 GMT</pubDate>
    <dc:creator>AirSail</dc:creator>
    <dc:date>2024-04-27T11:27:52Z</dc:date>
    <item>
      <title>ASA 5516 upgrade to 9,16</title>
      <link>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/4909285#M1103660</link>
      <description>&lt;P&gt;Hello ASA Gurus,&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have an ASA 5516 running 9.9 and I m planning to upgrade to 9.16 (the latest supported version)&lt;/P&gt;&lt;P&gt;This ASA is used as a main VPN concentrator,&lt;/P&gt;&lt;P&gt;S2S VPNs are kind of mix, Ikev1 with old encryption ciphers, and others with Ikev2 with strong/recommended cipher,&amp;nbsp;&lt;/P&gt;&lt;P&gt;I walked through version guidelines, and some mentioned that some ciphers are deprecated, so the first thing that I m thinking about is if I shoot for an upgrade to 9.16, am I going to break the working VPNs that I have?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Aug 2023 10:14:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/4909285#M1103660</guid>
      <dc:creator>AirSail</dc:creator>
      <dc:date>2023-08-23T10:14:59Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5516 upgrade to 9,16</title>
      <link>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/4909328#M1103662</link>
      <description>&lt;P&gt;I would suggest reviewing your vpn configuration and correct any deprecated / removed sytanx.&amp;nbsp; check the 9.15 removed encryption ciphers in this link:&amp;nbsp;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/upgrade/asa-upgrade/planning.html#reference_rql_v5v_wpb" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/upgrade/asa-upgrade/planning.html#reference_rql_v5v_wpb&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Aug 2023 22:44:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/4909328#M1103662</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2023-08-21T22:44:17Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5516 upgrade to 9,16</title>
      <link>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/4909331#M1103663</link>
      <description>&lt;P&gt;So you think if I upgrade to 9.16 without updating my S2S parameters for sure the affected VPNs will go down?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Aug 2023 22:47:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/4909331#M1103663</guid>
      <dc:creator>AirSail</dc:creator>
      <dc:date>2023-08-21T22:47:25Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5516 upgrade to 9,16</title>
      <link>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/4909391#M1103670</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1457486"&gt;@AirSail&lt;/a&gt; most likely they will go down. This is explained explicitly in the link provided by &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/319690"&gt;@Marius Gunnerud&lt;/a&gt; :&lt;/P&gt;
&lt;P&gt;"&lt;/P&gt;
&lt;P class="p"&gt;Before you upgrade from an earlier version of ASA to Version 9.15(1), you must update your VPN configuration to use the ciphers supported in 9.15(1), or else the old configuration will be rejected. When the configuration is rejected, one of the following actions will occur, depending on the command:&lt;/P&gt;
&lt;UL class="ul"&gt;
&lt;LI class="li"&gt;
&lt;P class="p"&gt;The command will use the default cipher.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI class="li"&gt;
&lt;P class="p"&gt;The command will be removed.&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;"&lt;/P&gt;</description>
      <pubDate>Tue, 22 Aug 2023 03:01:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/4909391#M1103670</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2023-08-22T03:01:36Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5516 upgrade to 9,16</title>
      <link>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/4909423#M1103675</link>
      <description>&lt;P&gt;This depends on how your S2S VPNs are configured, and which is why I said review your configuration.&amp;nbsp; If you do have any configuration that references those that are removed in the list for 9.15 your S2S VPNs will most likely stop working.&lt;/P&gt;</description>
      <pubDate>Tue, 22 Aug 2023 05:34:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/4909423#M1103675</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2023-08-22T05:34:15Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5516 upgrade to 9,16</title>
      <link>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/4917479#M1103997</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326046"&gt;@Marvin Rhoads&lt;/a&gt;&amp;nbsp;I started the checks, and it takes a bunch of time, is there any automated tool from Cisco where I can insert the running config so it can verify and flag what's been deleted/deprecated?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Sep 2023 17:58:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/4917479#M1103997</guid>
      <dc:creator>AirSail</dc:creator>
      <dc:date>2023-09-04T17:58:30Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5516 upgrade to 9,16</title>
      <link>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/4918078#M1104013</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1457486"&gt;@AirSail&lt;/a&gt;,&amp;nbsp;not as far as I know.&lt;/P&gt;
&lt;P&gt;You could spin up an ASAv and load the current running-config from your live ASA into it. The console log will show you any errors the command parser encounters.&lt;/P&gt;</description>
      <pubDate>Tue, 05 Sep 2023 12:25:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/4918078#M1104013</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2023-09-05T12:25:38Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5516 upgrade to 9,16</title>
      <link>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/5080315#M1111718</link>
      <description>&lt;P&gt;Hello Marvin,&amp;nbsp;&lt;/P&gt;&lt;P&gt;It's an old conversation but that topic prompted me, I m running now into another use case with the same thing,&amp;nbsp;&lt;/P&gt;&lt;P&gt;I want to try now the ASAv(EVENG) method to insert my config and look at the logs,&amp;nbsp;&lt;/P&gt;&lt;P&gt;should I perform a tftp configuration restore? a console prompt will show up with&amp;nbsp; a sort of summary of what it s need to be updated ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;what is the best way, process to do it ?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 27 Apr 2024 11:27:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/5080315#M1111718</guid>
      <dc:creator>AirSail</dc:creator>
      <dc:date>2024-04-27T11:27:52Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5516 upgrade to 9,16</title>
      <link>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/5080961#M1111746</link>
      <description>&lt;P&gt;Yes - copy whatever config you want to analyze into startup-config and then reload the ASAv while capturing console output.&lt;/P&gt;</description>
      <pubDate>Sun, 28 Apr 2024 09:38:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5516-upgrade-to-9-16/m-p/5080961#M1111746</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2024-04-28T09:38:37Z</dc:date>
    </item>
  </channel>
</rss>

