<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Upgrade from ASA5510 to ASA5516 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/upgrade-from-asa5510-to-asa5516/m-p/3674256#M14380</link>
    <description>&lt;P&gt;You have a few options. You could upgrade the 5510 to an image above 8.4 and the config will be auto-corrected (I don't really like this way. But it does work... ) or You can manually do it. If you do it manually run the command "more system:running-config" to get the tunnel keys and few other parts of the config in clear-text. Then you will need to work on the ACLs and NAT statements. I would just break the config into sections and change the NAT to post 8.3 and any ACLs related to NAT will change from the external or mapped address to the real address. Also, you should leave "nat-control" out of the config as it is not needed. If you need an&amp;nbsp;example&amp;nbsp;of the config you can find it in the configuration guides.&amp;nbsp; &amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 25 Jul 2018 12:55:22 GMT</pubDate>
    <dc:creator>Troy Jackson</dc:creator>
    <dc:date>2018-07-25T12:55:22Z</dc:date>
    <item>
      <title>Upgrade from ASA5510 to ASA5516</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-from-asa5510-to-asa5516/m-p/3674192#M14379</link>
      <description>&lt;P&gt;Hi ALL,&lt;/P&gt;
&lt;P&gt;We would like upgrade from ASA5510 (7.0(7)) to ASA5516 (9.8(2). We have to convert to all config or just ACL and NAT part, right? Kindly advise on config conversion.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;ASA Version 7.0(7)&lt;BR /&gt;!&lt;BR /&gt;hostname ASA5510&lt;BR /&gt;domain-name xxxxx.com&lt;/P&gt;
&lt;P&gt;names&lt;BR /&gt;dns-guard&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/0&lt;BR /&gt; nameif WAN&lt;BR /&gt; security-level 0&lt;BR /&gt; ip address 211.25.189.130 255.255.255.240&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/1&lt;BR /&gt; nameif LAN&lt;BR /&gt; security-level 100&lt;BR /&gt; ip address 10.103.2.2 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface Ethernet0/2&lt;BR /&gt; nameif AXIS&lt;BR /&gt; security-level 10&lt;BR /&gt; ip address 121.122.131.162 255.255.255.248&lt;BR /&gt;!&lt;BR /&gt;interface Management0/0&lt;BR /&gt; nameif management&lt;BR /&gt; security-level 100&lt;BR /&gt; ip address 192.168.1.1 255.255.255.0&lt;BR /&gt; management-only&lt;BR /&gt;!&lt;BR /&gt;passwd hwMAGzB1ePDJdOeT encrypted&lt;BR /&gt;ftp mode passive&lt;BR /&gt;clock timezone MYT 8&lt;BR /&gt;object-group network VPN_Client_Range&lt;BR /&gt; network-object 10.103.4.10 255.255.255.255&lt;BR /&gt; network-object 10.103.4.11 255.255.255.255&lt;BR /&gt; network-object 10.103.4.12 255.255.255.255&lt;BR /&gt; network-object 10.103.4.13 255.255.255.255&lt;BR /&gt; network-object 10.103.4.14 255.255.255.255&lt;BR /&gt; network-object 10.103.4.15 255.255.255.255&lt;BR /&gt; network-object 10.103.4.16 255.255.255.255&lt;BR /&gt; network-object 10.103.4.17 255.255.255.255&lt;BR /&gt; network-object 10.103.4.18 255.255.255.255&lt;BR /&gt; network-object 10.103.4.19 255.255.255.255&lt;BR /&gt; network-object 10.103.4.20 255.255.255.255&lt;BR /&gt;object-group network VPN_Admin_Range&lt;BR /&gt; network-object 10.103.4.21 255.255.255.255&lt;BR /&gt; network-object 10.103.4.22 255.255.255.255&lt;BR /&gt; network-object 10.103.4.23 255.255.255.255&lt;BR /&gt; network-object 10.103.4.24 255.255.255.255&lt;BR /&gt; network-object 10.103.4.25 255.255.255.255&lt;BR /&gt; network-object 10.103.4.26 255.255.255.255&lt;BR /&gt; network-object 10.103.4.27 255.255.255.255&lt;BR /&gt; network-object 10.103.4.28 255.255.255.255&lt;BR /&gt; network-object 10.103.4.29 255.255.255.255&lt;BR /&gt; network-object 10.103.4.30 255.255.255.255&lt;BR /&gt;object-group network To_India&lt;BR /&gt; network-object 10.103.1.0 255.255.255.0&lt;BR /&gt; network-object 10.103.2.0 255.255.255.0&lt;BR /&gt; network-object 10.103.3.0 255.255.255.0&lt;BR /&gt;object-group network India&lt;BR /&gt; network-object 10.106.15.0 255.255.255.0&lt;BR /&gt; network-object 10.106.18.0 255.255.255.0&lt;BR /&gt; network-object 10.106.20.0 255.255.255.0&lt;BR /&gt; network-object 10.106.160.0 255.255.255.0&lt;BR /&gt;object-group service Lotus_Allowed_Services tcp&lt;BR /&gt; port-object eq telnet&lt;BR /&gt; port-object range lotusnotes lotusnotes&lt;BR /&gt; port-object eq www&lt;BR /&gt; port-object range 1533 1533&lt;BR /&gt; port-object eq https&lt;BR /&gt;object-group service tcp445 tcp&lt;BR /&gt; port-object eq 445&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.106.15.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.106.18.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.106.20.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.106.160.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.2.0 255.255.255.0 10.106.15.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.2.0 255.255.255.0 10.106.18.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.2.0 255.255.255.0 10.106.20.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.2.0 255.255.255.0 10.106.160.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.3.0 255.255.255.0 10.106.15.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.3.0 255.255.255.0 10.106.18.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.3.0 255.255.255.0 10.106.20.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.3.0 255.255.255.0 10.106.160.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.1.0.0 255.255.0.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 192.168.10.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.2.0 255.255.255.0 10.1.0.0 255.255.0.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.2.0 255.255.255.0 192.168.10.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.3.0 255.255.255.0 10.1.0.0 255.255.0.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.3.0 255.255.255.0 192.168.10.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.103.10.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 host 10.100.160.32&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 host 10.100.160.132&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 172.28.28.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.211.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.212.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.213.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.214.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.215.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.216.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.217.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.225.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.156.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.157.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.158.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.159.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 host 10.100.148.17&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.2.0 255.255.255.0 host 10.100.148.17&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.3.0 255.255.255.0 host 10.100.148.17&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.60.51.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.60.53.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.2.0 255.255.255.0 10.60.53.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.2.0 255.255.255.0 10.60.51.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.3.0 255.255.255.0 10.60.53.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.3.0 255.255.255.0 10.60.51.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.197.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.196.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.160.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 host 10.100.195.213&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 host 10.100.198.239&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 host 10.100.198.240&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.100.198.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.2.0 255.255.255.0 10.100.198.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.3.0 255.255.255.0 10.100.198.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.2.0 255.255.255.0 10.100.196.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.3.0 255.255.255.0 10.100.196.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.1.0.0 255.255.0.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 192.168.10.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 host 10.100.160.32&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 host 10.100.160.132&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 172.28.28.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.211.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.212.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.213.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.214.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.215.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.216.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.217.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.225.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.156.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.157.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.158.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.159.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 host 10.100.148.17&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.60.51.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.60.53.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.197.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.196.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.160.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 host 10.100.195.213&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 host 10.100.198.239&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 host 10.100.198.240&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.100.198.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.61.0.0 255.255.0.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.2.0 255.255.255.0 10.61.0.0 255.255.0.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.3.0 255.255.255.0 10.61.0.0 255.255.0.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.61.0.0 255.255.0.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.103.10.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.112.0.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.122.1.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.112.2.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.1.0 255.255.255.0 10.112.3.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.112.0.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.122.1.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.112.2.0 255.255.255.0&lt;BR /&gt;access-list LAN_nat0_outbound extended permit ip 10.103.5.0 255.255.255.0 10.112.3.0 255.255.255.0&lt;BR /&gt;access-list LAN_access_in extended permit ip any any&lt;BR /&gt;access-list Server standard permit host 10.103.1.20&lt;BR /&gt;access-list Server standard deny any&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.1.0.0 255.255.0.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 192.168.10.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.2.0 255.255.255.0 10.1.0.0 255.255.0.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.2.0 255.255.255.0 192.168.10.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.3.0 255.255.255.0 10.1.0.0 255.255.0.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.3.0 255.255.255.0 192.168.10.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 host 10.100.160.32&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 host 10.100.160.132&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.211.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.212.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.213.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.214.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.215.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.216.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.217.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.225.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.156.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.157.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.158.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.159.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 host 10.100.148.17&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.2.0 255.255.255.0 host 10.100.148.17&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.3.0 255.255.255.0 host 10.100.148.17&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.60.51.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.60.53.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.2.0 255.255.255.0 10.60.53.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.2.0 255.255.255.0 10.60.51.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.3.0 255.255.255.0 10.60.53.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.3.0 255.255.255.0 10.60.51.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.197.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.196.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.160.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 host 10.100.195.213&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 host 10.100.198.239&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 host 10.100.198.240&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.100.198.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.2.0 255.255.255.0 10.100.198.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.3.0 255.255.255.0 10.100.198.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.2.0 255.255.255.0 10.100.196.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.3.0 255.255.255.0 10.100.196.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.1.0.0 255.255.0.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 192.168.10.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 host 10.100.160.32&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 host 10.100.160.132&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.211.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.212.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.213.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.214.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.215.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.216.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.217.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.225.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.156.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.157.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.158.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.159.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 host 10.100.148.17&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.60.51.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.60.53.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.197.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.196.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.160.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 host 10.100.195.213&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 host 10.100.198.239&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 host 10.100.198.240&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.100.198.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.1.0 255.255.255.0 10.61.0.0 255.255.0.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.2.0 255.255.255.0 10.61.0.0 255.255.0.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.3.0 255.255.255.0 10.61.0.0 255.255.0.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 10.61.0.0 255.255.0.0&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 host 10.100.196.213&lt;BR /&gt;access-list WAN_cryptomap_60_1 extended permit ip 10.103.5.0 255.255.255.0 host 10.100.197.213&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.1.0 255.255.255.0 10.106.15.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.1.0 255.255.255.0 10.106.18.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.1.0 255.255.255.0 10.106.20.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.1.0 255.255.255.0 10.106.160.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.2.0 255.255.255.0 10.106.15.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.2.0 255.255.255.0 10.106.18.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.2.0 255.255.255.0 10.106.20.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.2.0 255.255.255.0 10.106.160.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.3.0 255.255.255.0 10.106.15.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.3.0 255.255.255.0 10.106.18.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.3.0 255.255.255.0 10.106.20.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.3.0 255.255.255.0 10.106.160.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.5.0 255.255.255.0 10.106.15.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.5.0 255.255.255.0 10.106.18.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.5.0 255.255.255.0 10.106.20.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_40 extended permit ip 10.103.5.0 255.255.255.0 10.106.160.0 255.255.255.0&lt;BR /&gt;access-list outlist extended deny tcp any any eq 445&lt;BR /&gt;access-list outlist extended permit icmp any any&lt;BR /&gt;access-list outlist extended permit tcp any host 210.187.38.165 eq 3389&lt;BR /&gt;access-list outlist extended permit tcp any host 210.187.38.166 eq telnet&lt;BR /&gt;access-list outlist extended permit tcp any host 211.25.188.132 object-group Lotus_Allowed_Services&lt;BR /&gt;access-list outlist extended permit ip any host 211.25.188.133&lt;BR /&gt;access-list XXXXX_ABCD_VPN extended permit ip 10.103.1.0 255.255.255.0 10.103.10.0 255.255.255.0&lt;BR /&gt;access-list XXXXX_ABCD_VPN extended permit ip 10.103.5.0 255.255.255.0 10.103.10.0 255.255.255.0&lt;BR /&gt;access-list AXIS_access_in extended permit icmp any any&lt;BR /&gt;access-list split_tunneling extended permit ip 10.103.1.0 255.255.255.0 172.28.28.0 255.255.255.0&lt;BR /&gt;access-list WAN_nat0_inbound extended permit ip 10.103.1.0 255.255.255.0 10.112.0.0 255.255.255.0&lt;BR /&gt;access-list WAN_nat0_inbound extended permit ip 10.103.1.0 255.255.255.0 10.122.1.0 255.255.255.0&lt;BR /&gt;access-list WAN_nat0_inbound extended permit ip 10.103.1.0 255.255.255.0 10.112.2.0 255.255.255.0&lt;BR /&gt;access-list WAN_nat0_inbound extended permit ip 10.103.1.0 255.255.255.0 10.112.3.0 255.255.255.0&lt;BR /&gt;access-list WAN_nat0_inbound extended permit ip 10.103.5.0 255.255.255.0 10.112.0.0 255.255.255.0&lt;BR /&gt;access-list WAN_nat0_inbound extended permit ip 10.103.5.0 255.255.255.0 10.122.1.0 255.255.255.0&lt;BR /&gt;access-list WAN_nat0_inbound extended permit ip 10.103.5.0 255.255.255.0 10.112.2.0 255.255.255.0&lt;BR /&gt;access-list WAN_nat0_inbound extended permit ip 10.103.5.0 255.255.255.0 10.112.3.0 255.255.255.0&lt;BR /&gt;access-list WAN_cryptomap_100 extended permit ip 10.103.1.0 255.255.255.0 10.112.0.0 255.255.0.0&lt;BR /&gt;access-list WAN_cryptomap_100 extended permit ip 10.103.5.0 255.255.255.0 10.112.0.0 255.255.0.0&lt;BR /&gt;access-list test extended permit ip host 10.112.1.9 host 10.103.1.9&lt;BR /&gt;access-list test extended permit ip host 10.103.1.9 host 10.112.1.9&lt;BR /&gt;pager lines 24&lt;BR /&gt;logging enable&lt;BR /&gt;logging asdm informational&lt;BR /&gt;mtu WAN 1500&lt;BR /&gt;mtu LAN 1500&lt;BR /&gt;mtu AXIS 1500&lt;BR /&gt;mtu management 1500&lt;BR /&gt;ip local pool vpnpool 172.28.28.1-172.28.28.20&lt;BR /&gt;asdm image disk0:/asdm-507.bin&lt;BR /&gt;no asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;nat-control&lt;BR /&gt;global (WAN) 1 interface&lt;BR /&gt;global (WAN) 2 210.187.39.165&lt;BR /&gt;nat (WAN) 0 access-list WAN_nat0_inbound outside&lt;BR /&gt;nat (LAN) 0 access-list LAN_nat0_outbound&lt;BR /&gt;nat (LAN) 1 0.0.0.0 0.0.0.0&lt;BR /&gt;static (LAN,WAN) 210.187.39.165 10.103.1.9 netmask 255.255.255.255&lt;BR /&gt;static (LAN,WAN) 210.187.39.166 10.103.1.2 netmask 255.255.255.255&lt;BR /&gt;static (LAN,WAN) 211.25.189.132 10.103.1.20 netmask 255.255.255.255&lt;BR /&gt;static (LAN,WAN) 211.25.189.133 10.103.1.71 netmask 255.255.255.255&lt;BR /&gt;access-group outlist in interface WAN&lt;BR /&gt;access-group LAN_access_in in interface LAN&lt;BR /&gt;access-group AXIS_access_in in interface AXIS&lt;BR /&gt;route WAN 0.0.0.0 0.0.0.0 211.25.189.129 1&lt;BR /&gt;route LAN 10.103.1.0 255.255.255.0 10.103.2.3 1&lt;BR /&gt;route LAN 10.103.3.0 255.255.255.0 10.103.2.3 1&lt;BR /&gt;route LAN 10.103.5.0 255.255.255.0 10.103.2.3 1&lt;BR /&gt;route LAN 192.168.22.0 255.255.255.0 10.103.2.3 1&lt;BR /&gt;timeout xlate 3:00:00&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00&lt;BR /&gt;timeout mgcp-pat 0:05:00 sip 0:30:00 sip_media 0:02:00&lt;BR /&gt;timeout uauth 0:05:00 absolute&lt;BR /&gt;group-policy iffcosea internal&lt;BR /&gt;group-policy iffcosea attributes&lt;BR /&gt; dns-server value 10.103.1.9&lt;BR /&gt; vpn-idle-timeout 60&lt;BR /&gt; split-tunnel-policy tunnelspecified&lt;BR /&gt; split-tunnel-network-list value split_tunneling&lt;BR /&gt; webvpn&lt;BR /&gt;aaa authentication ssh console LOCAL&lt;BR /&gt;aaa authorization command LOCAL&lt;BR /&gt;http server enable&lt;BR /&gt;http 0.0.0.0 0.0.0.0 WAN&lt;BR /&gt;http 0.0.0.0 0.0.0.0 LAN&lt;BR /&gt;http 0.0.0.0 0.0.0.0 AXIS&lt;BR /&gt;http 192.168.1.0 255.255.255.0 management&lt;BR /&gt;no snmp-server location&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;BR /&gt;crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac&lt;BR /&gt;crypto dynamic-map map2 10 set transform-set ESP-AES-256-SHA&lt;BR /&gt;crypto map WAN_map 40 match address WAN_cryptomap_40&lt;BR /&gt;crypto map WAN_map 40 set peer 59.163.36.133&lt;BR /&gt;crypto map WAN_map 40 set transform-set ESP-AES-256-SHA&lt;BR /&gt;crypto map WAN_map 60 match address WAN_cryptomap_60_1&lt;BR /&gt;crypto map WAN_map 60 set peer 213.42.237.44&lt;BR /&gt;crypto map WAN_map 60 set transform-set ESP-AES-256-SHA&lt;BR /&gt;crypto map WAN_map 80 match address XXXXX_ABCD_VPN&lt;BR /&gt;crypto map WAN_map 80 set peer 211.25.58.162&lt;BR /&gt;crypto map WAN_map 80 set transform-set ESP-AES-256-SHA&lt;BR /&gt;crypto map WAN_map 100 match address WAN_cryptomap_100&lt;BR /&gt;crypto map WAN_map 100 set peer 203.126.256.244&lt;BR /&gt;crypto map WAN_map 100 set transform-set ESP-AES-256-SHA&lt;BR /&gt;crypto map WAN_map 65535 ipsec-isakmp dynamic map2&lt;BR /&gt;crypto map WAN_map interface WAN&lt;BR /&gt;isakmp identity address&lt;BR /&gt;isakmp enable WAN&lt;BR /&gt;isakmp enable LAN&lt;BR /&gt;isakmp enable AXIS&lt;BR /&gt;isakmp policy 10 authentication pre-share&lt;BR /&gt;isakmp policy 10 encryption 3des&lt;BR /&gt;isakmp policy 10 hash sha&lt;BR /&gt;isakmp policy 10 group 2&lt;BR /&gt;isakmp policy 10 lifetime 86400&lt;BR /&gt;isakmp policy 30 authentication pre-share&lt;BR /&gt;isakmp policy 30 encryption aes-256&lt;BR /&gt;isakmp policy 30 hash sha&lt;BR /&gt;isakmp policy 30 group 5&lt;BR /&gt;isakmp policy 30 lifetime 86400&lt;BR /&gt;isakmp nat-traversal 20&lt;BR /&gt;tunnel-group abcd type ipsec-ra&lt;BR /&gt;tunnel-group abcd general-attributes&lt;BR /&gt; address-pool vpnpool&lt;BR /&gt; default-group-policy iffcosea&lt;BR /&gt;tunnel-group abcd ipsec-attributes&lt;BR /&gt; pre-shared-key *&lt;BR /&gt;tunnel-group 59.163.36.133 type ipsec-l2l&lt;BR /&gt;tunnel-group 59.163.36.133 ipsec-attributes&lt;BR /&gt; pre-shared-key *&lt;BR /&gt;tunnel-group To_india type ipsec-l2l&lt;BR /&gt;tunnel-group To_india ipsec-attributes&lt;BR /&gt; pre-shared-key *&lt;BR /&gt;tunnel-group 213.42.237.44 type ipsec-l2l&lt;BR /&gt;tunnel-group 213.42.237.44 ipsec-attributes&lt;BR /&gt; pre-shared-key *&lt;BR /&gt;tunnel-group 1.9.131.35 type ipsec-l2l&lt;BR /&gt;tunnel-group 1.9.131.35 ipsec-attributes&lt;BR /&gt; pre-shared-key *&lt;BR /&gt;tunnel-group 211.25.58.162 type ipsec-l2l&lt;BR /&gt;tunnel-group 211.25.58.162 ipsec-attributes&lt;BR /&gt; pre-shared-key *&lt;BR /&gt;tunnel-group 203.127.255.244 type ipsec-l2l&lt;BR /&gt;tunnel-group 203.127.255.244 ipsec-attributes&lt;BR /&gt; pre-shared-key *&lt;BR /&gt;no tunnel-group-map enable peer-ip&lt;BR /&gt;no vpn-addr-assign aaa&lt;BR /&gt;no vpn-addr-assign dhcp&lt;BR /&gt;telnet 0.0.0.0 0.0.0.0 WAN&lt;BR /&gt;telnet 0.0.0.0 0.0.0.0 LAN&lt;BR /&gt;telnet 0.0.0.0 0.0.0.0 AXIS&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;ssh 0.0.0.0 0.0.0.0 WAN&lt;BR /&gt;ssh 0.0.0.0 0.0.0.0 LAN&lt;BR /&gt;ssh 0.0.0.0 0.0.0.0 AXIS&lt;BR /&gt;ssh timeout 5&lt;BR /&gt;console timeout 0&lt;BR /&gt;dhcpd address 192.168.1.2-192.168.1.254 management&lt;BR /&gt;dhcpd lease 3600&lt;BR /&gt;dhcpd ping_timeout 50&lt;BR /&gt;dhcpd enable management&lt;BR /&gt;!&lt;BR /&gt;class-map inspection_default&lt;BR /&gt; match default-inspection-traffic&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;policy-map global_policy&lt;BR /&gt; class inspection_default&lt;BR /&gt; inspect dns maximum-length 512&lt;BR /&gt; inspect ftp&lt;BR /&gt; inspect h323 h225&lt;BR /&gt; inspect h323 ras&lt;BR /&gt; inspect rsh&lt;BR /&gt; inspect rtsp&lt;BR /&gt; inspect esmtp&lt;BR /&gt; inspect sqlnet&lt;BR /&gt; inspect skinny&lt;BR /&gt; inspect sunrpc&lt;BR /&gt; inspect xdmcp&lt;BR /&gt; inspect sip&lt;BR /&gt; inspect netbios&lt;BR /&gt; inspect tftp&lt;BR /&gt; inspect icmp&lt;BR /&gt;!&lt;BR /&gt;service-policy global_policy global&lt;BR /&gt;Cryptochecksum:2725e4680ce05f8140e76d972954ccd6&lt;BR /&gt;: end&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;Kevin&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 16:00:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-from-asa5510-to-asa5516/m-p/3674192#M14379</guid>
      <dc:creator>kevinshkong11</dc:creator>
      <dc:date>2020-02-21T16:00:54Z</dc:date>
    </item>
    <item>
      <title>Re: Upgrade from ASA5510 to ASA5516</title>
      <link>https://community.cisco.com/t5/network-security/upgrade-from-asa5510-to-asa5516/m-p/3674256#M14380</link>
      <description>&lt;P&gt;You have a few options. You could upgrade the 5510 to an image above 8.4 and the config will be auto-corrected (I don't really like this way. But it does work... ) or You can manually do it. If you do it manually run the command "more system:running-config" to get the tunnel keys and few other parts of the config in clear-text. Then you will need to work on the ACLs and NAT statements. I would just break the config into sections and change the NAT to post 8.3 and any ACLs related to NAT will change from the external or mapped address to the real address. Also, you should leave "nat-control" out of the config as it is not needed. If you need an&amp;nbsp;example&amp;nbsp;of the config you can find it in the configuration guides.&amp;nbsp; &amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 25 Jul 2018 12:55:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/upgrade-from-asa5510-to-asa5516/m-p/3674256#M14380</guid>
      <dc:creator>Troy Jackson</dc:creator>
      <dc:date>2018-07-25T12:55:22Z</dc:date>
    </item>
  </channel>
</rss>

