cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

Welcome to Cisco Firewalls Community


1279
Views
0
Helpful
2
Replies
Highlighted
Beginner

ASA 5506 and road warrior VPN

Hi,

I'm struggling to set up an IKEv1 IPsec connection from a 3G router to an ASA 5506. The same VPN with a 5505 works perfectly.

Among other things, sh ver shows me this message: 

 

The Running Activation Key feature: 2 security contexts exceed the limit on the platform, reduced to 0 security contexts

 

What does it mean?

 

This is the entire sh ver output:

 

Hardware:   ASA5506, 4096 MB RAM, CPU Atom C2000 series 1250 MHz, 1 CPU (4 cores)
Internal ATA Compact Flash, 8000MB
BIOS Flash M25P64 @ 0xfed01000, 16384KB

Encryption hardware device : Cisco ASA Crypto on-board accelerator (revision 0x1)
                             Number of accelerators: 1

 1: Ext: GigabitEthernet1/1  : address is 502f.a850.205c, irq 255
 2: Ext: GigabitEthernet1/2  : address is 502f.a850.205d, irq 255
 3: Ext: GigabitEthernet1/3  : address is 502f.a850.205e, irq 255
 4: Ext: GigabitEthernet1/4  : address is 502f.a850.205f, irq 255
 5: Ext: GigabitEthernet1/5  : address is 502f.a850.2060, irq 255
 6: Ext: GigabitEthernet1/6  : address is 502f.a850.2061, irq 255
 7: Ext: GigabitEthernet1/7  : address is 502f.a850.2062, irq 255
 8: Ext: GigabitEthernet1/8  : address is 502f.a850.2063, irq 255
 9: Int: Internal-Data1/1    : address is 502f.a850.205b, irq 255
10: Int: Internal-Data1/2    : address is 0000.0001.0002, irq 0
11: Int: Internal-Control1/1 : address is 0000.0001.0001, irq 0
12: Int: Internal-Data1/3    : address is 0000.0001.0003, irq 0
13: Ext: Management1/1       : address is 502f.a850.205b, irq 0
14: Int: Internal-Data1/4    : address is 0000.0100.0001, irq 0
15: Int: Internal-Data1/5    : address is 0000.0001.0003, irq 0
The Running Activation Key feature: 2 security contexts exceed the limit on the platform, reduced to 0 security contexts.

Licensed features for this platform:
Maximum Physical Interfaces       : Unlimited      perpetual
Maximum VLANs                     : 30             perpetual
Inside Hosts                      : Unlimited      perpetual
Failover                          : Active/Standby perpetual
Encryption-DES                    : Enabled        perpetual
Encryption-3DES-AES               : Enabled        perpetual
Carrier                           : Disabled       perpetual
AnyConnect Premium Peers          : 4              perpetual
AnyConnect Essentials             : Disabled       perpetual
Other VPN Peers                   : 50             perpetual
Total VPN Peers                   : 50             perpetual
AnyConnect for Mobile             : Disabled       perpetual
AnyConnect for Cisco VPN Phone    : Disabled       perpetual
Advanced Endpoint Assessment      : Disabled       perpetual
Shared License                    : Disabled       perpetual
Total TLS Proxy Sessions          : 160            perpetual
Botnet Traffic Filter             : Disabled       perpetual
Cluster                           : Disabled       perpetual

This platform has an ASA 5506 Security Plus license.

Serial Number: XXXXXX
Running Permanent Activation Key: 0xXX 0xXX 0x5831fde0 0xXX 0xXX
Configuration register is 0x1
Image type                : Release
Key Version               : A

Thanks and ciao

2 REPLIES 2
VIP Advisor

Re: ASA 5506 and road warrior VPN

By Default ASA License support 2 contexts, Have you created  any Context in FW ?

 

post output :

 

show context

BB
*** Rate All Helpful Responses ***
Beginner

Re: ASA 5506 and road warrior VPN

There is no such command:

 

MyFw# show context
                    ^
ERROR: % Invalid input detected at '^' marker.
MyFw# show co
MyFw# show co?

  community-list    compression       configuration    configuration
  conn              console-output    controller       coredump
  counters
MyFw#
CreatePlease to create content
Content for Community-Ad
FusionCharts will render here