Showing results for 
Search instead for 
Did you mean: 

ASA 5520 with features and resources ASA 5510


Hello guys,

I'm enabling a cluster of ASA 5520 and after insertion of the appliance 3DES key was with ASA 5510 features For example, the interfaces are FastEthernet and GigabitEthernet rather than as native appliance. See the "sh ver":

ciscoasa# sh ver

Cisco Adaptive Security Appliance Software Version 9.0(3)
Device Manager Version 7.3(1)101

Compiled on Fri 19-Jul-13 16:37 by builders
System image file is "disk0:/asa903-k8.bin"
Config file at boot was "startup-config"

ciscoasa up 44 mins 58 secs

Hardware:   ASA5520, 2048 MB RAM, CPU Pentium 4 Celeron 1599 MHz,
Internal ATA Compact Flash, 256MB
BIOS Flash M50FW080 @ 0xfff00000, 1024KB

Encryption hardware device : Cisco ASA-55xx on-board accelerator (revision 0x0)
                             Boot microcode        : CN1000-MC-BOOT-2.00
                             SSL/IKE microcode     : CNLite-MC-SSLm-PLUS-2.03
                             IPSec microcode       : CNlite-MC-IPSECm-MAIN-2.08
                             Number of accelerators: 1

 0: Ext: Ethernet0/0         : address is 0025.4538.87c8, irq 9
 1: Ext: Ethernet0/1         : address is 0025.4538.87c9, irq 9
 2: Ext: Ethernet0/2         : address is 0025.4538.87ca, irq 9
 3: Ext: Ethernet0/3         : address is 0025.4538.87cb, irq 9

 4: Ext: Management0/0       : address is 0025.4538.87c7, irq 11
 5: Int: Not used            : irq 11
 6: Int: Not used            : irq 5

Licensed features for this platform:
Maximum Physical Interfaces       : Unlimited      perpetual
Maximum VLANs                     : 100            perpetual
Inside Hosts                      : Unlimited      perpetual
Failover                          : Active/Active  perpetual
Encryption-DES                    : Enabled        perpetual
Encryption-3DES-AES               : Enabled        perpetual
Security Contexts                 : 2              perpetual
GTP/GPRS                          : Disabled       perpetual
AnyConnect Premium Peers          : 2              perpetual
AnyConnect Essentials             : Disabled       perpetual
Other VPN Peers                   : 250            perpetual
Total VPN Peers                   : 250            perpetual
Shared License                    : Disabled       perpetual
AnyConnect for Mobile             : Disabled       perpetual
AnyConnect for Cisco VPN Phone    : Disabled       perpetual
Advanced Endpoint Assessment      : Disabled       perpetual
UC Phone Proxy Sessions           : 2              perpetual
Total UC Proxy Sessions           : 2              perpetual
Botnet Traffic Filter             : Disabled       perpetual
Intercompany Media Engine         : Disabled       perpetual
Cluster                           : Disabled       perpetual

This platform has an ASA 5510 Security Plus license.

Running Permanent Activation Key: 0x641ce457 0x40639bd9 0x84525900 0x8828c428 0x42193583
Configuration register is 0x1
Configuration has not been modified since last system restart.

Know what might have happened and how to solve? Already opened a TAC, but always send me the same activation key.




3 Replies 3


You will have to work with Cisco Licensing on this to resolve. I have had to work with them multiple times to get the right key so don't be shocked if you have to try several keys they send you. Perhaps someone has run into this exact issue and can give feedback but stay on Licensing to get this straightened out.



Dear David,

Thanks for the response. I'm still checking with Cisco this case, but a very simple thing is difficult to understand. I posted here thinking that someone had this same problem and there was a simpler solution.

When it comes to licensing there isn't much we can do outside of speaking with Cisco. Again, stay on top of them. I tried to get a Security Plus license because they shipped an ASA with Base License, the first key gave me Security Plus but features were still missing, 2-3 keys later and I finally got all functionality back.



Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Recognize Your Peers