09-26-2013 12:10 AM - edited 03-11-2019 07:43 PM
Hi,
We are moving to install Passive ASA5550 and currently we have SSL bundle is installed in only Active ASA5550.
Can any one guide me, Is it nessicity to install SSL bundle also on passive firewall? we don't need to access clientless ssl vpn on the time of active ASA failiure.
regards,
Faisal
09-26-2013 05:27 AM
What version of ASA software are you running? The answer depends on that as feature licenses are shared across members in an HA pair beginning in ASA 8.3(1) Reference.
09-26-2013 08:53 PM
Hi Marvin,
Thanks for reply,
Below are the details of software and license versions.
Cisco Adaptive Security Appliance Software Version 8.3(2)
Device Manager Version 6.4(7)
ASA 5500 SSL VPN Premium User License
Is SSL Lincese must be identical on both ASA on Active passive mode?
09-27-2013 01:17 AM
No. According to the link I posted above, you don't have to have the licenses identical in this case since you are on 8.3(2).
"In Version 8.3(1) and later, failover units do not require the same license on each unit."
09-27-2013 02:41 AM
Thanks Marvin.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: