We are moving to install Passive ASA5550 and currently we have SSL bundle is installed in only Active ASA5550.
Can any one guide me, Is it nessicity to install SSL bundle also on passive firewall? we don't need to access clientless ssl vpn on the time of active ASA failiure.
What version of ASA software are you running? The answer depends on that as feature licenses are shared across members in an HA pair beginning in ASA 8.3(1) Reference.
Thanks for reply,
Below are the details of software and license versions.
Cisco Adaptive Security Appliance Software Version 8.3(2)
Device Manager Version 6.4(7)
ASA 5500 SSL VPN Premium User License
Is SSL Lincese must be identical on both ASA on Active passive mode?
No. According to the link I posted above, you don't have to have the licenses identical in this case since you are on 8.3(2).
"In Version 8.3(1) and later, failover units do not require the same license on each unit."
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: