cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
7355
Views
15
Helpful
2
Replies

ASA UPGRADE FROM 8.2(5)13 to 9.2

Hi,

I need to update my asa from 8.2(5)13 to whatever the next stable version is. I know some people where having issues with the 8.3 releases.

I.     I want to know the upgrade path with a stable version, exemple :

- 8.2(5) to 8.3(2.25) OR 8.2(5) to 8.3(2).

after

- 8.3(2) to 8.4(3)

and then

- 8.4(3) to 9.2

II.    should i choose last version on all upgrade ?

 

best regards.

abderrahmane

 

2 Replies 2

Vibhor Amrodia
Cisco Employee
Cisco Employee

Hi,

There are some configuration changes on the ASA 8.3.x and above code as far as NAT and ACL etc are concerned. With the same configuration syntax , i guess the latest interim for 8.2.5.x should be an upgrade without any issues.

I would recommend you to check these changes and then proceed with the upgrade.

Check:-

https://supportforums.cisco.com/document/48646/asa-83-upgrade-what-you-need-know

http://www.cisco.com/c/en/us/td/docs/security/asa/asa83/upgrading/migrating.html

Thanks and Regards,

Vibhor Amrodia

You do not need to go to 8.3 first.  Go to 8.4 then to 8.4(6) and then to 9.2.  Be mindful of the memory requirements when upgrading to post 8.3 ASA versions.  this needs to be in place before you can upgrade.  refer to the following link for memory requirement:

http://www.cisco.com/c/en/us/products/collateral/security/asa-5500-series-next-generation-firewalls/product_bulletin_c25-586414.html

Also, note that the upgrade path is in place so that your existing configuration will be converted to the new format, but this also means that the ASA will add a lot of un-needed configuration and might not remove some of the old configurations leaving a very messy configuration which...if you want to...will mean you have to manually clean it up.  

If your configuration is not very long and complex i suggest manually updating the configuration before the upgrade, then upgrade directly to 9.2 and then copy the configuration in 10 lines at a time.  This will also give you a chance to become familiar with the new way of doing NAT and ACLs.

Current ASA Version 
First Upgrade to: 
Then Upgrade to: 

8.2(x)

8.4(6)

Note: Because of configuration migration that occurs in 8.4, you must upgrade to the 8.4 release as the initial upgrade.

9.1(3) or later

8.3(x)

8.4(6)

Note: Because of configuration migration that occurs in 8.4, you must upgrade to the 8.4 release as the initial upgrade.

9.1(3) or later

8.4(1) through 8.4(4)

8.4(6), 9.0(4), or 9.1(2)

9.1(3) or later

8.5(1)

9.0(4) or 9.1(2)

9.1(3) or later

8.6(1)

9.0(4) or 9.1(2)

9.1(3) or later

9.0(1)

9.0(4) or 9.1(2)

9.1(3) or later

9.0(2) or later

9.1(3) or later

9.1(1)

9.1(2)

9.1(3) or later

9.1(2) or later

9.1(3) or later

 

http://www.cisco.com/c/en/us/td/docs/security/asa/asa91/upgrade/upgrade91.html

 --

Please remember to select a correct answer and rate helpful posts

--
Please remember to select a correct answer and rate helpful posts
Review Cisco Networking for a $25 gift card