best practices guide.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-28-2013 04:52 PM - edited 03-11-2019 06:07 PM
I'm about to upgrade from an ASA5520 to ASA5525, is there a best practices guide anyone know if I can follow for this project.
- Labels:
-
NGFW Firewalls
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-28-2013 11:26 PM
Hi,
I am currently not aware of any really thorough guide on this, though then again I havent really looked. Maybe there would be idea in trying to make that kind of document myself since the question naturally keeps coming up again and again.
I would say the following things are the things that need most redoing when migrating from 8.2 (or below) to 8.3 (or newer)
- NAT configurations
- Because the configuration format has changed
- ACL configurations, mostly those attached to any kind of interface towards which NAT is applied
- Because the traffic is now opened towards the Real IP instead of NAT IP
- Some VPN configuration formats
- Because of having both ikev1 and ikev2, your configurations might need an added "ikev1" in the Phase1/Phase2 configurations
Naturally if you have some specific questions on how something would be configured in a new software we can help with that.
- Jouni
