cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
542
Views
0
Helpful
1
Replies

best practices guide.

bruce.thornton
Level 1
Level 1

     I'm about to  upgrade from an ASA5520 to ASA5525, is there a best practices guide anyone know if I can follow for this project.             

1 Reply 1

Jouni Forss
VIP Alumni
VIP Alumni

Hi,

I am currently not aware of any really thorough guide on this, though then again I havent really looked. Maybe there would be idea in trying to make that kind of document myself since the question naturally keeps coming up again and again.

I would say the following things are the things that need most redoing when migrating from 8.2 (or below) to 8.3 (or newer)

  • NAT configurations
    • Because the configuration format has changed
  • ACL configurations, mostly those attached to any kind of interface towards which NAT is applied
    • Because the traffic is now opened towards the Real IP instead of NAT IP
  • Some VPN configuration formats
    • Because of having both ikev1 and ikev2, your configurations might need an added "ikev1" in the Phase1/Phase2 configurations

Naturally if you have some specific questions on how something would be configured in a new software we can help with that.

- Jouni

Review Cisco Networking for a $25 gift card