cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
753
Views
1
Helpful
11
Replies

Cisco ASA 5506-X no more bug fixes and security updates?

m4k3rz
Beginner
Beginner

Can someone please confirm if the Cisco ASA 5506-X is already obsolete? I've been looking around online and i can tell is already End-Of-Life, but can't really tell whether or not won't receive any security updates or bug fixes anymore.

This is how most of my ASA's have:

Cisco Adaptive Security Appliance Software Version 9.12(4)26
Name: "Chassis", DESCR: "ASA 5506-X with SW, 8GE Data, 1GE Mgmt, AC"
PID: ASA5506           , VID: V07     , SN:

1 Accepted Solution

Accepted Solutions

@m4k3rz general bug and security related fixes

View solution in original post

11 Replies 11

You are correct. asa 5506 is EoL

m4k3rz
Beginner
Beginner

Thank you. But can someone confirm if no more security fixes and bug fixes are being released for it?

@m4k3rz ASA 9.16 is the final software version supported for the 5506. https://www.cisco.com/c/en/us/td/docs/security/asa/upgrade/asa-upgrade/planning.html the latest version 9.16.4 was released Oct 2022, 9.16 doesn't appear to have an EOL yet.

Ideally you should look to replace the 5506 hardware with a FPR1010 at a minimum.

 

Sorry  no more 

You need to use 5506 with last ver. 

Or replace with fpr1k or fpr2k.

m4k3rz
Beginner
Beginner

thank you both. I understand now that ASA 9.16(x) was the final version for the ASA 5506-X. However, does it say anywhere when will that version be dated/obsolete ? 

@m4k3rz there is no announcement of EOL for 9.16, however 9.16 is an Extra Long Term release and according to the guide below 9.16 should receive software maintenance updates until 2025. https://www.cisco.com/c/en/us/products/collateral/security/firewalls/bulletin-c25-743178.html

As 9.16 is the latest version for your hardware you obviously will not receive any new features of functionality. To gain more functionality and features you'd need to replace the hardware, the direct replacement for the 5506 is the Firepower 1010, which supports the latest ASA software image (currently 9.19) or the NGFW image FTD.

Thank you. does the "software maintenance updates" includes security updates?

@m4k3rz general bug and security related fixes

Thanks so much Rob!

Thanks Rob, I was going over the link you posted https://www.cisco.com/c/en/us/products/collateral/security/firewalls/bulletin-c25-743178.html but i can't find where specifically it says 9.16 should receive updates until 2025. Could you please point out where that is said? I've read the document and can't figure it out. Thank you

@m4k3rz in that link provided, it states 9.16 is an XLTR (Extra Longterm Release).

RobIngram_1-1706559824269.png

Under the Software Release Schedule it states "The Cisco FTD 6.4 and ASA 9.12 Releases are the first XLTRs that will adhere to the guidelines presented here, as shown in Figure 2."

RobIngram_0-1706559701000.png

So if 9.12 is the first XLTR then 9.16 is the second XLTR (the last in the figure above) - so EoSW CY25 H1

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: