02-05-2020 05:58 PM
Hi Guys,
Im replacing an ASA 5510 which is currently acting as the secondary in a failover setup.Cisco has recommended me with ASA5516.Is there any need of additional licenses to be purchased along with AASA 5516 ? This is my current licenses in the primary ASA (Cant take the #sh version in secondary as it is currently dead)
Licensed features for this platform:
Maximum Physical Interfaces : Unlimited perpetual
Maximum VLANs : 100 perpetual
Inside Hosts : Unlimited perpetual
Failover : Active/Active perpetual
Encryption-DES : Enabled perpetual
Encryption-3DES-AES : Enabled perpetual
Security Contexts : 2 perpetual
GTP/GPRS : Disabled perpetual
AnyConnect Premium Peers : 250 perpetual
AnyConnect Essentials : Disabled perpetual
Other VPN Peers : 250 perpetual
Total VPN Peers : 250 perpetual
Shared License : Disabled perpetual
AnyConnect for Mobile : Enabled perpetual
AnyConnect for Cisco VPN Phone : Enabled perpetual
Advanced Endpoint Assessment : Enabled perpetual
UC Phone Proxy Sessions : 2 perpetual
Total UC Proxy Sessions : 2 perpetual
Botnet Traffic Filter : Disabled perpetual
Intercompany Media Engine : Disabled perpetual
Cluster : Disabled perpetual
This platform has an ASA 5510 Security Plus license.
02-05-2020 06:57 PM
Are you buying two 5516-X's? Because you cannot pair the new 5516 with the existing 5510.
That aside, you need to make sure you buy them with "K9" in the SKU so that they have the 3DES-AES license pre-installed.
Also, check your account int the software.cisco.com portal to see that you have the AnyConnect PAK available. If you have current Anyconnect licensing with maintenance, you will be able to use your existing AnyConnect licenses on your new appliance(s).
02-06-2020 06:24 AM
Hi
I'll just add something on what @Marvin Rhoads said. Make sure you have the right Anyconnect licenses in version 4 and not still using Anyconnect 3 which isn't compatible with new boxes.
In addition to that, ask for pricing for a Firepower 1120 or 1140. This is a new box on which you can run ASA or FTD code and more recent than asa 5516.
If the difference isn't too big I would personally go with Firepower devices.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide