Hi Experts,
We have currently Cisco ASA multicontext firewall with Customers using different firewall context(including site to site vpn). Planning to migrate all the Customer environment to public cloud (AWS/Oracle Cloud). Also, want to deploy Cisco ASAv for having site to site vpn to onpremise/customer DC.
Please suggest, the option for re using the exisiting ASA license, for use on the cloud ASAv.
Thanks in advance.
Best Regards
Sreeraj Murali
Solved! Go to Solution.
ASAv requires a separate license for the product itself. It is not transferable from physical ASA appliances.
Furthermore the ASAv license is a Smart license and must be provisioned in your organization portal and the ASAv(s) registered to check out their license(s).
You can share AnyConnect licenses across appliances if they are for 4.x, you don't exceed the number of licensed unique users and you have them provisioned as Smart licenses
ASAv requires a separate license for the product itself. It is not transferable from physical ASA appliances.
Furthermore the ASAv license is a Smart license and must be provisioned in your organization portal and the ASAv(s) registered to check out their license(s).
You can share AnyConnect licenses across appliances if they are for 4.x, you don't exceed the number of licensed unique users and you have them provisioned as Smart licenses
Thanks Marvin. What about the ASA site to site VPN license, is it transferable across platforms(physical/virtual)?
Please advice.
On ASAs site-site VPN is included with the base license of every ASA. The number depends on the ASA platform.
So once you have a base ASA license, you have site-site VPN capability - up to the capacity of the device.
Thanks a lot for the advice. Could you please update, if HA is supported for Cisco ASAv ?
HA support varies across different virtual environments.
- ESXi and KVM supports active/standby stateful HA
- Azure supports active/standby stateless HA
- AWS has no HA support