06-24-2022 03:50 AM
Hi All,
We are upgrading Cisco ASA device 5512 and 5525 in our environment due to compliance audit. Could anyone confirm what is the most stable and recommended version as of today 24/06/2022.
Regards
Abi
Solved! Go to Solution.
06-30-2022 06:37 AM
@abideen.shaikh of course 9.12 has vulnerability fixes.
It depends on what you are using the ASA for, version 9.12 would have newer features over 9.8. If you don't require any new features that 9.12 offers, then upgrade to the latest version of 9.8 to get the vulnerability fixes.
The relevant release notes for each version will document the fixes for vulnerabilites.
https://www.cisco.com/web/software/280775065/152946/ASA-9124-Interim-Release-Notes.html
https://www.cisco.com/web/software/280775065/146525/ASA-984-Interim-Release-Notes.html
06-24-2022 04:08 AM
what is the current version, 55XX -X can go 9.14.X is the stable version. check the checklist before upgrade from OLD to new, read the release notes always and understand the caveats.
https://www.cisco.com/c/en/us/td/docs/security/asa/upgrade/asa-upgrade/planning.html
06-24-2022 04:14 AM
9.12.4 is the latest supported version on the 5512-X
https://software.cisco.com/download/home/284143092/type/280775065/release/9.12.4%20Interim
9.14.4 is the latest supported vertsion on the 5525-X
https://software.cisco.com/download/home/284143129/type/280775065/release/9.14.4%20Interim
You may wish to ujpgrade to 9.12.x on both the 5512-X and 5525-X to keep the image consistent.
There appears to not be a gold start recommended version, so suggest you go with the latest. If you are under support, call TAC and ask for their recommendation.
06-30-2022 06:20 AM
Hi,
Thank you so much for your response appreciated.
Quick question is it really worth upgrading from 9.8 to 9.12. Does 9.12 offer any security vulnerability fix?
I can see some additional features are offered in 9.12 as per link below but does it offer any fixes for vulnerability where can i find it?
06-30-2022 06:37 AM
@abideen.shaikh of course 9.12 has vulnerability fixes.
It depends on what you are using the ASA for, version 9.12 would have newer features over 9.8. If you don't require any new features that 9.12 offers, then upgrade to the latest version of 9.8 to get the vulnerability fixes.
The relevant release notes for each version will document the fixes for vulnerabilites.
https://www.cisco.com/web/software/280775065/152946/ASA-9124-Interim-Release-Notes.html
https://www.cisco.com/web/software/280775065/146525/ASA-984-Interim-Release-Notes.html
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide