hi,
i'll apply a security context license on a active-standby HA pair firepower 2100 running ASA.
L-FPR2100-ASA=
L-FPR2K-ASASC-10=
i also got an on-prem smart license server.
can someone advise if below config is correct? do i configure smart license under 'system' context? i saw in config guide it uses server IP address. can i use CSSM FQDN instead? is NTP on the ASA required for this setup?
do i only need to register/apply token on the primary ASA? or do i need to register both ASA? do i apply all licenses on the secondary unit except for context license? do i apply license first before configuring failover?
is feature 'standard' always need to be applied? is this the 'base' license?
is feature 'strong-encryption' the equivalent of 3DES/AES license?
configure terminal
call home
profile License
destination address http https://<ON PREM CSSM SERVER IP>/Transportgateway/services/DeviceRequestHandler
configure terminal
license smart
feature tier standard
feature strong-encryption
feature context 10
ciscoasa#license smart register idtoken <TOKEN GENERATED FROM PREM CSSM>