cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1847
Views
0
Helpful
1
Replies

Moving contexts between ASA firewalls

mmelbourne
Level 5
Level 5

Is there a recommended process to move ASA contexts from one firewall to another with the minimal amount of downtime? Can the configuration file be moved from one firewall to another, and the context created on the destination firewall specifying the copied configuration file in the context creation phase (assuming interface are named similarly)? An ARP clear of the upstream router may also be required to restore connectivity if the ASA goesn't grat-arp for interfaces and NAT addresses.

1 Reply 1

varrao
Level 10
Level 10

Hi,

This kind of a change does need some downtime, you can copy and paste the configuration from one ASA to another and that should not be an issue and yes you would need to clear the arp entries on the upstream device on the new ASA. It should not create any issues.

Thanks,
Varun Rao
Security Team,
Cisco TAC

Thanks,
Varun Rao
Review Cisco Networking for a $25 gift card