10-12-2015 02:57 AM - edited 03-11-2019 11:43 PM
I have a client who has a strange requirement as follows,
He has an existing Old Cisco ASA 5520 (IOS 8.0) and he has purchased a new ASA 5512-X with firepower services, now he wants to configure a work-around that replicates the config from this new asa to old asa so in case of any failure the old asa will take charge.
I have already informed him without failover this is not possible but he says there should be some work-around, so kindly let me know if there is anything that we can do to make it work..Thanks in advance!!
10-12-2015 01:13 PM
Hi Shabaz,
Yes, you are right. Without failover it is not possible. Also ASA5520 and ASA5512-x together in the failover would not work because of Hardware differences.
Only thing he could do is, he could regularly update the configuration on old ASA (in case any changes on asa5512-x is made) and place it to the network in case of any hardware failure on new ASA.
Rate if it helps!
Regards,
Akshay Rastogi
10-12-2015 01:51 PM
Also the ASA 5512-X with FirePOWER requires ASA 9.2(2.1) or later. There are a lot of syntax changes between that configuration and the one in the old ASA running 8.0.
So even if they manually copy the configuration from one to the other it won't work.
I'd officially say it's a Bad Idea.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide