10-15-2021 10:10 AM
We have a customer that currently has ASA 5500s, we are going to replace them with the FPR1010 using ASA code. We need to activate the SEC Plus license in order to run them in HA. However, it doesnt look like its possible to activate the license without the FPR having access to the internet. If I do allow the 1010s temporary access so they can register the license, will there be a problem if I shut off internet access after that? The customer has to have a closed network for security reasons, so the FPR's wont have access to the internet.
10-15-2021 11:37 AM
After activating the License that does not have any effect on the firewall, and you may see a compliance issue, the device is not able to communicate with the smart License.
10-16-2021 12:18 AM
Hi @tmbenne,
You actually have several different options here:
Leaving your devices ut of compliance is the worst option from my standpoint, given that air-gapped networks are something that Cisco actually anticipated and offered a solution for those.
BR,
Milos
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide