Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hello everybody,I have to upgrade the ASA image on a Firepower 2130 cluster.At the verify I was told I have to upgrade the system image before:
ENAM-ASA02 /firmware # verify security-pack version 9.20.3.16
The system is currently installed with secu...
Hello everybody,
our customer has a ASAv runnig rel. 9.16(1)28.
Our monitoring has send an error message that an expiredidentity certificate (see screen dump attached) is still in the configuration.
I tried to delete it from the interfaces within the...
Hello everybody,
our customer has a Firepower 2130 running ASA OS rel. 9.14(4)24 with hundrets ofS2S tunnels.
One of the tunnels cannot be initiated by the peer firewall (Meraki). The Firepowercan initiate the tunnel without problems. The customer th...
Hello everybody,
our customer has a HA-cluster of two Firepower 2130 running rel. 7.2.5.
The FMC is running rel. 7.4.2.1.
The wildcard certificate will expire at March 8th. I got the new wildcardcertificate for the customer domain.
I could enroll the...
Hello everybody,
I have just updated the ASDM from 7.19(1)95 to 7.22(1) om a ASAv running 9.19(1)28.
previous ASDM: 2808 196058416 May 29 2024 16:15:30 asdm-openjre-7191-95.binnew ASDM: 2820 204561552 Feb 06 2025 14:30:58 asdm-openjre-7221.bin
I have...
Hi Marius,this answered my questions completely!I did the same at a Firepower 4115 cluster and wondered why I did not find the FXOS system image filein the download section for the Firepower 2130.Thanks a lot!
ByeR.
Hi nspasov,
thanks for your reply!
I understand that I cannot delete a certificate that is currently in use.
On both interfaces the valid certificate with trustpoint ASDM_TrustPoint4 isassigned (see attached screen Dump).
I think you point on the con...
Hi Rob,
thanks for your fast reply!we should not go back to IKEv1 because this in medical environment because IKEv1 is using the unsafe SHA.Thanks a lot!
Hi Sheraz,thanks for your reply!At vASA or ASA55XX series the image file has the .bin extension.
So the conclusion for ASA-images is:.bin files (vASA or ASA55XX series): use the ASDM or the ASA CLI .SPA files (Firepower appliances): use the Chassis M...
Hi Marvin,
thanks for your fast Reply!
That means that the guide:https://www.cisco.com/c/en/us/td/docs/security/asa/upgrade/asa-upgrade/asa-appliance-asav.html#id_27300is wrong in this matter.
Is it correct to say that *.SPA files cannot be copied ...