cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
363
Views
0
Helpful
1
Replies

ASA 5506 can is support Eliptic Curve Cryptology

NEAL ZIPPER
Level 1
Level 1

We are trying to setup a ASA Lab.

Can anyone confirm the 5506x that Eliptic Curve Cryptology i.e. ECDH-256, ECDH-384.

If not what is the smallest ASA to support Cisco's Next Gen encryption.

Additionally does ASA5500x still support 2 Anyconnect licenses out of the box?

1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

Yes it does support elliptic curve cryptography. It needs to be running ASA 9.4(1) or later and configured properly.

It's confirmed in the release notes here:

http://www.cisco.com/c/en/us/td/docs/security/asa/asa94/release/notes/asarn94.html

A good explanation of getting it to work with AnyConnect can be found here:

https://ltlnetworker.wordpress.com/2016/12/18/elliptic-curve-asa/