cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
372
Views
1
Helpful
5
Replies

FPR 2110 - ASA mode - S2S VPNs working without "strong encryption"

JMassie
Level 1
Level 1

I registered my Smart License successfully on the FPR 2110 running in ASA mode.
I configured 80+ Policy-based and route-based VPNs without 3DES/AES encryption license.

All of the VPNs are working successfully without the license. I have access to put the license on the device, but I am curious...why does this ASA have the ability to configure strong encryption VPNs at all without the license authorized?

 


Smart Licensing is ENABLED

Registration:
Status: REGISTERED
Smart Account: storedvalue.com
Virtual Account: DEFAULT
Export-Controlled Functionality: ALLOWED
Last Renewal Attempt: None
Next Renewal Attempt: Jul 26 2025 22:12:47 UTC

License Authorization:
Status: AUTHORIZED
Last Communication Attempt: SUCCEEDED
Next Communication Attempt: Mar 15 2025 16:49:31 UTC

5 Replies 5

Show activate key <<- share this 

MHM

JMassie
Level 1
Level 1

Command is not available to me, but the following showed that the strong encryption was enabled even before we had the license authorized. 


License mode: Smart Licensing

Licensed features for this platform:
Maximum Physical Interfaces : Unlimited
Maximum VLANs : 1024
Inside Hosts : Unlimited
Failover : Active/Active
Encryption-DES : Enabled
Encryption-3DES-AES : Enabled
Security Contexts : 2
Carrier : Disabled
AnyConnect Premium Peers : 1500
AnyConnect Essentials : Disabled
Other VPN Peers : 1500
Total VPN Peers : 1500
AnyConnect for Mobile : Enabled
AnyConnect for Cisco VPN Phone : Enabled
Advanced Endpoint Assessment : Enabled
Shared License : Disabled
Total TLS Proxy Sessions : 4000
Cluster : Disabled

And it answer your Q' the strong encryption is already enable.

MHM

That is my question.
How is it enabled if it is an out-of-box FPR-2110 with only Smart License registered?
Are there licenses auto-enabled from the Smart License?