ASA Licensing!

I have 2 questions:
1.I have 2xASA firewalls with different licenses.
Licensed features for this platform:
Maximum Physical Interfaces : Unlimited
Maximum VLANs : 150
Inside Hosts : Unlimited
Failover : Active/Active
VPN-DES : Enabled
VPN-3DES-AES : Enabled
Security Contexts : 2
GTP/GPRS : Disabled
VPN Peers : 750
WebVPN Peers : 2
This platform has an ASA 5520 VPN Plus license.
Encryption hardware device : Cisco ASA-55x0 on-board accelerator (revision 0x0)
Boot microcode : CNlite-MC-Boot-Cisco-1.2
SSL/IKE microcode: CNlite-MC-IPSEC-Admin-3.03
IPSec microcode : CNlite-MC-IPSECm-MAIN-2.04
0: Ext: Ethernet0/0 : address is 0018.195b.ccfa, irq 9
1: Ext: Ethernet0/1 : address is 0018.195b.ccfb, irq 9
2: Ext: Ethernet0/2 : address is 0018.195b.ccfc, irq 9
3: Ext: Ethernet0/3 : address is 0018.195b.ccfd, irq 9
4: Ext: Management0/0 : address is 0018.195b.ccf9, irq 11
5: Int: Not used : irq 11
6: Int: Not used : irq 5
Licensed features for this platform:
Maximum Physical Interfaces : Unlimited
Maximum VLANs : 50
Inside Hosts : Unlimited
Failover : Disabled
VPN-DES : Enabled
VPN-3DES-AES : Enabled
Security Contexts : 0
GTP/GPRS : Disabled
VPN Peers : 250
WebVPN Peers : 2
This platform has a Base license.
1. In first output you can see Active/Active failover, even i have configured Active/Standby. Why?
2. In first output you can see that paltform has VPN Plus license, but second one is base license. How it is related with system ASA IOS? Or it is not depends on ASA IOS. Ant licenses are burned to the some chip on ASA, maybe? Can somebody give to me the link with more information about that.
thanks

Leo
For your first question Mark got it exactly, it is reporting what the license is capable of not reporting what you have configured it to do.
For your second question, Cisco has adopted a somewhat different approach with the ASA code as compared to router code in which the feature set determines what capabilities are enabled. In the ASA I believe all the capabilities are included in the code but only features within your license are activated. If you were to upgrade the license I believe that you would get more features available without needing to change the code.
HTH
Rick

Similar Messages

  • Retrieve the ASA license

    Hi all,
    I am trying to retrieve the ASA license using this website https://tools.cisco.com/SWIFT/LicensingUI/lookupLicense
    And the tool asks me about the UDI Product ID, UDI Serial Number and Device Credentials. I am not sure what is Device Credentials about, is it something about the login credentials?
    Thanks in advanced.
    David                    

    Hi Bro
    Frankly, I'm not sure about this tool.
    Nonetheless, in my case, if I need to retrieve the licenses of my netorking devices e.g. ASA, ACS, IPS etc, I usually email [email protected] Someone from Cisco will reply, within an hour from the time the email is received. Please be sure to use your company email, not from yahoo, hotmail etc. and state your CCO ID.
    CCO ID = Username used to login to the Cisco website.
    This is assuming, your company email and CCO ID is tied to the product's Serial Number.

  • Upgrading ASA licenses on CSM

    Hi is there anyone who knows how to upgrade an ASA license (the Security Plus License) using CSM 7.0?

    CSM does not manage device licenses, so you cannot do it in CSM.
    What you can do is use a FlexConfig to push the command "activation-key xxxx" from CSM, or use CLI to do it. It will not cause CSM problems because CSM will not see it in the config since it is not stored in there anyway.
    I hope it helps.
    PK

  • ASA license for Cisco IP Phone over VPN

    Hi,
    Are there special licenses required on the ASA to use Cisco IP Phones (Hard phone) over SSL VPN connection?
    Thanks

    Hi,
    You can purchase the phone proxy license. This elimiates the need to build a VPN tunnel for voice traffic.
    It is not mandatory to purchase this license however.
    From the ASA configuration guide:
    http://www.cisco.com/en/US/docs/security/asa/asa83/configuration/guide/unified_comm_phoneproxy.html#wp1144845
    "The  Cisco Phone Proxy on the adaptive security  appliance bridges IP  telephony between the corporate IP telephony  network and the Internet  in a secure manner by forcing data from remote  phones on an untrusted  network to be encrypted. "
    Don't forget to rate all posts that are helpful.

  • Cisco ASA Licensing

    Hi There,
    Is there any link between the licensing and internet access on LAN?
    My LAN is "rationing" internet, with scattered internet access for users on the LAN and suspected culprit is my ASA 5505.
    Any tips / advice ?
    Kwame

    Hi,
    I cant remember the exact amounts but ASA5505 has both 10 user, 25 user, 50 user and Unlimited License (if I remember the limits correctly) when it comes to the amount of users that can use the ASA5505 at the same time. And I mean access other networks through it.
    The interface which holds the default route is considered the WAN link naturally and hosts behind are NOT counted towards this limit.
    Check the "show version" output of the ASA to confirm what you licensed user limit is.
    Use the command "show local-host" to check how high the limit is currently. The information should be contained at the very top of the output
    Hope this helps
    - Jouni

  • Licenses for 5545x. "How to install licenses from CD?"

    Hello
    I have (4) new ASA5545x'
    I also received (2) sets of the following licenses which came CD in white cardboard envelopes:
             -Cisco ASA 55xx Series
             Any Connnect Mobile
             ASA 5545 License
             Product: ASA-AC-M-5545=
             The Product key is in the envelope
             -Cisco ASA 5545-X CX AVC
             and Web Security Essentials (3 year Promo)
             ASA 5545 License
             Product: ASA5545-AW3Y-PR=
             The Product key is in the envelope
             -Cisco Any Connect 55xx Series
             Phone Licenses
             Product: ASA-AC-PH-5545=
             The Product key is in the envelope
    The ASA's will be configured for HA
    Can someone provide a step-by-step guide for this implementation.

    The Mobile and Phone licenses must be installed on the ASA proper. Here is a link to the procedure.
    While you are on the ASA licensing portal, also check on your unit to make sure you have the (free) 3DES-AES license activated. If not, you can also request that on the portal.
    The AVC and WSE license combo is on the NGFW / CX module and must be activated from within the PRSM (Prime Security Manager - the management GUI) after you've performed the initial setup per the Quick Start Guide. Here is a link to the "Managing System Licenses" section of the PRSM User Guide. 

  • Anyconnect license for ASA5520

    Dear Team,
    Below is the configuration of one of our clients and they have requested for 50 Users Anyconnect License with software being installed on client.
    ABC # sh ver
    Cisco Adaptive Security Appliance Software Version 8.2(2)
    Device Manager Version 5.2(3)
    Compiled on Mon 11-Jan-10 14:19 by builders
    System image file is "disk0:/asa822-k8.bin"
    Config file at boot was "startup-config"
    PSO-ASA up 110 days 22 hours
    failover cluster up 110 days 22 hours
    Hardware:   ASA5520, 512 MB RAM, CPU Pentium 4 Celeron 2000 MHz
    Internal ATA Compact Flash, 256MB
    BIOS Flash M50FW080 @ 0xffe00000, 1024KB
    Encryption hardware device : Cisco ASA-55x0 on-board accelerator (revision 0x0)
                                  Boot microcode   : CN1000-MC-BOOT-2.00
                                  SSL/IKE microcode: CNLite-MC-SSLm-PLUS-2.03
                                  IPSec microcode  : CNlite-MC-IPSECm-MAIN-2.04
      0: Ext: GigabitEthernet0/0  : address is 001e.f760.a75c, irq 9
      1: Ext: GigabitEthernet0/1  : address is 001e.f760.a75d, irq 9
      2: Ext: GigabitEthernet0/2  : address is 001e.f760.a75e, irq 9
      3: Ext: GigabitEthernet0/3  : address is 001e.f760.a75f, irq 9
      4: Ext: Management0/0       : address is 001e.f760.a760, irq 11
      5: Int: Internal-Data0/0    : address is 0000.0001.0002, irq 11
      6: Int: Not used            : irq 5
      7: Ext: GigabitEthernet1/0  : address is 001e.f760.b729, irq 255
      8: Ext: GigabitEthernet1/1  : address is 001e.f760.b72a, irq 255
      9: Ext: GigabitEthernet1/2  : address is 001e.f760.b72b, irq 255
    10: Ext: GigabitEthernet1/3  : address is 001e.f760.b72c, irq 255
    11: Int: Internal-Data1/0    : address is 0000.0003.0002, irq 255
    Licensed features for this platform:
    Maximum Physical Interfaces    : Unlimited
    Maximum VLANs                  : 150
    Inside Hosts                   : Unlimited
    Failover                       : Active/Active
    VPN-DES                        : Enabled
    VPN-3DES-AES                   : Enabled
    Security Contexts              : 2
    GTP/GPRS                       : Disabled
    SSL VPN Peers                  : 2
    Total VPN Peers                : 750
    Shared License                 : Disabled
    AnyConnect for Mobile          : Disabled
    AnyConnect for Cisco VPN Phone : Disabled
    AnyConnect Essentials          : Disabled
    Advanced Endpoint Assessment   : Disabled
    UC Phone Proxy Sessions        : 2
    Total UC Proxy Sessions        : 2
    Botnet Traffic Filter          : Disabled
    This platform has an ASA 5520 VPN Plus license.
    Serial Number: JMX1210L21K
    Running Activation Key: 0x7c1f6a6e 0x44e5b71d 0xa8b04110 0x9e043c5c 0x0d329294
    Configuration register is 0x1
    Configuration last modified by enable_15 at 10:58:52.275 UTC Wed Dec 18 2013
    I have quoted them "L-ASA-SSL-50=" but confused about the ASA Licensing.
    Please let me know if this is the right one or I have to quote something else?
    Kindly let me know if we need to purchase client software for client based SSL VPN?
    Regards,
    Farhan.

    Syed,
    As per the "show version" output:
    SSL VPN Peers                  : 2
    Total VPN Peers                : 750
    Shared License                 : Disabled
    AnyConnect for Mobile          : Disabled
    AnyConnect for Cisco VPN Phone : Disabled
    AnyConnect Essentials          : Disabled
    Do you need AnyConnect Essentials or Premium?
    Check:
    AnyConnect Secure Mobility Client Features, Licenses, and OSs, Release 3.1
    Cisco AnyConnect Secure Mobility Client Licensing Options
    Table 2 lists licensing options for the Cisco AnyConnect Secure Mobility Client.
    Table 2. Cisco AnyConnect Secure Mobility Client Licensing Options
    License Requirements (each license below is required)
    Description
    Cisco ASA Platform License
    Cisco AnyConnect Essentials[2] (P/N: (L-ASA-AC-E-55**=) 05, 10, 20, 40, 50,80, 85)
    • Highly secure remote-access connectivity
    • Single license per ASA device model (not a per user license); enables maximum simultaneous users on platform
    • Full-tunneling access to enterprise applications
    Cisco AnyConnect Premium[3] (P/N: (L-ASA-SSL-***=) 10, 25, 50, 100, 250, 500, 1000, 2500, 5000, 10,000
    • Also provides support for clientless SSL VPN and capabilities available on desktop AnyConnect platforms including Cisco Secure Desktop HostScan and always-on VPN connectivity
    • License is based on number of simultaneous users, and is available as a single device or shared license (part number above is for a single device license)
    Cisco AnyConnect Mobile License5
    P/N: (L-ASA-AC-M-55*=)
    05, 10, 20, 40, 50,80, 85
    • Enables Mobile OS platform compatibility
    • Single license per ASA device model (not a per user license) is required in addition to Essentials or Premium licenses
    Cisco AnyConnect Secure Mobility Client Licensing Options
    Let me know if you have any further questions.
    HTH.

  • ASA1000V Licensing

    Hi All,
    I am setting up a new virtual datacenter, and I have installed an ASA1000v (v 8.7(1)4)
    The problem is however that I can not pass traffic thru the ASA.. I now know that this is beacuse the ASA is not licenced.
    If I have a look at my Nexus 1000V, it shows the following;
    NEXUS# sh license usage
    Feature                      Ins  Lic   Status Expiry Date Comments
                                     Count
    NEXUS_VSG_SERVICES_PKG        No  512   Unused 02 Aug 2013 -
    NEXUS1000V_LAN_SERVICES_PKG   No  512   In use 02 Aug 2013 -
    NEXUS_ASA1000V_SERVICES_PKG   No   16   Unused 02 Aug 2013 -
    So from what I can see, it would show that the ASA1000v has not picked up a license from the Nexus 1000v.. I have not installed any proper licenses yet, as I am just testing it to make sure it all works, then will install the proper licenses..
    So my question is, How to I configure the ASA1000V to pick up a licence from the Nexus1000V?
    Nexus is running version 4.2(1)SV2(1.1a)
    Any helpwould be greatly appreciated!
    Thanks for you time

    As an update;
    I did the following on the Nexus;
    NEXUS# module vem 3 execute vemcmd show vsn config
      VSG Services Disabled | VSG Licenses Available   0
      ASA Services Disabled | ASA Licenses Available   0
      VSN#  SWBD               IP                MAC  LTLs VER     VER-BITMAP
    NEXUS# module vem 4 execute vemcmd show vsn config
      VSG Services Disabled | VSG Licenses Available   0
      ASA Services Disabled | ASA Licenses Available   0
      VSN#  SWBD               IP                MAC  LTLs VER     VER-BITMAP
    This is showing that the ASA Services are disabled.. Do i need to enable them somehow here? If so - how?
    Cheers,

  • Elearning licenses - BUT THEN What is MLP ??

    HI
    I have 3 TLP volume licenses for elearning suites
    BUT THEN .. my reseller told me that "Adobe has advised that Unfortunately there is NO option for end users with Captivate, eLearning Suite and Presenter under TLP maintenance to renew either now or in the future."
    BUT THEN ... ASA was announced
    http://blogs.adobe.com/captivate/2012/10/how-to-get-free-adobe-captivate-elearning-suite-a dobe-presenter-upgrades-for-the-next-two-years.html
    which I can get maintenance with. Yay !
    BUT THEN .... No one can tell me whether
    - my TLP Volume license become ASA
    - do i have to reinstall them with differ4nt license numbers
    - If I purchase additional ASA licenses will they have different serial numbers to my existing TLP license ?
    BUT THEN I got an email my email this morning sating I had an upgrade to "eLearning Suite ALL MLP New Upgrade Plan"
    BUT THEN I have no idea what MLP is ???
    regards Renovator

    Hi Renovator,
    Can you share me your email details, via private message.
    I will try to help you with these questions.
    Thanks,
    Anjaneai

  • Jabber & mobility question

    Hi!
    I am trying to understand the variosu options for mobility for a Jabber on IPAD user when away from the office.
    Found this:
    1.) Cisco Jabber secure connect enables users who are away from the office Wi-Fi network to easily remain connected to corporate resources. When deployed together with the Cisco ASA 5500 Series Adaptive Security Appliance, the end user connectivity experience is secure, transparent, and friendly to today's proliferation of individually purchased mobile devices. When needed, the Cisco Jabber application - rather than the entire device or platform - initiates a secure Secure Sockets Layer (SSL) connection and validates the user credentials (whether authentication, authorization, and accounting [AAA] or digital certificates). Also, when the user returns to the office network, the Cisco Jabber application detects that the SSL tunnel is no longer required and breaks the tunnel down. Only application traffic from the Cisco Jabber application will traverse the enterprise, and other applications will not access corporate networks.
    2) The Cisco AnyConnect™ solution is also a supported method of remote access, providing customers with multiple deployment options. When Cisco AnyConnect technology is used, all applications on the device will access the corporate network. Also, this technology is a separately distributed, configured, and operated application. The Cisco Jabber application does not control when Cisco AnyConnect technology is enabled or disabled. In this way, the Cisco Jabber application with integrated secure connectivity simplifies both the end user experience and the management and deployment effort
    My questions:
    1. I have heard rumors however that the Cisco Jabber secure connect will be discontinued, is that correct?
    2. If the customer does not have Cisco's ASA FW, what are then the options? Could they continue to run another non- CIsco remote vpn client and then launch Jabber?
    Many thanks in advance!
    Anna

    Cisco secure connect is only available for Android. IOS devices must use the mobile AnyConnect through the ASA..
    Good news is it is only 105 dollar license to cover everyone. One time fee for the ASA license.
    Sent from Cisco Technical Support iPad App

  • SSL webvpn ErroR

       DEAR All
    i have issue in SSL webvpn  . I have 2 ASA (5520 and 5510 in 2 different locations in india)
    1st ASA 5520 it is in my datacenter i have configure webvpn to access my web applications hosted in my datacenter.
    As starter i have created a local account in ASA for webvpn access . i am able to access the webvpn using the local credentilas.
    when i try to click the URL i get error " Internet Explorer cannot dispaly the webpage" .
    Instead of error msg i should be prompted with usename and password for the websie . I have attached "afterloginscreen_5520&5510" scrren shot which shows the SSL-webvpn is working and the second screen shot " error_page_5520" shows the error when i click the URL .
    2nd ASA 5510 it is in my another datacenter . i have configured the same and working fine ,i have no problem in accessing the website , i have attached the screen shot " working_5510_asking_for_username&password"
    for ASA5520 webservers are native
    for ASA5510 webserver are in remote
    last month wen i tired using ASA 5520 it was working as charm , wen i now tired with both ASA enabled 5520 is not working ,
    6|Oct 26 2012 14:37:39|725007: SSL session with client Outside:Internet IP /1631 terminated.
    6|Oct 26 2012 14:37:40|725001: Starting SSL handshake with client Outside:Internet IP /1634 for TLSv1 session.
    6|Oct 26 2012 14:37:40|725003: SSL client Outside:Internet IP /1634 request to resume previous session.
    6|Oct 26 2012 14:37:40|725002: Device completed SSL handshake with client Outside:Internet IP/1634
    6|Oct 26 2012 14:37:40|716003: Group <omsir VPN> User <omsir> IP <Internet IP> WebVPN access GRANTED: http://URL//
    Please help me       ;;;;;;;;;;;;;;;;    Thanks in Advance .

    Hello all
    I have solved this issue
    My ASA licensed only for 3DES . once i tried AES trail version from cisco it worked like a charm ..
    i know this is wired, but what to do this has solved the issue
    Enjoy
    Naresh

  • Are VPN Clients supported in multiple context mode?

    Hi,
    Recently our company has bought two Cisco ASA 5515-X firewalls for at our datacenter. I am new on configuring a Cisco ASA but sofar things are looking good. I have configured them both with HA (active/active) in multiple context mode. Currently they host two security contexts.
    I want to configure VPN Client functionallity for Remote Access. As far as I know they come with two user licenses. But there is no VPN Client wizard available and I can't find a way to enable it.
    - Is VPN Client supported in Multiple Context mode?
    - What is AnyWhere Essentials vs Premium Peers?
    Boudewijn
    Here is some additional output fromt he current configuration:
    Cisco Adaptive Security Appliance Software Version 9.1(2) <context>
    Device Manager Version 7.1(3)
    Encryption hardware device : Cisco ASA-55xx on-board accelerator (revision 0x1)
                                 Boot microcode        : CNPx-MC-BOOT-2.00
                                 SSL/IKE microcode     : CNPx-MC-SSL-PLUS-T020
                                 IPSec microcode       : CNPx-MC-IPSEC-MAIN-0024
                                 Number of accelerators: 1
    Baseboard Management Controller (revision 0x1) Firmware Version: 2.4
    Licensed features for this platform:
    Maximum Physical Interfaces       : Unlimited      perpetual
    Maximum VLANs                     : 100            perpetual
    Inside Hosts                      : Unlimited      perpetual
    Failover                          : Active/Active  perpetual
    Encryption-DES                    : Enabled        perpetual
    Encryption-3DES-AES               : Enabled        perpetual
    Security Contexts                 : 2              perpetual
    GTP/GPRS                          : Disabled       perpetual
    AnyConnect Premium Peers          : 2              perpetual
    AnyConnect Essentials             : Disabled       perpetual
    Other VPN Peers                   : 250            perpetual
    Total VPN Peers                   : 250            perpetual
    Shared License                    : Disabled       perpetual
    AnyConnect for Mobile             : Disabled       perpetual
    AnyConnect for Cisco VPN Phone    : Disabled       perpetual
    Advanced Endpoint Assessment      : Disabled       perpetual
    UC Phone Proxy Sessions           : 2              perpetual
    Total UC Proxy Sessions           : 2              perpetual
    Botnet Traffic Filter             : Disabled       perpetual
    Intercompany Media Engine         : Disabled       perpetual
    IPS Module                        : Disabled       perpetual
    Cluster                           : Disabled       perpetual
    This platform has an ASA 5515 Security Plus license.

    Hi,
    No form of VPN Client is supported when you are using an ASA in Multiple Context mode.
    The only type of VPN supported in the newer 9.x softwares is L2L VPN / Site to Site VPN
    This might answer the VPN Licensing related question
    http://packetpushers.net/cisco-asa-licensing-explained/
    I never seem to remember it exactly myself even.
    - Jouni

  • What's a user?

    From the POV of ASA licensing, what actually counts as a user?
    - is it a remote machine with possibly several connections?
    - is it a connection username?
    Or something else?!

    Hi Alex,
    A "user" is defined in the SQL Anywhere's License Agreement that you must agree to prior to installing the software.  Here's what this agreement says:
    "A specific, identifiable, unique input/output device capable of directly or indirectly accessing and using a Program such as (without limitation) a terminal, personal computer, single user workstation, personal digital assistant ("PDA"), wireless device or real time device."
    For example, if you have 10 people accessing a SQL Anywhere database, then your database server must be licensed for at least 10 users.  Keep in mind that even if you have a remote machine that maintains a single connection to the database (e.g. Citrix or similar technology), but you have 10 people accessing it, you still need a license for at least 10 database users.
    There's also the option to license the database server on a per CPU basis, thus making the number of users irrelevant.  This situation typically applies for Internet-type applications, where you don't know the exact number of database users.
    You can also view the SAP Software Usage Rights document for more details. It's available from this web page (click on the appropriate region): http://global.sap.com/corporate-en/our-company/agreements/index.epx.

  • VLAN problems with SG200-8P and Cisco ASA 5505 (Sec Plus license)

    Hi,  I've been pulling my hair out trying to get simple vlan trunking working between these devices.
    Basically, no clients on VLAN 99 (guest) will receive DHCP ip addresses when plugged into the SG200.  I have the SG200<>ASA VLAN trunk configured correctly, as I know it, and I've tried numerous variations (set trunk as general tag/untagged, etc., set the ap port to general tag/untag, etc).   Both AP's work properly when connected to the ASA e0/3 port but either will only pull the "inside" VLAN dhcp address when connected to the SG200 switch
    VLAN 1 - inside (has separate dhcp scope assigned by ASA)
    VLAN 99 - guest (has separate dhcp scope assigned by ASA)
    SG200
    purpose
    ASA 5505 (Sec Plus license)
    purpose
    g2
    Trunk 1UP,99T
    Ubiquiti AP (VLAN 1 works, VLAN 99 does not
    g3
    Access port 99T
    vlan 99 does not work
    g8
    Trunk 1UP, 99T
    < Trunk between switch and ASA >
    Int e0/2
    switchport trunk allowed vlan 1,99
     switchport trunk native vlan 1
     switchport mode trunk
    Int e0/3
    switchport trunk allowed vlan 1,99
     switchport trunk native vlan 1
     switchport mode trunk
    Second ubiquiti AP
    Both VLAN 1 and VLAN 99 clients work properly

    Frustrated - yes.  Confused - maybe not as much, but I could have put some more effort into the overall picture.
    There are two VLANs (1 - native) and (99 - guest).   There is a trunk port between the SG200 and the ASA configured as 1-untagged 99 - tagged.    
    No clients connected to the SG200 on VLAN 99  are able to access the ASA VLAN 99 using either a static VLAN IP address or DHCP.   The problem occurs whether I configure the SG200 with an access port 99-tagged or Trunk port 1UP, 99T or general port 1U, 99UP or any combination thereof.
    Anything connected to the SG200 on the native VLAN works properly.
    Anything connected to the ASA VLANs (1 or 99) works properly
    I have not yet tried to see what the switch is doing with the VLAN tags but I suspect I have some mismatch with the Linksys/Cisco SG200 way of setting up a VLAN and how traditional Cisco switches work.
    I was hoping someone with a working SG200 - Cisco ASA setup could share their port/trunk/VLAN settings or perhaps point me in the right direction.
    SG200 g2 - trunk port (1UP, 99T) -- Access Point
    SG200 g2 - access port (99U)
    SG200 g8 - trunk port (1UP, 99T)  connected to ASA5505  e0/3  
    ASA5505 e0/3  (switchport trunk allowed vlan 1,99,  switchport trunk native vlan 1,  switchport mode trunk)
    Thanks,

  • ASA 5505 Failure replaced and need to move the license key?

    Can someone point me in the right direction? My ASA 5505 died due to a power surge and I swapped it with a spare. I had Security Plus and a 50 user license and need to move the license keys from the failed ASA 5505 to the new one. I kept both my emails with the activation keys, but not sure how I get this transferred?  Thanks in advance.
    Joe

    I think this is totally unacceptable. For anyone else who uses a 5505 at home and has bought licenses and the hardware out of their own pocket, the idea here should be that you've already bought the hardware and the license. Seems obvious, right?
    Yes I can see the license being device specific if not only because that's the way you've designed your licensing activation schema; but if I've just had your product fail and bought another replacement, there should be an understanding or agreement between Cisco and the user that we can reinstate any licenses we've already bought.
    Do you really believe it's fair to make someone buy something from you twice, something that they've already bought from you? Do you actually believe that? I believe that the people in the Cisco Licensing department would agree with my viewpoint and I have a pending case with them for this issue right now. I will post my result here.
    Make your products last and perhaps I can give credence to your licensing beliefs, until then your products fail and so does your licensing logic.

Maybe you are looking for