


8.3 code for the ASA changes a lot of things that wont translate directly from the PIX. Hope that helps! Its going to depend largely on your code base. Create a static route on the computer pointing to the address you want to test and give it a go. Just hook up the ASA outside interface to the switch and hook up a computer to the same switch. If you have an available switch (or even some empty ports you can assign to a temp vlan) you should be able to do a fairly realistic function test. Get as much of the PIX config loaded on the ASA as you can and spend some time testing it before you put it online. Id copy of the config off the PIX as step 1 and when you get the ASA in, spend some time doing the base config. If the code is pre 8.3, most of your config should be easily entered into the ASA. My question is when I convert all my pix (515E) firewall rules, etc to ASA will the certificates on the pix (if we use them) also be converted over too? I am trying to plan this out ahead so I have no downtime or very minimal amount of downtime when I take the pix offline.Īny help would be greatly appreciated! Its going to depend largely on your code base. Security requires us to have these services separate and on different devices). Hi all, So in a month or so we will be getting our second ASA 5510 for firewall purposes (the other one we use for VPN. To ensure the device runs the latest 8.2.x code and then jump to 8.4.1. PKI support, SGT without Realm, Migration tool (from traditional ASA to FTD). Cisco is a major player in the Firewall Market since the PIX. Blog archives for the Category named ASA Migration on the 4CornerNetworks website.
