Cisco VPN :: ASA 5520 - Add 50 More Licenses?
Feb 4, 2013We have a 5520 ASA with a 100 user ssl license. We need to increase this but 250 is overkill. Is there an option to just add 50 more licenses or do we have to go up to 250?
View 2 RepliesWe have a 5520 ASA with a 100 user ssl license. We need to increase this but 250 is overkill. Is there an option to just add 50 more licenses or do we have to go up to 250?
View 2 RepliesIve got a customer asking for 2 products to be installed on an ASA 5520?
 
ASA 5500 SSL VPN 10 Premium User License and AnyConnect Essentials VPN License - ASA 5520 (750 Users)?
  
Am i correct in saying only one of those licences will actually be active at any time?
Need to know the number of VPN licenses that is available,
1)  I have site to site vpn connections. 
2) SSL VPn (browser) 
3) IPsec  client vpn.
How many vpn connections are allowed? can multiple connections be made using the same username for IPsec VPn clients.?
We are trying to activate two L-ASA-SSL-100= licenses in our ASA5520 and we are getting the below error:
Wrong Sku(s) 'L-ASA-SSL-100=' for 'ASA5520_AIP20-K9' : Device contains following licenses 'ASA5520-VPN-PL,ASA5520-SSL-50, ASA-AC-M-5520, ASA5500-ENCR-K9'
Serial Number = XXXXXXX
The new serial number provided is not the same platform type as the failed serial number. An upgrade request is not allowed.
So i setup a failover active / passive with 2 ASA5520's
 
Primary asa has 750 Anyconnect vpn licensing and the secondary asa has 2 Anyconnect licenses      
 
I haven't setup the second asa with the new 750 licenses i purchased but when i do a show version it shows that the failover licensed features shows 750...
 
Does this mean i do not have to install the secondary anyconnect licenses on the standby ASA unit?
 
output of secondary asa
:
Licensed features for this platform:Maximum Physical Interfaces       : Unlimited      perpetualMaximum VLANs                     : 150            perpetualInside Hosts                      : Unlimited      perpetualFailover                          : Active/Active  
[Code]......
Any trouble with IOS XR licenses dissapearing after a power off ?I was able to add them correctly, but after the power off "show licenses" gives and empty message, but the logs states the licenses are already there.I'm working with a CRS-3 with IOS XR version 4.0.1.
View 1 Replies View RelatedWe are looking at buying an ASR1001 but I'm confused by the Licenses and I've struggled to find the information in the cisco data sheets. The router will need to run IPSEC on gre tunnels and I figure that I need the IPSEC license (FLSASR1-IPSEC) do I also require the Advanced IP Services license? or is all that is required the IPSEC license? Is there some sort of list that shows the feature set of each license, they cost the same amount so I'm not sure which license fits what we require best or if we need both.
View 1 Replies View Relatedis that possible to increase the number of SSL VPN User Licenses on ASA5510-SSL100-K9 using for example L-ASA-SSL-50= ?Is there any limitation ?
View 3 Replies View RelatedAfter install the License for 25 AP more to a wlc 5508 with 100 AP base license and reboot WLC, the License base for 100 AP´s and this new one 25+, it's not anymore on the system, after reboot the WLC show 0 AP´s supported, and the only one license appear are 500 AP evaluation with Time expires.
View 1 Replies View RelatedI have a cisco ASA5505, with base license, it appears I can only have 2 ssl/webvpn connection running at any one time. How can I upgrade only the webvpn portion to allow more licenses?
View 2 Replies View Relatedi currently have a ASA5540 with 250 SSL VPN Premium licenses and looking to purchase another 500 licenes on top of what i already have.I have been told that i cant simply add 500 licenses onto the 250 to make 750 in total and that i need to purchase a 250-500 licenses or 250-1K licenses. Is this correct? I ask this because on the cisco website, that there is L-ASA-SSL-250-500= & L-ASA-SSL-500-750= part numbers?
View 1 Replies View RelatedWe've been upgrading our WLCs to 7.0.230.0 but I've notifced after they have been upgraded they no longer appear in the controller section in License Center on the WCS. They still exist in the WCS and the audit the configuration jobs are working. I've also tried manually triggering the Controller License Status background tasks and this runs without reporting any errors.I thought it may be because the WCS was at a lower version but I've now upgraded this to 7.0.230.0 also but the WLCs are still missing.
View 1 Replies View RelatedHow to confirm the linceses required for me to get this working. I understand that it needs the 'AnyConnect for Cisco VPN Phone' license but do I also need to have anyconnec essentials? This is for ASA version 8.2 and the a license info below is for the ASA i intend to delpoy this on. This platform has an ASA 5550 VPN Premium license.
View 2 Replies View RelatedShared licensing of ASA?I have 2 ASA 5585 in cluster and I have to Implement SSL / VPN license My question:Since I have a cluster in 8.3 version, can I use only one license VPN / SSL for two, without necessarily implement the Shared Server licenses and participant.
View 4 Replies View RelatedI have 2 5508 that are currently running as active with 150 licenses each. I want to go to HA SSO can 100 of the licenses be relicensed to the primary since it only requires 50 licenses to convert an active license 5508 to standby HA SSO?
View 3 Replies View RelatedWe have ordered the following 10 line items , but only got 3 licenses , unless the 3 licenses somehow have all the licenses integrated into the 3 part numbers below, but I suspect not.
  
Licenses attached from Cisco:-
 
N7K-C7009-XL-SBUN   Nexus 7009 Scalable Feature License                         x  1
N7K-C7009-SBUN-P1   Inc LAN,ADV,TRS,EL2,DCNM,DCNMSAN,MPLS,SAN,XL -Promotion     x 1
[Code].....
I have a Cisco ASA 5505 which is setup as an EasyVPN client to e remote VPN concentrator.The Cisco ASA has the 50 internal user license with 10 VPN peers.We just upgraded the license from the base 10 internal user to 50 user license but it has not resolved the problem and only 10 internal users still work, the 11th fails. Does each EasyVPN client on the inside network take up 1 of the 10 VPN peer licences? This seems to be the issue from what I can see, just need confirmation.
View 3 Replies View Relatedi'm trying to install the security licenses on a 2911 router and is giving the error shown in the attached file
View 4 Replies View RelatedAny document which expalins what you need to know when looking at purchasing an ASA5505.  Which clearly describes the verious permitations and combinations of these lovely little boxes?
 
I recently purchased a basic: ASA5505-BUN-K9
 
I realise now this comes with 10 internal users, 2 ssl and no anyconnect mobility.   All these can be purchased as additional licenses.
 
Its my understanding that to support unlimmited Internal/Inside hosts - I need to purchase the L-ASA5505-SEC-PL (Security Plus License)
 
1) What is the model I should go for if I want to support unlimmited interneal.  Can a 5505 be purchased with with security plus?
difference between License types on Cisco Prime Infra 1.2 as below
 
Base License
Lifecycle management License
compliance management license
Automated deployment Gateway
Assurance Management License.
When I connect two 4500-x switches in a VSS setup, do I need to have both 4500-x switches equiped with Enterprise Services, or can I mix IP Base with Enterprise Services in one VSS setup in order to save on licensing costs?
View 1 Replies View RelatedI am getting a hard time in order to understand the real difference between the two types of context aware licenses for the MSE:
 
1 . AIR-CAS-1KC-K9 -  Context Aware License For 1K Clients and Tags (RSSI based) 
2. AIR-CAS-1KT-K9 -  Context Aware License For 1K Tags(RSSI, Chokeponts and TDOA)
 
For a regular network without any devices with tags such as RFID, I understand I do not need to get the .2, only .1, even though the .1 also is shared with clients at 1K of each. Also, the .2 does not say clients, only tags and advanced features as TDOA. Going through the Q&A it does not clearly says the difference, when to use one or the other. 
Is there a maximum number of licenses for connections to a 877?The reason I ask is that our routers are managed by a datacentre and when I asked for the login details I was told that I couldnt have them due to licensing reasons with no other explanation.
View 1 Replies View RelatedI am upgrading the network equipment at my place of employment. We use Cisco C3560, 2960, 4506 and I was noticing that IOS 15.0.x is available. After doing some reading it appears that Cisco is going to a pay for the licensing functionality that you want. Do I need to purchase licenses to upgrade from IOS 12.X to 15.0.x to maintain functionality?
View 4 Replies View RelatedI recently installed additional licenses on my 2 WLC 5508s. Then I installed NCS on a virtual appliance. Installed the NCS license, added the controllers, refreshed configs, created templates, etc. However, when I go to look at the License Center, I can't see any controller licenses. When I log directly on to the controllers themselves, the licenses say they are installed and "in use". I've looked all over and cannot determine why the controller licenses do not show up. 
NCS version: 1.1.0.58
WLC version: 7.2.103.0
We have a cisco services contract with IBM that supplies us access to the usb drivers, firmwares etc, and we have a Cisco 5508 6.x running ~30 Cisco 1252's, some 1231's and (potentially) some 1262's once the firmware update is done.
 
We have a base-count license(permanent) of 50AP's, no expiry
 
So I guess my questions are:
 
1) When flashing the new firmware - do the licenses require any sort of modification, or will they work as per normal
2) Are any serial numbers or codes required to be entered once the 7.0.98 firmware is installed?
3) I assume that the old firmware/config becomes 2nd in line to the primary boot option of the firmware during boot process?
I currently have a HA pair of ASA5510's, as I understand it the 2 free premium licenses can be used by the mobile client as long as the ASA has the license for the mobile clients?
 
Can any one confirm that my understanding is correct, or would i need to buy a seperate Premium license a long with the mobile client license to enable this functionality?
before I open a TAC case: How does Cisco Prime NCS handle the device licenses for stack of 3750 switches? Just one device license for the stack or a license for every physical switch in the stack? I can't find a answer on the Cisco website, but maybe one of you knows it from a deployment you have done..
View 2 Replies View RelatedDuring high throughput times (nightly, when backup runs) we see packet drops on the network. We think it's the ACE module that drops. We use 2 ACE 20-MOD-K9 with base licenses in a FT configuration in Layer2 Mode.Now I found an interesting statistic on the ACE: [code] How to reset this counter?
View 4 Replies View RelatedI have two ASA 5505's with Security Plus licenses on both.I am trying to force them to becoming an HA pair using active/standby.When I enable failover I get this message:
 
Mate's license (Licensed Cores ) is not compatible with my license (Licensed Cores ). Failover will be disabled.Do I need to apply new licenses to the ASA's?
 
Device licence details (same on both):Cisco Adaptive Security Appliance Software Version 8.2(1) [code] This platform has an ASA 5505 Security Plus license.
We are going to deploy a active/active setup of 2 ASA 5585's. Here we will implement a concept of security zones through context's where different services will be firewall through a separate firewall context. will a security context consume 1 or 2 licenses because we are running in a Active/active setup? Right now I got completely confused when my manager asked me that question.I would say that we only use on security context license - but since we are running in a active/active setup - even though the other instance is standby - will it consume a context license? We are using ASA OS 8.4.x.
View 5 Replies View RelatedWe were using ASA-5520-K9 with ASA-SSM-AIP-20-K9 but recently found some hardware problem in our running ASA. Now cisco want to replace with ASA-5520-K8.
View 1 Replies View RelatedAfter having a hard time getting the VPN back to default, I logged into the ASDM and reset to factory defaults.  After it reset, I logged in via the management port and configured everything to work.  When I clicked on "apply", it gave an error saying that the inside interfaces, g0/1, IP address is on the same network as the management interface.  When the ASA restarted, I am now unable to get into the unit via the management port or the inside interface.  
I had set the management port to 10.0.1.254.  WHen I connect an ethernet cable to it and place my mac on the the same network, I can ping the management interface, however I cannot SSH, Telnet or ASDM into it.  
Here is the big problem, I don't have a console/rollover cable to connect to the console interface.  Is there another way I can default the box?  Maybe via the reset button on the back somehow?  Or, is there a way to figure out the ip address of the inside interface?  I'm assuming, since it did not take the IP I set, that it defaults to something right?