"admin-context" command not available on FWSM

Answered Question
Dec 12th, 2008

Hi gurus,

Probably, I have a totally stupid newbie question. I got a new Cisco FWSM and trying to configure from scratch. Looks like command "admin-context" is not available from firewall configuration mode. Is it a licensing problem? Am I in a wrong mode? Thank you!

FW# show ver

FWSM Firewall Version 3.2(5)

Compiled on Mon 10-Mar-08 16:03 by fwsmbld

FW up 16 days 3 hours

Hardware: WS-SVC-FWM-1, 1024 MB RAM, CPU Pentium III 1000 MHz

Flash STI Flash 8.0.0 @ 0xc321, 20MB

0: Int: Not licensed : irq 5

1: Int: Not licensed : irq 7

2: Int: Not licensed : irq 11

The Running Activation Key is not set, using default settings:

Licensed features for this platform:

Maximum Interfaces : 256

Inside Hosts : Unlimited

Failover : Active/Active

VPN-DES : Enabled

VPN-3DES-AES : Enabled

Cut-through Proxy : Enabled

Guards : Enabled

URL Filtering : Enabled

Security Contexts : 2

GTP/GPRS : Disabled

BGP Stub : Disabled

VPN Peers : Unlimited

Serial Number: SAD123602JE

Running Activation Key: 0x00000000

0x00000000 0x00000000 0x00000000

Configuration last modified by enable_15 at 14:46:41.458 UTC Fri Dec 12 2008

config)# ?


aaa Enable, disable, or view user authentication,

authorization and accounting

aaa-server Configure a AAA server group or a AAA server

access-group Bind an access-list to an interface to filter traffic

access-list Configure an access control element

alias Administer overlapping addresses with dual NAT

arp Change or view ARP table, set ARP timeout value, view


asdm Configure Device Manager

auth-prompt Customize authentication challenge, reject or

acceptance prompt

auto-update Configure Auto Update

banner Configure login/session banners

ca Certification authority


url-block Enable URL pending block buffer and long URL support

url-cache Enable/Disable URL caching

url-server Configure a URL filtering server

username Configure user authentication local database

virtual Configure address for authentication virtual servers

vpn-addr-assign Global settings for VPN IP address assignment policy

vpn-sessiondb Configure the VPN Session Manager

vpngroup Configure a policy group for VPN clients

xlate-bypass Enable/Disable xlate bypass

Correct Answer by Jon Marshall about 8 years 2 months ago

Type "sh mode".

If it's says "single" then you are in wrong mode. To change to multiple mode -


Note what happens to the existing config.

If it says "multiple" try entering

"ch sys"


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (1 ratings)


This Discussion