ASA5510 firmware upgrade for Active/Standby set up
I wish to upgarde a redundant pair of firewalls in a maintenance window. Downgtime is not an issue during two hour window.
We wish to upgrade from 7.2 to 8.3. Is it safe to download 8.x image to 5510s, set up boot system flash:/newimage, boot system flash:/oldimage and then reload the firewalls? I can certainly also failover to secondary and then uograde primary and then revert back control to primary and then upgrade secondary, but not sure if I need to migrate from 7.2 to something like 7.9 and then 8.0 and 8.3 for each firewall. I tried to do some research on Cisco docs, but I could not find answer, though I am sure it is buried somewhere.
Re: ASA5510 firmware upgrade for Active/Standby set up
Thanks KS for your advice. The reason to upgrade is PCI compliance for two factor authentication, which is supported on 8.x.
I agree if 8.3 requires a ton of additonal DRAM, then 8.2.x will do for our application. And as I indicated, down time is not an issue, in that case, do you forsee any issues in downloading 8.2.x code and then reload the firewall. Hopefully there is nothing like boot rom upgrade that requires intermediate code?
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...