04-30-2012 10:48 PM - edited 03-11-2019 04:00 PM
HI
I have two Cisco ASA 5540, these ASA running ver 7.2. and used mainly as VPN gateways.
My question is simple, Apart from the extra AnyConnect client functionality and the higher encryption, is there any specific security benefits (related to the VPN use) for upgrading to ver. 8.x ?
Thanks
A.
04-30-2012 10:59 PM
Bug fixes to identified security vulnerabilities.
04-30-2012 11:58 PM
Hi leolaohoo,
thanks for the reply, is there any spesific documents shows these vulnerabilities and there fix in the upgraded versions?
05-01-2012 12:27 PM
Ammar,
Each version has Release Notes. For the ASA they are all posted here.
In each Release Note there is a "Resolved Caveats" sections. That is where the fixes for all problems - vulnerabilities as well as functions/features - are listed.
Besides higher encryption and Anyconnect client, you can also use IKE v2 (as of 8.4(1) ) which is more secure during session setup (apart from the level of encryption). You can also use identity-based features and a host of other features to further secure your remote access VPNs. On the other hand, if what you have now is meeting your needs, the only compelling reasons to upgrade are vulnerability and bug fixes (and perhaps a prettier version of ASDM that will run with the newest Java versions ).
05-01-2012 02:43 PM
thanks for the reply, is there any spesific documents shows these vulnerabilities and there fix in the upgraded versions?
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: