Version recommendation for ASA-5510 (Bases license) + AIP-SSM-10
I need your advice and recommendation related to the ASA and IPS version
I am going to have more then a half a dozen ASA-5510(Baseline) with AIP-SSM-10 implmentation in next 2 days.
Which ASA version is recommended from CISCO version 7.x or Version 8.x. One thing I decided is to go for the IPS version 6.1 (for AIP-SSM10). is there any specific ASA version I should run inorder to run IPS-6.1
For ASA there are couple designations,the GD (General Deployment) based on designation is most stable code 7.0(7), and ED early deployement codes 7.2.x 8.0.x etc.. ED means has not reached GD stage which there are still opened caveats to be worked on and resolved. Running specific ASA codes and upgrading depends on whether end user has encounter a problem caused by a known bug requiring code upgrade to fix.
In my opinion use the latest ASA code 8.0(3).
You may check code realse notes to learn more on opened and resolved caveats.
Re: Version recommendation for ASA-5510 (Bases license) + AIP-SS
Another way to learn which code to realy use is to read release notes open Caveats from the link I provided, for every release code there is a list of opened and resolved bugs, you may go over opened caveats and see if there are any issues reported on asa codes and AIP-SSM , the same goes for IPS 6.1 release notes, it contains a list of same information.
Ultimately if still unsure TAC is always there to help you.
BenefitsDocumentationPrerequisiteImage Download LinksLimitationsSupported PlatformsLicense RequirementsTopologyStep-By-Step ConfigurationConfigure Virtual ServiceActivate the virtual service and configure guest IPsConfiguring UTD (Service Plane)Configurin...
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...