1-23
Cisco ASA Series CLI Configuration Guide
Chapter 1 Introduction to the Cisco ASA
New Features
Support for VPN on the ASASM The ASASM now supports all VPN features.
Multiple Context Mode Features
Site-to-Site VPN in multiple context mode Site-to-site VPN tunnels are now supported in multiple context mode.
New resource type for site-to-site VPN
tunnels
New resource types, vpn other and vpn burst other, were created to set the
maximum number of site-to-site VPN tunnels in each context.
We modified the following commands: limit-resource, show resource types,
show resource usage, show resource allocation.
We modified the following screen: Configuration > Context Management >
Resource Class > Add Resource Class.
Dynamic routing in Security Contexts EIGRP and OSPFv2 dynamic routing protocols are now supported in multiple
context mode. OSPFv3, RIP, and multicast routing are not supported.
New resource type for routing table entries A new resource class, routes, was created to set the maximum number of
routing table entries in each context.
We modified the following commands: limit-resource, show resource types,
show resource usage, show resource allocation.
We modified the following screen: Configuration > Context Management >
Resource Class > Add Resource Class.
Mixed firewall mode support in multiple
context mode
You can set the firewall mode independently for each security context in
multiple context mode, so some can run in transparent mode while others run
in routed mode.
We modified the following command: firewall transparent.
You cannot set the firewall mode in ASDM; you must use the command-line
interface.
Also available in Version 8.5(1).
Module Features
ASA Services Module support on the Cisco
7600 switch
The Cisco 7600 series now supports the ASASM. For specific hardware and
software requirements, see:
http://www.cisco.com/en/US/docs/security/asa/compatibility/asamatrx.html.
Table 1-5 New Features for ASA Version 9.0(1)/ASDM Version 7.0(1) (continued)
Feature Description