EasyManuals Logo

Cisco ASA 5508-X Configuration Guide

Cisco ASA 5508-X
428 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #13 background imageLoading...
Page #13 background image
CHAPTER
2-1
Cisco ASA Series Firewall CLI Configuration Guide
2
Objects for Access Control
Objects are reusable components for use in your configuration. You can define and use them in Cisco
ASA configurations in the place of inline IP addresses, services, names, and so on. Objects make it easy
to maintain your configurations because you can modify an object in one place and have it be reflected
in all other places that are referencing it. Without objects you would have to modify the parameters for
every feature when required, instead of just once. For example, if a network object defines an IP address
and subnet mask, and you want to change the address, you only need to change it in the object definition,
not in every feature that refers to that IP address.
Guidelines for Objects, page 2-1
Configure Objects, page 2-2
Monitoring Objects, page 2-10
History for Objects, page 2-11
Guidelines for Objects
IPv6 Guidelines
Supports IPv6 with the following restrictions:
The ASA does not support IPv6 nested network object groups, so you cannot group an object with
IPv6 entries under another IPv6 object group.
You can mix IPv4 and IPv6 entries in a network object group; you cannot use a mixed object group
for NAT.
Additional Guidelines and Limitations
Objects must have unique names, because objects and object groups share the same name space.
While you might want to create a network object group named “Engineering” and a service object
group named “Engineering,” you need to add an identifier (or “tag”) to the end of at least one object
group name to make it unique. For example, you can use the names “Engineering_admins” and
“Engineering_hosts” to make the object group names unique and to aid in identification.
Object names are limited to 64 characters, including letters, numbers, and these characters:
.!@#$%^&()-_{}. Object names are case-sensitive.
You cannot remove an object or make an object empty if it is used in a command, unless you enable
forward referencing (the forward-reference enable command).

Table of Contents

Other manuals for Cisco ASA 5508-X

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco ASA 5508-X and is the answer not in the manual?

Cisco ASA 5508-X Specifications

General IconGeneral
Maximum VPN Sessions250
Power SupplyInternal
IPsec VPN Throughput250 Mbps
USB 2.01
Memory4 GB
Flash Memory8 GB
AC Input100-240 VAC
VPN Throughput250 Mbps
Maximum VLANs100
Operating Temperature32 to 104°F (0 to 40°C)
Storage Temperature-13 to 158°F (-25 to 70°C)
Ports8 x 1GE
Security Contexts2
New Connections per Second20, 000
Management Interface1 x GE
Frequency50-60 Hz
New Sessions per Second20, 000
Humidity5% to 95% non-condensing

Related product manuals