EasyManuals Logo

Cisco ASA Series User Manual

Cisco ASA Series
2164 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #78 background imageLoading...
Page #78 background image
1-16
Cisco ASA Series CLI Configuration Guide
Chapter 1 Introduction to the Cisco ASA
New Features
Remote Access VPN support for IPv6:
ASA VPN Load Balancing
Clients with IPv6 addresses can make AnyConnect connections through the
public-facing IPv6 address of the ASA cluster or through a GSS server.
Likewise, clients with IPv6 addresses can make AnyConnect VPN connections
through the public-facing IPv4 address of the ASA cluster or through a GSS
server. Either type of connection can be load-balanced within the ASA cluster.
For clients with IPv6 addresses to successfully connect to the ASAs
public-facing IPv4 address, a device that can perform network address
translation from IPv6 to IPv4 needs to be in the network.
This feature can be used by clients configured to use the SSL or IKEv2/IPsec
protocol.
We modified the following commands: show run vpn load-balancing.
We modified the following screen: Configuration > Remote Access VPN >
Load Balancing.
Remote Access VPN support for IPv6:
Dynamic Access Policies support IPv6
attributes
When using ASA 9.0 or later with ASDM 6.8 or later, you can now specify
these attributes as part of a dynamic access policy (DAP):
• IPv6 addresses as a Cisco AAA attribute
• IPv6 TCP and UDP ports as part of a Device endpoint attribute
• Network ACL Filters (client)
This feature can be used by clients configured to use the SSL or IKEv2/IPsec
protocol.
We modified the following screens:
Configuration > Remote Access VPN > Network (Client) Access > Dynamic
Access Policies > Add > Cisco AAA attribute
Configuration > Remote Access VPN > Network (Client) Access > Dynamic
Access Policies > Add > Device > Add Endpoint Attribute
Configuration > Remote Access VPN > Network (Client) Access > Dynamic
Access Policies > Network ACL Filters (client)
Configuration > Remote Access VPN > Network (Client) Access > Dynamic
Access Policies > Webtype ACL Filters (clientless)
Remote Access VPN support for IPv6:
Session Management
Session management output displays the IPv6 addresses in Public/Assigned
address fields for AnyConnect connections, site-to-site VPN connections, and
Clientless SSL VPN connections. You can add new filter keywords to support
filtering the output to show only IPv6 (outside or inside) connections. No
changes to IPv6 User Filters exist.
This feature can be used by clients configured to use the SSL protocol. This
feature does not support IKEv2/IPsec protocol.
We modified the following command: show vpn-sessiondb.
We modified these screen: Monitoring > VPN > VPN Statistics > Sessions.
Table 1-5 New Features for ASA Version 9.0(1)/ASDM Version 7.0(1) (continued)
Feature Description

Table of Contents

Other manuals for Cisco ASA Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco ASA Series and is the answer not in the manual?

Cisco ASA Series Specifications

General IconGeneral
ModelASA 5505
InterfacesVaries by model (Fast Ethernet, Gigabit Ethernet, 10 Gigabit Ethernet, etc.)
High AvailabilityActive/Standby or Active/Active (varies by model)
Power SupplyVaries by model
Form FactorVaries by model
Operating SystemCisco ASA Software
IPsec VPNSupported
SSL VPNSupported
IPS ThroughputVaries by model

Related product manuals