Cisco Cisco ASA 5555-X Adaptive Security Appliance
About the ASA REST API v1.3.2
Supported ASA Features
Supported ASA Features
22
TwiceNAT (Manual NAT)
Before NAT and After NAT are separated into two lists and have their own URIs. Moving a Before NAT rule to an After
NAT rule, or vice-versa is not supported.
Limitations:
N/A
Objects
/api/objects/
Objects are re-usable configuration components. They can be defined and used in ASA configurations in the place of in-
line IP addresses, services, names, and so on. The REST API provides support for the following types of objects:
• Extended ACLs. Similar to access rules, extended ACLs are created when their first ACE is created, and are
deleted when their last ACE is removed.
• Local users and user groups.
• Network objects and object groups.
• Network services (including predefined network services) and server groups. Predefined service objects cannot
be changed or deleted. They can be used to cut and paste in-line services, or when creating a service object.
• Regular expressions.
• Security object groups.
• Time ranges.
• User objects.
Similarly to ASDM, the REST API supports use of in-line objects and object groups in access, NAT and service-policy
rules.
Limitations:
Only local users are supported.
Protocol Timeouts
/api/firewall/timeouts
APIs to configure global protocol and session timeouts.
Limitations:
N/A
Routing
/api/routing/static