Примечания к выпуску для Cisco Cisco ASA 5555-X Adaptive Security Appliance - No Payload Encryption

Скачать
Страница из 24
 
4
Release Notes for Cisco ASDM, Version 6.2(x)
OL-18973-03
  New Features
supported version of ASDM for each ASA version; this version is the one where support was added). 
Although the specific information about the ASDM GUI might be inaccurate in that guide, the platform 
feature set is documented correctly.
New Features
This section includes the following topics:
New Features in ASDM 6.2(5)/ASA 8.2(2)
Released: January 11, 2010
 lists the new features for ASA Version 8.2(2)/ASDM Version 6.2(5).
Table 2
New Features for ASA Version 8.2(2)/ASDM Version 6.2(5)
Feature
Description
Remote Access Features
Scalable Solutions for 
Waiting-to-Resume 
VPN Sessions
An administrator can now keep track of the number of users in the active state and can look at the 
statistics. The sessions that have been inactive for the longest time are marked as idle (and are 
automatically logged off) so that license capacity is not reached and new users can log in.
The following screen was modified: Monitoring > VPN > VPN Statistics > Sessions.
Also available in Version 8.0(5).
Application Inspection Features
Inspection for 
IP Options
You can now control which IP packets with specific IP options should be allowed through the 
adaptive security appliance. You can also clear IP options from an IP packet, and then allow it 
through the adaptive security appliance. Previously, all IP options were denied by default, except 
for some special cases.
Note
This inspection is enabled by default.  Therefore, the adaptive security appliance allows 
RSVP traffic that contains packets with the Router Alert option (option 20) when the 
adaptive security appliance is in routed mode.
The following screens were introduced:
Configuration > Firewall > Objects > Inspect Maps > IP-Options
Configuration > Firewall > Service Policy > Add/Edit Service Policy Rule > Rule Actions > 
Protocol Inspection