Cisco Cisco ASA 5555-X Adaptive Security Appliance 發佈版本通知
2
Release Notes for the Cisco ASA Device Package Software, Version 1.2(1) for ACI
New Features
New Features
We have added support for the following:
•
Dynamic routing (as supported by the APIC)
–
BGP (IPv4 and IPv6)
–
OSPF (OSPFv2 and OSPFv3)
•
Multiple contexts
•
Configuring same-security-traffic-permit inter-interface
•
Configuring direct failover links that do not use the ACI fabric
•
NAT net-to-net option
•
Redirecting ASA traffic to the ASA FirePOWER module using the sfr command
Note
OSPFv3 requires ASA release 9.0(1) or above
BGP (IPv4) requires ASA release 9.2(1) or above
BGP (IPv6) requires ASA release 9.3(2) or above
BGP (IPv4) requires ASA release 9.2(1) or above
BGP (IPv6) requires ASA release 9.3(2) or above
The following figure shows the how to set up the APIC to access the ASA. For an ASA in multi-context
mode, the management IP address of the cluster should be that of the admin context of the ASA, and the
management IP address of Device 1 should be that of the target user context. (The admin context can be
the target user context as well.)
mode, the management IP address of the cluster should be that of the admin context of the ASA, and the
management IP address of Device 1 should be that of the target user context. (The admin context can be
the target user context as well.)
Each context must be defined as its own APIC cluster. Multiple contexts within an ASA cannot be
represented under a single cluster.
represented under a single cluster.