How The Asa Services Module Works With The Switch - Cisco ASA Series Cli Configuration Manual

Software version 9.0 for the services module
Hide thumbs Also See for ASA Series:
Table of Contents

Advertisement

How the ASA Services Module Works with the Switch

Table 1-5
New Features for ASA Version 9.0(1)/ASDM Version 7.0(1) (continued)
Feature
ASA 5585-X support for the ASA CX
SSP-10 and -20
ASA 5585-X Dual SSP support for the
SSP-10 and SSP-20 (in addition to the
SSP-40 and SSP-60); VPN support for Dual
SSPs
How the ASA Services Module Works with the Switch
You can install the ASASM in the Catalyst 6500 series and Cisco 7600 series switches with Cisco IOS
software on both the switch supervisor and the integrated MSFC.
Note
The Catalyst Operating System (OS) is not supported.
The ASA runs its own operating system.
Cisco ASA Series CLI Configuration Guide
1-24
Description
The ASA CX module lets you enforce security based on the complete context
of a situation. This context includes the identity of the user (who), the
application or website that the user is trying to access (what), the origin of the
access attempt (where), the time of the attempted access (when), and the
properties of the device used for the access (how). With the ASA CX module,
you can extract the full context of a flow and enforce granular policies such as
permitting access to Facebook but denying access to games on Facebook or
permitting finance employees access to a sensitive enterprise database but
denying the same to other employees.
We introduced or modified the following commands: capture, cxsc, cxsc
auth-proxy, debug cxsc, hw-module module password-reset, hw-module
module reload, hw-module module reset, hw-module module shutdown,
session do setup host ip, session do get-config, session do password-reset,
show asp table classify domain cxsc, show asp table classify domain
cxsc-auth-proxy, show capture, show conn, show module, show
service-policy.
We introduced the following screens:
Home > ASA CX Status
Wizards > Startup Wizard > ASA CX Basic Configuration
Configuration > Firewall > Service Policy Rules > Add Service Policy Rule >
Rule Actions > ASA CX Inspection
Also available in 8.4(4.1).
The ASA 5585-X now supports dual SSPs using all SSP models (you can use
two SSPs of the same level in the same chassis). VPN is now supported when
using dual SSPs.
We did not modify any commands.
We did not modify any screens.
Chapter 1
Introduction to the Cisco ASA

Advertisement

Table of Contents
loading

Table of Contents