Solved

Cisco ASA 5505 Security Bundle SSL VPN Licenses

Posted on 2013-10-28
3
1,274 Views
Last Modified: 2013-10-29
I was wondering if anyone knew the details of the licensing for the Cisco ASA 5505 with the security bundle.  

What I am asking in particular is if the SSL VPNs that come with it (Cisco states 2 SSL VPN peers) can be used by a multitude of users, but if the firewall will accept any two users concurrently.  Or is it license or certificate based and can only be installed on two machines (mobile or whatever)

Thanks!
0
Comment
Question by:adrienne73
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
3 Comments
 
LVL 18

Assisted Solution

by:fgasimzade
fgasimzade earned 50 total points
ID: 39608353
2 SSL VPN license means 2 concurrent connections
0
 
LVL 64

Accepted Solution

by:
btan earned 300 total points
ID: 39608490
For Cisco ASA 5505, any security bundle [1] example such as ASA5505-SEC-BUN-K9, it simply means 10 IPSec VPN peers and 2 SSL VPN peers. The 2 SSL VPN peers mean 2 concurrent SSL VPN connections (AnyConnect or Clientless/Webvpn).

 If you need more SSL VPN concurrent users, then you can add on with either ASA5500-SSL-10 or ASA5500-SSL-25 (max). Understand [2] for 5505, its Maximum concurrent AnyConnect or clientless VPN sessions and Maximum concurrent site-to-site and IPsec IKEv1 VPN sessions are both 25


[1] http://www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/prod_brochure0900aecd80402e36.html
[2] http://www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/prod_brochure0900aecd80402e39.html

In short, the base default is 2 x concurrent users to ASA at any one time.
Below are note for the limit description for info on IPSEC as well as SSL VPN

e.g.  The total concurrent IPsec and SSL (clientless and tunnel-based) VPN sessions may not exceed the maximum concurrent IPsec session count.

e.g. The SSL/IPsec IKEv2 VPN session number (clientless or AnyConnect client) may also not exceed the number of licensed sessions on the device.
0
 

Author Closing Comment

by:adrienne73
ID: 39609267
I had to award the first answer with points, since my question was answered, but the second answer was very comprehensive, therefore more helpful.
0

Featured Post

Ready to trade in that old firewall?

Whether you need to trade-up to a shiny new Firebox or just ready to upgrade from whatever appliance you're using now, WatchGuard has the right appliance for you! Find your perfect Firebox today with appliance sizing tool!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
Use of TCL script on Cisco devices:  - create file and merge it with running configuration to apply configuration changes
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses
Course of the Month8 days, 17 hours left to enroll

617 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question