About the Author

author photo

Joe Harris, CCIE No. 6200 (R&S, Security & SP) is a Systems Engineer with Cisco Systems® specializing in Security. In addition to authoring Cisco Network Security Little Black Book, Joe has also been a technical reviewer for several Cisco Press publications and written articles, white papers, and presentations on various security technologies. He also assists various Certification Partners by beta testing their newest CCIE certification workbooks and has been recognized by Cisco as an SE Wall of Fame award winner.

See All Posts by This Author

ASA temporary license

You may or may not be aware but the ASA does allow for temporary licenses for certain feature sets in order for you to test these features for an extended period of time (like 30 days). However I’ve received quite a few emails regarding what happens to the ASA after the temporary license for a feature (say SSL VPN) expires. Questions like, how do I go back to the original license that the device came with? or do we have to restart the ASA?

Well here’s what happens, when a time based license expires, the ASA will switch back to the installed permanent license automatically. If no permanent license is available, then the ASA defaults for no license will be set. The device should not require a reboot, unless a feature, like failover, requires a reboot for deactivation. For example. if failover is enabled in the temporary license but not in the permanent license then a reboot will be required. Also all VPN features should not require a reboot….

Post a Response