Cisco Systems OL-16647-01 Network Router User Manual


  Open as PDF
of 1230
 
2-9
Cisco ASDM User Guide
OL-16647-01
Chapter 2 Introduction to the Security Appliance
New Features by Platform Release
New Features in Version 8.0(3)
Table 2-4 lists the new features for Version 8.0(3).
Timeout for SIP
Provisional Media
You can now configure the timeout for SIP provisional media using the timeout
sip-provisional-media command.
In ASDM, see Configuration > Firewall > Advanced > Global Timeouts.
Platform Features
Native VLAN support
for the ASA 5505
You can now include the native VLAN in an ASA 5505 trunk port using the switchport trunk
native vlan command.
Note This feature is not currently supported in ASDM. You can enter this command using the
Tools > Command Line Interface dialog box. For example, to make VLAN 202 a native
VLAN, enter switchport trunk native vlan 202. See the Cisco Security Appliance
Command Reference for more information.
1. This feature is not supported on the PIX security appliance.
Table 2-3 New Features for ASA and PIX Version 8.0(4) (continued)
Feature Description
Table 2-4 New Features for ASA and PIX Version 8.0(3)
Feature Description
AnyConnect RSA SoftID API
Integration
Provides support for AnyConnect VPN clients to communicate directly with RSA SoftID
for obtaining user token codes. It also provides the ability to specify SoftID message
support for a connection profile (tunnel group), and the ability to configure SDI messages
on the security appliance that match SDI messages received through a RADIUS proxy.
This feature ensures the prompts displayed to the remote client user are appropriate for
the action required during authentication and the AnyConnect client responds
successfully to authentication challenges.
IP Address Reuse Delay Delays the reuse of an IP address after it has been returned to the IP address pool.
Increasing the delay prevents problems the security appliance may experience when an
IP address is returned to the pool and reassigned quickly.
In ASDM, see Configure > Remote Access VPN > Network (Client) Access > Address
Assignment > Assignment Policy.
WAAS Inspection Added support for Wide Area Application Services (WAAS) inspection. WAAS gives
branch and remote offices LAN-like access to WAN and MAN services. See the inspect
waas command.
In ASDM, see Configuration > Firewall > Service Policy Rules > Add/Edit Service
Policy Rule > Rule Actions > Protocol Inspection.
DNS Guard Enhancement Added an option to enable or disable DNS guard. When enabled, this feature allows only
one DNS response back from a DNS request.
In ASDM, see Configuration > Firewall > Objects > Inspect maps > DNS.