Adaptive Security Device Manager Hot Issues

  1. Access rule description replication issue, Fixed CSCtn88072 - Symptom: description (remark) line for rule is replicated multiple times.
    Conditions: using same text on multiple lines of the description (remark) field.
    Workaround: don't use same text on multiple lines of the rule description (remark).
  2. ASDM: Backup/restore of startup-config breaks hidden passwords and keys, Open CSCtf33394 - Symptom: When doing a backup and restore of the ASA's startup config via ASDM, keys and passwords that are normally obfuscated by asterisks (*****) are replaced with the literal string "*****" and become invalid after a reload. This includes (but is not limited to) the following ASA features: Failover keys AAA server keys and LDAP passwords VPN pre-shared keys SNMP community strings
    Conditions: The startup-config must be both backed up and restored via ASDM, and the ASA must be reloaded.
    Workaround: Perform the backup and restore manually via the CLI. Backup: copy startup-config Restore: copy startup-config reload
  3. ASDM Should not Push 'NFS' Port-Objects to FWSM and Earlier ASA/PIX SW, Fixed CSCsz48612 - Symptom: When managing a Firewall Service Module (FWSM) with Adaptive Security Device Manager (ASDM), creating an Access Control List (ACL) or object-group involving Network File System (NFS) port TCP/2049 results in an error message. Same problem occurs with Adaptive Security Appliance (ASA) and PIX Firewall software before 8.0(3).
    Workaround: Use Command Line Interface (CLI) to configure the relevant ACE or object by referencing port TCP/2049.
  4. Java exception for read-only user priv 5 - Access rules panel hangs, Fixed CSCtx73665 - Symptom: Access-rules panel hangs at FWSM ASDM, shows empty
    Conditions: FWSM ASDM when LOCAL authorization enabled with privilege 5 read-only user. Java exception can happen.
    Workaround: none. restart ASDM
  5. ASDM: DAP Policy name can not be changed once created, Terminated CSCtx69529 - Symptom: In ASDM DAP Policy name can not be changed once the policy is created
    Conditions: Occurs once the DAP policy is created
    Workaround: None as of now
  6. ACL order in ASDM is not matching CLI, Fixed CSCtx46042 - Symptom: ACL order in ASDM is not matching order in CLI
    Conditions: ASASM and ASDM 6.5.1
    Workaround: Use CLI to manage ASASM
  7. DOC : Need to remove CSCtt45459 from Resolved Caveats list, Fixed CSCtx42366 - Symptom: There is CSCtt45459 in Resolved Caveats list of Release-Note of ASDM 6.4(x). http://www.cisco.com/en/US/customer/docs/security/asa/asa84/asdm64/release/notes/asdmrn64.html But CSCtt45459 is re-opened and have not fixed yet.
    Conditions:
    Workaround:
  8. ASDM not sending right command for deleting dhcp server from the list, Fixed CSCtx70202 - Symptom: Not able to delete the dhcp server value in case we have multiple dhcp servers defined under the tunnel-group
    Conditions: Using ASDM
    Workaround: Use CLI
  9. ACL Remarks multiply in configuration, CSCtx45992 - Symptom: ACL remarks that are being deleted from ASDM seem to multiply
    Conditions: ASASM and ASDM 6.5.1
    Workaround: Use command line to manage configuration
  10. user specific info for user specific VPN connection, Fixed CSCtx29805 - Symptom: User specific VPN connection info is not showing correct statistics
    Conditions: This is seen when you apply a filter and select a user specifc VPN connection statistic in ASDM.
    Workaround: None known at this time.

Speak Your Mind