Friday, February 7, 2020

Do I need my ASA Flash contents backing up?

Hi all,

Quick question as my Google-Fu has failed me... We had 2 x 5516x ASAs providing our external access, one of them recently failed and was replaced.

We restored the running config from our SolarWinds NCM backup, then we copied the contents of the Flash: from the still-working ASA to get ASDM and anyconnect versions consistent across the two ASAs, but there was also a bunch of XML files relating to VPN profiles. This sparked a discussion; "should we have been taking a full backup of the ASA's Flash:?"

The anyconnect and ASDM packages are easily enough available so we're more interested in the contents of the XMLs and any other configuration that's not stored in the running config. It's been suggested that pasting in the running config will generate those XML files should they be missing, but there's the concern that without those files and just the running config backup we wouldn't have our full service restored.

Does anyone else backup their ASA Flash: contents? Know of any Cisco whitepapers that advise if it is/isn't required.

Thanks in advance guys.



No comments:

Post a Comment