9
Release Notes for the Cisco ASA 5500 Series, Version 8.2(x)
OL-18971-02
New Features
Botnet Traffic Filter
Enhancements
The Botnet Traffic Filter now supports automatic blocking of blacklisted traffic based on the threat
level. You can also view the category and threat level of malware sites in statistics and reports.
Reporting was enhanced to show infected hosts. The 1 hour timeout for reports for top hosts was
removed; there is now no timeout.
The following commands were introduced or modified: dynamic-filter ambiguous-is-black,
dynamic-filter drop blacklist, show dynamic-filter statistics, show dynamic-filter reports
infected-hosts, and show dynamic-filter reports top.
Connection timeouts for
all protocols
The idle timeout was changed to apply to all protocols, not just TCP.
The following command was modified: set connection timeout.
Routing Features
DHCP RFC
compatibility (rfc3011,
rfc3527) to resolve
routing issues
This enhancement introduces adaptive security appliance support for DHCP RFCs 3011 (The IPv4
Subnet Selection Option) and 3527 (Link Selection Sub-option for the Relay Agent Information
Option). For each DHCP server configured for VPN clients, you can now configure the adaptive
security appliance to send the Subnet Selection option or the Link Selection option.
The following command was modified: dhcp-server [subnet-selection | link-selection].
Also available in Version 8.0(5).
High Availablility Features
IPv6 Support in Failover
Configurations
IPv6 is now supported in failover configurations. You can assign active and standby IPv6 addresses
to interfaces and use IPv6 addresses for the failover and Stateful Failover interfaces.
The following commands were modified: failover interface ip, ipv6 address.
No notifications when
interfaces are brought up
or brought down during
a switchover event
To distinguish between link up/down transitions during normal operation from link up/down
transitions during failover, no link up/link down traps are sent during a failover. Also, no syslog
messages about link up/down transitions during failover are sent.
Also available in Version 8.0(5).
AAA Features
100 AAA Server Groups You can now configure up to 100 AAA server groups; the previous limit was 15 server groups.
The following command was modified: aaa-server.
Table 3 New Features for ASA Version 8.2(2) (continued)
Feature Description
Comments to this Manuals