Create a Cisco Adaptive Security Appliance

A Cisco Adaptive Security Appliance can be ordered and created on Network Edge. Cisco ASAs are self-configured and require you to bring your own license.

This topic demonstrates how to create a single Cisco Adaptive Security Appliance.

  1. Sign in to Equinix Fabric.
  2. From the Network Edge menu, select Create Virtual Device.
  3. In the Select Vendor Packages for your Devices section, locate the Cisco Adaptive Security Appliance card and click See Description.

  4. Click Select and Continue.
  5. Click Create Single Edge Device.

  6. Click Begin Creating Edge Devices.
  7. In the Select Metro section, click a location.
  8. Select a billing account.

    In order to create a device in a specific metro location, you need a billing account for the metro. You can continue without selecting an account, but you won’t be able to create your device.
  9. Click Next: Device Details.

    Device Configuration defaults to Self-configured. Licensing defaults to Bring your own License.

  10. Enter your License Token.

  11. Enter your Smart License URL.
  12. Select the Device Resources (2 cores, 4GB memory; 4 cores, 8GB memory; or 8 cores, 16GB memory).

  13. Select a Software Package.

  14. Select the Software Version.

  15. Enter the details for your device:

    • Device Name – Enter a name for the device.
    • Host Name Prefix – Enter a host name prefix for the primary device.
    • Interfaces – Select the number of interfaces.
    • Device Status Notifications – Enter the email addresses of anyone who should receive email notifications regarding device status and click Add Email(s).
    • (Optional) Purchase Order Number – Enter the PO number.
    • (Optional) Order Reference/Identifier – Enter the order reference number.
  16. Click Next: Additional Services.
    • Add Users – Add a user who will access your device through SSH/HTTPS.
    • SSH Public Keys – Select an existing key or generate a new one.
    • Note: You must access the device with the public key and user name created during device creation. Once connected, you can finish the configuration as needed.

    • Click Add Users to configure user names for SSH and Web-Console access. For Self-configured devices, you need to configure SSH Public Keys to perform password-less authentication. For more information, see Network Edge Device Access.

    • (Optional) RSA Public Keys – Enter an existing RSA Public Key, or click Add New RSA Public Key to generate a new one. See Network Edge Device Access for more information about generating an RSA public key.

    • Diverse Compute from an Existing Single Device – If you already have another single device and you want this new device to exist in a different plane, click Select Diverse From and select the existing device.
    • Add Access IP Addresses – Select an access control list (ACL) template. This template will be applied to the gateway interface connected to the WAN/SSH interface of your VNF. ACL templates control communication from the Internet.
    • Note: By default, the communication required for initial bootstrap (DNS, NTP, License Server communication, SD-WAN controller communication, etc.) is allowed to properly configure the initial VNF configuration. Additional protocols such as SSH need to be intentionally permitted using an ACL template (Custom ACL). If you need to create a template to apply to your device, click Create Access Control List Template. See Configure Access Controls on Virtual Devices for more information.

    • Additional Internet Bandwidth – Add between 25 and 5000 additional Mbps of internet bandwidth (for a fee). 15 Mbps of Internet Bandwidth is included free in the package by default.
    • Additional Internet Bandwidth – Add up to 2001 Mbps of internet bandwidth. (Additional charges applied one time to the primary device.)

    • Term Length – Select a term length. The default is one month.

  1. Click Next: Review.

  2. In the Terms & Conditions box, click Review and Accept Order Terms. Select I have read and understand these terms and click Accept.

  3. Click Create Edge Device.