Referencias:
Descargas: ASA 8.4(2) y ASDM 6.4(7):

Plataforma: Windows 7 SP1 Ultimate
Lo primero es configurar en el GNS3 el emulador Quemu para el Cisco ASA:
Menu: Edit > Preferences > Quemu > ASA:
Y parametrizar: Usaré 1GB de RAM (con 512MB no arrancaba correctamente)
Identifier Name: asa-842-1
RAM: 1024 MB
Number of NICs: 6
NIC Mode: e1000
Qemu options: -vnc none -vga none -m 1024 -icount auto -hdachs 980,16,32
Initrd: H:\IOS\ASA\asa842-initrd.gz
Kernel: H:\IOS\ASA\asa842-vmlinuz
Kernel cmd line: -append ide_generic.probe_mask=0×01 ide_core.chs=0.0:980,16,32 auto nousb console=ttyS0,9600 bigphysarea=65536

Salvamos ( botón save ), aplicamos (apply) y OK.
Tras esto, en el editor de topología del GNS3 arastramos un Firewall ASA y construimos la topología que nos interese. Ojo, que la interfaz de gestión por donde accederemos al ASDM ( https://ip ) debe de ser la 0/0, en este caso la GigabitEthernet 0 (Gi0) (o la denominada e0 según la rotula GNS3)

En mi caso conecto el ASA a un switch ethernet y este a una nube (cloud) que es la nic ethernet de mi PC

Arrancamos los dispositivos y abrimos una consola del ASA (tarda unos minutos en ponerse operativo)
done
Freeing initrd memory: 22953k freed
platform rtc_cmos: registered platform RTC device (no PNP device found)
highmem bounce pool size: 64 pages
HugeTLB registered 4 MB page size, pre-allocated 0 pages
bigphysarea: Allocated 16384 pages at 0xe0000000.
msgmni has been set to 668
io scheduler noop registered
io scheduler anticipatory registered (default)
io scheduler deadline registered
io scheduler cfq registered
pci 0000:00:00.0: Limiting direct PCI/PCI transfers
pci 0000:00:01.0: PIIX3: Enabling Passive Release
pci 0000:00:01.0: Activating ISA DMA hang workarounds
Serial: 8250/16550 driver, 4 ports, IRQ sharing disabled
serial8250: ttyS0 at I/O 0x3f8 (irq = 4) is a 16550A
loop: module loaded
pcnet32.c:v1.35 21.Apr.2008 [email protected]
tun: Universal TUN/TAP device driver, 1.6
tun: (C) 1999-2004 Max Krasnyansky <[email protected]>
Uniform Multi-Platform E-IDE driver
ide_generic: please use “probe_mask=0x3f” module parameter for probing all legacy ISA IDE ports
ide-gd driver 1.18
TCP cubic registered
NET: Registered protocol family 17
RPC: Registered udp transport module.
RPC: Registered tcp transport module.
802.1Q VLAN Support v1.8 Ben Greear <[email protected]>
All bugs added by David S. Miller <[email protected]>
TIPC: Activated (version 1.6.4 compiled Jun 15 2011 17:18:15)
NET: Registered protocol family 30
TIPC: Started in single node mode
Using IPI Shortcut mode
Freeing unused kernel memory: 156k freed
Write protecting the kernel text: 1716k
Write protecting the kernel read-only data: 504k
Clocksource tsc unstable (delta = 194037368 ns)
Starting kernel event manager…
Loading hardware drivers…
Intel(R) PRO/1000 Network Driver – version 7.3.21-k3-NAPI
Copyright (c) 1999-2006 Intel Corporation.
e1000 0000:00:02.0: found PCI INT A -> IRQ 9
e1000: 0000:00:02.0: e1000_probe: (PCI:33MHz:32-bit) 00:ab:cd:92:52:00
e1000: eth0: e1000_probe: Intel(R) PRO/1000 Network Connection
e1000 0000:00:03.0: found PCI INT A -> IRQ 11
e1000: 0000:00:03.0: e1000_probe: (PCI:33MHz:32-bit) 00:00:ab:c1:32:01
e1000: eth1: e1000_probe: Intel(R) PRO/1000 Network Connection
e1000 0000:00:04.0: found PCI INT A -> IRQ 9
e1000: 0000:00:04.0: e1000_probe: (PCI:33MHz:32-bit) 00:00:ab:03:83:02
e1000: eth2: e1000_probe: Intel(R) PRO/1000 Network Connection
e100: Intel(R) PRO/100 Network Driver, 3.5.23-k6-NAPI
e100: Copyright(c) 1999-2006 Intel Corporation
!!! …..
loaded.
Initializing random number generator… done.
Starting network…
e1000: eth0 NIC Link is Up 1000 Mbps Full Duplex, Flow Control: RX
device eth0 entered promiscuous mode
e1000: eth1 NIC Link is Up 1000 Mbps Full Duplex, Flow Control: RX
device eth1 entered promiscuous mode
e1000: eth2 NIC Link is Up 1000 Mbps Full Duplex, Flow Control: RX
device eth2 entered promiscuous mode
!!! ………..
Initializing partition – done!
Clocksource tsc unstable (delta = 191070273 ns)
Initializing partition - hda: hda1
done!
mkdosfs 2.11 (12 Mar 2005)
System tables written to disk
dosfsck 2.11, 12 Mar 2005, FAT32, LFN
Starting check/repair pass.
Starting verification pass.
/dev/hda1: 0 files, 0/65463 clusters
dosfsck(/dev/hda1) returned 0
FAT: “posix” option is obsolete, not supported now
TIPC: Started in network mode
TIPC: Own node address <1.1.1>, network identity 1234
TIPC: Enabled bearer <eth:tap0>, discovery domain <1.1.0>, priority 10
msrif: module license ‘Cisco Systems, Inc’ taints kernel.
msrif module loaded.
grep: /mnt/disk0/.private/startup-config: No such file or directory
Starting Likewise Service Manager
Processor memory 650117120, Reserved memory: 62914560
WARNING: LINA Monitor notification queue not created
No such file or directory
IMAGE ERROR: An error occurred when reading the controller type
Total NICs found: 6
secstore_buf_fill: Error reading secure store - buffer 0xddfffb08, size 0×14
key_nv_init: read returned error 1, len 129
L4TM: Unknown ASA Model
INFO: Unable to read firewall mode from flash
Writing default firewall mode (single) to flash
Verify the activation-key, it might take a while…
Failed to retrieve permanent activation key.
Running Permanent Activation Key: 0×00000000 0×00000000 0×00000000 0×00000000 0×00000000
The Running Activation Key is not valid, using default settings:
Licensed features for this platform:
Maximum Physical Interfaces : Unlimited perpetual
Maximum VLANs : 100 perpetual
Inside Hosts : Unlimited perpetual
Failover : Disabled perpetual
VPN-DES : Disabled perpetual
VPN-3DES-AES : Disabled perpetual
Security Contexts : 0 perpetual
GTP/GPRS : Disabled perpetual
AnyConnect Premium Peers : 5000 perpetual
AnyConnect Essentials : Disabled perpetual
Other VPN Peers : 5000 perpetual
Total VPN Peers : 0 perpetual
Shared License : Disabled perpetual
AnyConnect for Mobile : Disabled perpetual
AnyConnect for Cisco VPN Phone : Disabled perpetual
Advanced Endpoint Assessment : Disabled perpetual
UC Phone Proxy Sessions : 2 perpetual
Total UC Proxy Sessions : 2 perpetual
Botnet Traffic Filter : Disabled perpetual
Intercompany Media Engine : Disabled perpetual
This platform has an ASA 5520 VPN Plus license.
Cisco Adaptive Security Appliance Software Version 8.4(2)
_le_open: fd:4, name:eth0
—Device eth0 (fd: 4) opened succesful!
_le_open: fd:8, name:eth1
—Device eth1 (fd: 8) opened succesful!
_le_open: fd:9, name:eth2
—Device eth2 (fd: 9) opened succesful!
_le_open: fd:10, name:eth3
—Device eth3 (fd: 10) opened succesful!
_le_open: fd:11, name:eth4
—Device eth4 (fd: 11) opened succesful!
_le_open: fd:12, name:eth5
—Device eth5 (fd: 12) opened succesful!
****************************** Warning *******************************
This product contains cryptographic features and is
subject to United States and local country laws
governing, import, export, transfer, and use.
Delivery of Cisco cryptographic products does not
imply third-party authority to import, export,
distribute, or use encryption. Importers, exporters,
distributors and users are responsible for compliance
with U.S. and local country laws. By using this
product you agree to comply with applicable laws and
regulations. If you are unable to comply with U.S.
and local laws, return the enclosed items immediately.
A summary of U.S. laws governing Cisco cryptographic
products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by
sending email to [email protected]
******************************* Warning *******************************
Copyright (c) 1996-2011 by Cisco Systems, Inc.
Restricted Rights Legend
Use, duplication, or disclosure by the Government is
subject to restrictions as set forth in subparagraph
(c) of the Commercial Computer Software – Restricted
Rights clause at FAR sec. 52.227-19 and subparagraph
(c) (1) (ii) of the Rights in Technical Data and Computer
Software clause at DFARS sec. 252.227-7013.
Cisco Systems, Inc.
170 West Tasman Drive
San Jose, California 95134-1706
config_fetcher: channel open failed
ERROR: MIGRATION – Could not get the startup configuration.
COREDUMP UPDATE: open message queue fail: No such file or directory/2
INFO: MIGRATION – Saving the startup errors to file ‘flash:upgrade_startup_errors_201306071139.log’
Type help or ‘?’ for a list of available commands.
ciscoasa>
Si todo ha ido bien nos debe aparecer el prompt ciscoasa>
Vamos a configurarlo
ciscoasa> enable
!!! cuando pregunte la pass pulsar enter (no se ha configurado todavia pass de enable)
Password:
ciscoasa# config terminal
ciscoasa(config)#
!!! Nos pregunta si deseamos enviar informes anónimos a Cisco, contesto No: N
***************************** NOTICE *****************************
Help to improve the ASA platform by enabling anonymous reporting,
which allows Cisco to securely receive minimal error and health
information from the device. To learn more about this feature,
please visit: http://www.cisco.com/go/smartcall
Would you like to enable anonymous error reporting to help improve
the product? [Y]es, [N]o, [A]sk later: N
In the future, if you would like to enable this feature,
issue the command "call-home reporting anonymous".
Please remember to save your configuration.
ciscoasa(config)#
!!! Configuro una licencia
ciscoasa(config)# activation-key 0x4a3ec071 0x0d86fbf6 0x7cb1bc48 0x8b48b8b0 0xf317c0b5
Validating activation key. This may take a few minutes...
Failed to retrieve permanent activation key.
Failover is different.
running permanent activation key: Restricted(R)
new permanent activation key: Unrestricted(UR)
WARNING: The running activation key was not updated with the requested key.
Proceed with update flash activation key? [confirm] Yes
The flash permanent activation key was updated with the requested key,
and will become active after the next reload.
!!! configuramos ip y nombre interfaz GigaBitEthernet e0
ciscoasa(config)# int GigabitEthernet0
ciscoasa(config-if)# ip add 192.168.2.55 255.255.255.0
ciscoasa(config-if)# no sh
ciscoasa(config-if)# nameif asafirewall
INFO: Security level for "asafirewall" set to 0 by default.
ciscoasa(config-if)# exit
!!! habilitamos servidor http
ciscoasa(config)# http server enable
!!! especificamos quien se puede conectar al servidor http, en este caso todo el segmento 192.168.2.0/24
ciscoasa(config)# http 192.168.2.0 255.255.255.0 asafirewall
!!! creamos un usuario y su password "laclave", con máximo nivel de privilegios
ciscoasa(config)# username operador password laclave privilege 15
!!! compruebo que hay en la flash
ciscoasa(config)# dir
Directory of disk0:/
2 drwx 4096 11:38:54 Jun 07 2013 log
9 drwx 4096 11:39:00 Jun 07 2013 coredumpinfo
11 -rwx 196 11:39:00 Jun 07 2013 upgrade_startup_errors_201306071139.log
268136448 bytes total (268091392 bytes free)
!!! copiamos ASDM en la flash vía servidor web
Utilizo el servidor http de la utilidad MobaXterm v6.3

!!! copiamos ASDM en la flash vía servidor web
ciscoasa(config)# copy http: flash:
Address or name of remote host []? 192.168.2.2
Source filename []? asdm-647.bin
Destination filename [asdm-647.bin]?
Accessing http://192.168.2.2/asdm-647.bin...!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
Writing current ASDM file disk0:/asdm-647.bin
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
ciscoasa(config)# dir
Directory of disk0:/
2 drwx 4096 11:38:54 Jun 07 2013 log
9 drwx 4096 11:39:00 Jun 07 2013 coredumpinfo
11 -rwx 196 11:39:00 Jun 07 2013 upgrade_startup_errors_201306071139.log
15 -rwx 17902288 12:01:59 Jun 07 2013 asdm-647.bin
268136448 bytes total (250187776 bytes free)
ciscoasa(config)# end
!!! Copiamos la configuración en la de arranque
ciscoasa# copy run st
Source filename [running-config]?
Cryptochecksum: 4deb8e2f 565f074e 2683ab21 638e2d9e
2340 bytes copied in 0.950 secs
!!! Tambien valdria wr
ciscoasa# wr
Building configuration...
Cryptochecksum: 4deb8e2f 565f074e 2683ab21 638e2d9e
2340 bytes copied in 0.870 secs
[OK]
!! reiniciamos
ciscoasa# reload
Proceed with reload? [confirm] Yes
***
*** --- START GRACEFUL SHUTDOWN ---
Shutting down isakmp
Shutting down webvpn
Shutting down File system
***
*** --- SHUTDOWN NOW ---
REBOOT: open message queue fail: No such file or directory/2
REBOOT: enforce reboot...
restarting system
machine restart
...
Nos conectamos via navegador a https://192.168.2.55 y accedemos al configurador del ASDM

Y lanzo la guia o asistente de comienzo (Run startup wizard)


Y ya tenemos instalado un Cisco ASA con ASDM en GNS3
Y voila