Unable to Login Standby PIX

Unanswered Question
Apr 19th, 2007
User Badges:

I have a fail-over pair. I can get ssh/https into the primary but not the secondary. I can only get into secondary after taking primary off-line. There's no VPN on the box. Could someone please give me some hints why I can't get to the secondary?

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Fernando_Meza Thu, 04/19/2007 - 22:02
User Badges:
  • Gold, 750 points or more

hi .. You should be able to access it as long as you are using the standby IP address ..

I hope it helps .. please rate it if it does !!!

mark.j.hodge Fri, 04/20/2007 - 03:08
User Badges:
  • Bronze, 100 points or more

Are you using Cisco ACS or other RADIUS/TACACS server? If so make sure the secondary address is allowed to authenticate in the configuration.

musa19ie Tue, 04/24/2007 - 01:12
User Badges:

first you have to get sure that you can access the standby using the standby ip address, for e.g ping it.

for the ssh you have to login to the firewall and generate rsa key paires. because the each firewall on the failover set uses its own key paires, associated to its ip's.


This Discussion