ASA security context failover question

Unanswered Question
Oct 13th, 2008

hi,

my outside interface is not synchronizing properly, can someone let me know what I could be missing?

secure1/production# sh fail

Failover On

Last Failover at: 08:14:52 UTC Oct 11 2008

This context: Failed

Active time: 0 (sec)

Interface outside (xxx.xxx.136.18): Failed (Waiting)

Interface inside (10.10.3.10): Normal

Peer context: Active

Active time: 2428 (sec)

Interface outside (xxx.xxx.136.29): Normal (Waiting)

Interface inside (10.10.3.1): Normal

Stateful Failover Logical Update Statistics

Status: Configured.

Stateful Obj xmit xerr rcv rerr

RPC services 0 0 0 0

TCP conn 0 0 0 0

UDP conn 0 0 1913 0

ARP tbl 0 0 15 0

Xlate_Timeout 0 0 0 0

SIP Session 0 0 0 0

secure1/production#

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Matthew Warrick Tue, 10/14/2008 - 08:25

At this point you need to also examine the state of the port on the switch side that this firewall is connected to. Is it up/up? All there excessive errors on either side of the link?

Typically when an interface is "failed" there is some kind of layer 2 connectivity problem.

Actions

This Discussion