- Gold, 750 points or more
I have a problem where I have put a ASA5500 into transparent mode and only have one access-rule, permit ip any any.
on either side of this firewall I have 2 L3 switches that uses HSRP.
so basically the setup is like this
L3dev1 - ASA - switch - L3dev2
The l3dev1 and 2 are both running HSRP and when connected only through a switch it works just fine.
but when I ad the ASA in the middle they loose sight of eachother and starts to do coups.
There is no problem with "normal" traffic and they can ping and telnet each other but HSRP just goes bad.
is this an arp problem ?
any ideas anyone ?
It is probably the firewall that not forwards the hsrp packet. Hsrp is using 22.214.171.124 as destination address. Most firewall doesn't forward multicast traffic. Try to "ping 126.96.36.199" and see if you get any response. Also check the firewall logs.