cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
769
Views
0
Helpful
5
Replies

HA is not working in ASA 5525X

Muthukumar P
Level 1
Level 1

HI Team,

            We have two ASA 5525X and working with HA suddenly HA is not working . I have attached show tech support for both firewalls. As of now running with secondary firewall only suppose switch off/reboot the secondary firewall ,primary firewall is not taking ownership and getting console output nofailover..

 

Please help on this..

 

5 Replies 5

Muthukumar P
Level 1
Level 1
 

 

Your primary firewall has the command "no failover" in the running configuration.

 

That will prevent it from negotiating state with the mate and result in the "stbyNoFailover" you see in the prompt.

Hi,

    Ok.. Thanks for the identification..which configuration required to resolve the issue..Because if i try to configure fail over command getting following error

 

Mate NOT PRESENT card in slot 3 is different from mine SFR5525

 

Please suggest on this..

It's complaining that the inventory is not the same because you have the sfr module installed and up/up on the primary unit. That's even though you have the "no monitor-interface service-module" command set which should override that check.

 

If you're not using it (or planning to use it), try uninstalling the software module on the primary appliance.

 

sw-module module ips uninstall

If you do plan to use it then install it on the secondary appliance (using the 6.2 image like is installed already on the primary). Detailed instructions can be found here:

 

https://www.cisco.com/c/en/us/support/docs/security/asa-firepower-services/118644-configure-firepower-00.html#anc7

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card