Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

3925 Reboot odd rebooted

We have 2 router as HA for VPN.

1 rebooted,  Please help me find what's the reason.

by sh ver, it looks like someone reload the router. but I check AAA log, no record at that time.

in router log there is some"configured from console by console." is tis means someone log in router by console cable?

 

Show ver:

System returned to ROM by reload at 21:41:16 GMT Mon Jun 9 2014
System restarted at 21:43:09 GMT Mon Jun 9 2014
System image file is "flash:/c3900-universalk9-mz.SPA.152-4.M6a.bin"
Last reload type: Normal Reload
Last reload reason: reload

Show logg result on router is:

Jun  9 19:43:17.463: %VPN_HW-6-INFO_LOC: Crypto engine: onboard 0  State changed to: Initialized 
*Jun  9 19:43:17.639: %VPN_HW-6-INFO_LOC: Crypto engine: onboard 0  State changed to: Enabled 
*Jun  9 19:43:32.871: %LINK-3-UPDOWN: Interface GigabitEthernet0/0, changed state to up
*Jun  9 19:43:32.871: %LINK-3-UPDOWN: Interface GigabitEthernet0/1, changed state to up
*Jun  9 19:43:32.871: %LINK-3-UPDOWN: Interface GigabitEthernet0/2, changed state to down
*Jun  9 19:43:32.871: %LINK-3-UPDOWN: Interface GigabitEthernet1/0, changed state to up
*Jun  9 19:43:33.427: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan1, changed state to down
*Jun  9 19:43:33.871: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0, changed state to up
*Jun  9 19:43:33.871: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/1, changed state to up
*Jun  9 19:43:33.871: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/2, changed state to down
*Jun  9 19:43:33.871: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet1/0, changed state to up
*Jun  9 19:43:34.887: %AAAA-4-CLI_DEPRECATED: WARNING: Command has been added to the configuration but Type 4 passwords have 

been deprecated. Migrate to a supported password type
*Jun  9 21:43:34.903: %SYS-6-CLOCKUPDATE: System clock has been updated from 19:43:34 UTC Mon Jun 9 2014 to 21:43:34 GMT Mon 

Jun 9 2014, configured from console by console.
*Jun  9 21:43:35.163: %SYS-6-LOGGINGHOST_STARTSTOP: Logging to host 10.96.4.127 port 514 CLI Request Triggered
*Jun  9 21:43:35.603: %SYS-5-CONFIG_I: Configured from memory by console
*Jun  9 21:43:35.911: %SYS-5-RESTART: System restarted --
Cisco IOS Software, C3900 Software (C3900-UNIVERSALK9-M), Version 15.2(4)M6a, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2014 by Cisco Systems, Inc.
Compiled Tue 15-Apr-14 08:48 by prod_rel_team
*Jun  9 21:43:35.951: %SNMP-5-COLDSTART: SNMP agent on host emeaxrar3925_02 is undergoing a cold start
*Jun  9 21:43:35.959: %SSH-5-ENABLED: SSH 2.0 has been enabled
*Jun  9 21:43:35.963: %ETHSW_SM-3-ILP_RECOVERY_COMPLETE: Time taken for recovery after reload = 0 seconds.
*Jun  9 21:43:35.975: %SYS-6-BOOTTIME: Time taken to reboot after reload =  142 seconds
*Jun  9 21:43:35.979: %CRYPTO-6-ISAKMP_ON_OFF: ISAKMP is OFF
*Jun  9 21:43:35.979: %CRYPTO-6-GDOI_ON_OFF: GDOI is OFF
*Jun  9 21:43:35.979: %CRYPTO-6-ISAKMP_ON_OFF: ISAKMP is ON
*Jun  9 21:43:36.079: %LINEPROTO-5-UPDOWN: Line protocol on Interface Loopback0, changed state to up
*Jun  9 21:43:36.087: %SYS-6-LOGGINGHOST_STARTSTOP: Logging to host 10.96.4.127 port 514 started - CLI initiated
*Jun  9 21:43:36.295: %VPN_HW-6-INFO_LOC: Crypto engine: slot 0  State changed to: Initialized 
*Jun  9 21:43:36.295: %VPN_HW-6-INFO_LOC: Crypto engine: onboard 0  State changed to: Disabled 
*Jun  9 21:43:36.307: %VPN_HW-6-INFO_LOC: Crypto engine: slot 0  State changed to: Enabled 
*Jun  9 21:43:36.307: %CRYPTO-6-GDOI_ON_OFF: GDOI is OFF
*Jun  9 21:43:36.307: %CRYPTO-6-GDOI_ON_OFF: GDOI is OFF
*Jun  9 21:43:37.008: %LINK-5-CHANGED: Interface Embedded-Service-Engine0/0, changed state to administratively down
*Jun  9 21:43:37.036: %LINK-5-CHANGED: Interface GigabitEthernet0/2, changed state to administratively down
*Jun  9 21:43:37.296: %LINEPROTO-5-UPDOWN: Line protocol on Interface ISM VPN Accelerator, changed state to up
*Jun  9 21:43:37.695: %LINK-3-UPDOWN: Interface GigabitEthernet1/1, changed state to up
*Jun  9 21:43:38.008: %LINEPROTO-5-UPDOWN: Line protocol on Interface Embedded-Service-Engine0/0, changed state to down
*Jun  9 21:43:38.696: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet1/1, changed state to up
*Jun  9 21:43:40.552: %OSPF-5-ADJCHG: Process 1, Nbr 10.64.99.11 on GigabitEthernet1/0 from LOADING to FULL, Loading Done
*Jun  9 21:43:46.888: %OSPF-5-ADJCHG: Process 1, Nbr 10.64.99.8 on GigabitEthernet0/0 from LOADING to FULL, Loading Done
*Jun  9 21:44:06.720: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan1, changed state to up
*Jun  9 21:44:13.028: %HSRP-5-STATECHANGE: GigabitEthernet0/1 Grp 3 state Speak -> Standby

Also I found some log on logging server:

Jun 10 03:52:16 10.64.97.154 49: Jun  9 21:52:15.024: %SEC-6-IPACCESSLOGP: list 199 permitted tcp 10.109.18.107(57503) -> 0.0.0.0(22), 1 packet  
Jun 10 03:46:28 10.64.97.154 48: Jun  9 21:46:26.865: %SEC-6-IPACCESSLOGP: list 199 permitted tcp 10.109.18.107(57503) -> 0.0.0.0(22), 1 packet  
Jun 10 03:44:16 10.64.97.154 47: *Jun  9 21:44:13.028: %HSRP-5-STATECHANGE: GigabitEthernet0/1 Grp 3 state Speak -> Standby
Jun 10 03:44:10 10.64.97.154 46: *Jun  9 21:44:06.720: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan1, changed state to up
Jun 10 03:41:17 10.64.97.154 52: Jun  9 21:41:16.543: %HSRP-5-STATECHANGE: GigabitEthernet0/1 Grp 3 state Standby -> Init
Jun 10 03:41:17 10.64.97.154 51: Jun  9 21:41:16.543: %RF_INTERDEV-4-RELOAD: % RF induced self-reload. my state = STANDBY COLD-CONFIG peer state = ACTIVE
Jun 10 03:41:17 10.64.97.154 50: Jun  9 21:41:16.543: %RF-5-RF_RELOAD: Self reload. Reason: Reloading self per request of peer
Jun 10 03:40:13 10.64.97.154 49: Jun  9 21:40:12.011: %OSPF-5-ADJCHG: Process 1, Nbr 10.64.99.11 on GigabitEthernet1/0 from LOADING to FULL, Loading Done
Jun 10 03:40:10 10.64.97.154 48: Jun  9 21:40:09.807: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan1, changed state to up
Jun 10 03:39:40 10.64.97.154 47: Jun  9 21:39:39.807: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet1/1, changed state to up
Jun 10 03:39:16 10.64.97.154 46: Jun  9 21:39:15.791: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan1, changed state to down
Jun 10 03:39:16 10.64.97.154 45: Jun  9 21:39:15.787: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet1/1, changed state to down
Jun 10 03:38:27 10.64.97.154 44: *Jun  9 21:38:25.420: %HSRP-5-STATECHANGE: GigabitEthernet0/1 Grp 3 state Speak -> Standby
Jun 10 03:38:20 10.64.97.154 43: *Jun  9 21:38:17.812: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan1, changed state to up

 

1 REPLY
Silver

Configure AAA auth for

Configure AAA auth for console access too and configure "archive" feature on router for next time...

BR,

Dragan

HTH, Dragan
400
Views
0
Helpful
1
Replies
CreatePlease login to create content