<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Admin context on active device is faulty in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4172915#M1075113</link>
    <description>&lt;P&gt;I have situation, that on the active device of FMMS the admin context is faulty and it has hell lot configuration missing, can not login to it. On the Secondary Device firewall Admin context is fine.&amp;nbsp;&lt;BR /&gt;--------------------------------&lt;BR /&gt;The version is:&lt;BR /&gt;On the active device it says:&lt;/P&gt;&lt;P&gt;&amp;nbsp;-- From System Context:&lt;BR /&gt;FWSM Firewall Version 4.1(6) &amp;lt;system&amp;gt;&lt;BR /&gt;Detected an old ASDM version.&lt;BR /&gt;You will need to upgrade it before using ASDM.&lt;BR /&gt;......................................................&lt;/P&gt;&lt;P&gt;on the Secondary device:&lt;BR /&gt;FWSM Firewall Version 4.1(6) &amp;lt;system&amp;gt;&lt;BR /&gt;Device Manager Version 6.2(2)F&lt;BR /&gt;---------------------------------------------&lt;/P&gt;&lt;P&gt;On the actual 6500 device the version:&lt;/P&gt;&lt;P&gt;Cisco IOS Software, s72033_rp Software (s72033_rp-ADVENTERPRISEK9_WAN-M), Version 12.2(33)SXJ1, RELEASE SOFTWARE (fc2)&lt;BR /&gt;Technical Support: &lt;A href="http://www.cisco.com/techsupport" target="_blank" rel="noopener"&gt;http://www.cisco.com/techsupport&lt;/A&gt;&lt;BR /&gt;Copyright (c) 1986-2011 by Cisco Systems, Inc.&lt;BR /&gt;Compiled Wed 22-Jun-11 18:03 by prod_rel_team&lt;/P&gt;&lt;P&gt;ROM: System Bootstrap, Version 12.2(17r)SX5, RELEASE SOFTWARE (fc1)&lt;/P&gt;&lt;P&gt;=======================================================================&lt;BR /&gt;&lt;BR /&gt;I tried to failover from primary to secondary from system context .. with command "no failver active" on Primary.&lt;BR /&gt;&lt;BR /&gt;but it does not make different yes on System context it changes but other contexts it does not.&amp;nbsp;&lt;BR /&gt;So idea is that the faulty context can become secondary and can sync with secondary one which will be 'active' after failover. Then we can change back to the original stage.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Anyway several tries has not resulted in success.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Please if some one can help.&lt;BR /&gt;&lt;BR /&gt;Please note this is in Prod, cant try just anything.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;need a solution so that i can write the CIP and can request CRQ.&lt;BR /&gt;&lt;BR /&gt;Regards&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Shinda&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sat, 24 Oct 2020 09:19:18 GMT</pubDate>
    <dc:creator>shinda_77</dc:creator>
    <dc:date>2020-10-24T09:19:18Z</dc:date>
    <item>
      <title>Admin context on active device is faulty</title>
      <link>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4172915#M1075113</link>
      <description>&lt;P&gt;I have situation, that on the active device of FMMS the admin context is faulty and it has hell lot configuration missing, can not login to it. On the Secondary Device firewall Admin context is fine.&amp;nbsp;&lt;BR /&gt;--------------------------------&lt;BR /&gt;The version is:&lt;BR /&gt;On the active device it says:&lt;/P&gt;&lt;P&gt;&amp;nbsp;-- From System Context:&lt;BR /&gt;FWSM Firewall Version 4.1(6) &amp;lt;system&amp;gt;&lt;BR /&gt;Detected an old ASDM version.&lt;BR /&gt;You will need to upgrade it before using ASDM.&lt;BR /&gt;......................................................&lt;/P&gt;&lt;P&gt;on the Secondary device:&lt;BR /&gt;FWSM Firewall Version 4.1(6) &amp;lt;system&amp;gt;&lt;BR /&gt;Device Manager Version 6.2(2)F&lt;BR /&gt;---------------------------------------------&lt;/P&gt;&lt;P&gt;On the actual 6500 device the version:&lt;/P&gt;&lt;P&gt;Cisco IOS Software, s72033_rp Software (s72033_rp-ADVENTERPRISEK9_WAN-M), Version 12.2(33)SXJ1, RELEASE SOFTWARE (fc2)&lt;BR /&gt;Technical Support: &lt;A href="http://www.cisco.com/techsupport" target="_blank" rel="noopener"&gt;http://www.cisco.com/techsupport&lt;/A&gt;&lt;BR /&gt;Copyright (c) 1986-2011 by Cisco Systems, Inc.&lt;BR /&gt;Compiled Wed 22-Jun-11 18:03 by prod_rel_team&lt;/P&gt;&lt;P&gt;ROM: System Bootstrap, Version 12.2(17r)SX5, RELEASE SOFTWARE (fc1)&lt;/P&gt;&lt;P&gt;=======================================================================&lt;BR /&gt;&lt;BR /&gt;I tried to failover from primary to secondary from system context .. with command "no failver active" on Primary.&lt;BR /&gt;&lt;BR /&gt;but it does not make different yes on System context it changes but other contexts it does not.&amp;nbsp;&lt;BR /&gt;So idea is that the faulty context can become secondary and can sync with secondary one which will be 'active' after failover. Then we can change back to the original stage.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Anyway several tries has not resulted in success.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Please if some one can help.&lt;BR /&gt;&lt;BR /&gt;Please note this is in Prod, cant try just anything.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;need a solution so that i can write the CIP and can request CRQ.&lt;BR /&gt;&lt;BR /&gt;Regards&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Shinda&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 24 Oct 2020 09:19:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4172915#M1075113</guid>
      <dc:creator>shinda_77</dc:creator>
      <dc:date>2020-10-24T09:19:18Z</dc:date>
    </item>
    <item>
      <title>Re: Admin context on active device is faulty</title>
      <link>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4172935#M1075114</link>
      <description>&lt;P&gt;Looks like the configuration not synched with secondary as per the information.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;have you done any upgrade?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;You will need to upgrade it before using ASDM.&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;FWSM is the end of life way decade back, i know some people still using it depends on requirement. if you have out of the box config backup.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;i only suggest pulling the module and insert back. (but its risk - other than that i do not see any option ?)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 24 Oct 2020 10:48:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4172935#M1075114</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2020-10-24T10:48:28Z</dc:date>
    </item>
    <item>
      <title>Re: Admin context on active device is faulty</title>
      <link>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4173092#M1075121</link>
      <description>&lt;P&gt;Hello BB,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks for your reply,&lt;BR /&gt;&lt;BR /&gt;we don't use&amp;nbsp;&lt;STRONG&gt;ASDM&lt;/STRONG&gt; so, not worried about it.&amp;nbsp;&lt;BR /&gt;meantime the best is to fix the admin context on Active.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;if it was other contact we would rebuilt it, but admin we cant delete and rebuild.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;So only solution is restarting the device? no way we fix by synchronizing ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks again&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 25 Oct 2020 05:29:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4173092#M1075121</guid>
      <dc:creator>shinda_77</dc:creator>
      <dc:date>2020-10-25T05:29:31Z</dc:date>
    </item>
    <item>
      <title>Re: Admin context on active device is faulty</title>
      <link>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4173230#M1075132</link>
      <description>&lt;P&gt;How were you able to see that there are some missing configs on the admin context config file? did you try to move into the admin context with the command &lt;STRONG&gt;changeto context admin&lt;/STRONG&gt; and it failed?. One thing you might try would be to copy the admin context config file from the standby unit (disk0:/admin.cfg unless you changed it from its default) to the primary unit.&lt;/P&gt;</description>
      <pubDate>Sun, 25 Oct 2020 14:49:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4173230#M1075132</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2020-10-25T14:49:23Z</dc:date>
    </item>
    <item>
      <title>Re: Admin context on active device is faulty</title>
      <link>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4173340#M1075163</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks a lot Aref,&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;we can go by the actual 6500 device with command:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;'session slot 6 p 1'&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;we can change to "changeto context admin"&lt;/P&gt;&lt;P&gt;but cant run any command even 'sh run"&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;from the system context&amp;nbsp; we can do with command:&lt;/P&gt;&lt;P&gt;"more&amp;nbsp;&lt;SPAN&gt;disk0:/admin.cfg&amp;nbsp;"&lt;BR /&gt;this shows us more like "sh run" of the context and here i can see that this context is missing hell lot of configuration as compared to secondary admin context. more importantly reletated user login, tacacs etc.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;is there way we can edit "disk0:/admin.cfg"&amp;nbsp; like copy it from secondary device ?&lt;BR /&gt;&lt;BR /&gt;how can we do this ?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Regards&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Shinda Singh&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 26 Oct 2020 00:50:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4173340#M1075163</guid>
      <dc:creator>shinda_77</dc:creator>
      <dc:date>2020-10-26T00:50:53Z</dc:date>
    </item>
    <item>
      <title>Re: Admin context on active device is faulty</title>
      <link>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4173341#M1075164</link>
      <description>&lt;P&gt;You welcome. How about if you transfer the admin.cfg file from the secondary to a tftp server, and then you copy it from the tftp server to the primary?&lt;/P&gt;</description>
      <pubDate>Mon, 26 Oct 2020 00:59:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4173341#M1075164</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2020-10-26T00:59:57Z</dc:date>
    </item>
    <item>
      <title>Re: Admin context on active device is faulty</title>
      <link>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4173407#M1075176</link>
      <description>&lt;P&gt;Hi Aref,&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;that is what I want to know how can we copy ?&lt;BR /&gt;is it possible ?&lt;BR /&gt;please if you can send me some links or url i can go through the steps.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Shinda Singh&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 26 Oct 2020 05:11:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4173407#M1075176</guid>
      <dc:creator>shinda_77</dc:creator>
      <dc:date>2020-10-26T05:11:50Z</dc:date>
    </item>
    <item>
      <title>Re: Admin context on active device is faulty</title>
      <link>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4173925#M1075218</link>
      <description>&lt;P&gt;Setup a tftp server, then go into the context admin on the standby unit, and use the command &lt;STRONG&gt;copy run tftp:&lt;/STRONG&gt;, it will prompt you to confirm the source file name, hit enter, then it will ask you to type in the tftp server IP address, and will ask you to confirm the destination file name, here type admin.cfg. Once that is done, go to the primary unit admin context, and the do the reverse with the command &lt;STRONG&gt;copy tftp: run&lt;/STRONG&gt;, confirm the details, and save the config. That should work.&lt;/P&gt;</description>
      <pubDate>Mon, 26 Oct 2020 19:10:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4173925#M1075218</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2020-10-26T19:10:43Z</dc:date>
    </item>
    <item>
      <title>Re: Admin context on active device is faulty</title>
      <link>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4174053#M1075225</link>
      <description>&lt;P&gt;Hi Aref,&amp;nbsp;&lt;BR /&gt;I will try and let you know&lt;BR /&gt;&lt;BR /&gt;issue is when I login to 'admin' context on primary, I can only do by 6500 device with command "session slot 7 p 1" and then using credentials. It takes me to system context and I can change to admin from here. but being in it I cant run any command ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;it gives error as below:&lt;BR /&gt;&lt;BR /&gt;admin/7/act# sh run&lt;BR /&gt;Command authorization failed&lt;BR /&gt;-----------------&lt;BR /&gt;so that is the issue , if i can run tftp commands:&lt;BR /&gt;&lt;BR /&gt;Regards&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 27 Oct 2020 00:42:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4174053#M1075225</guid>
      <dc:creator>shinda_77</dc:creator>
      <dc:date>2020-10-27T00:42:37Z</dc:date>
    </item>
    <item>
      <title>Re: Admin context on active device is faulty</title>
      <link>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4174861#M1075271</link>
      <description>&lt;P&gt;What aaa configuration have you applied to the admin context? also, for what purpose are you using the admin context? only management or as an actual context for users?&lt;/P&gt;</description>
      <pubDate>Wed, 28 Oct 2020 09:21:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/admin-context-on-active-device-is-faulty/m-p/4174861#M1075271</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2020-10-28T09:21:51Z</dc:date>
    </item>
  </channel>
</rss>

