<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Active-Active firewall Admin context in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926183#M437036</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;few amendment&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;a. the ASDM now loading with ASDM-647.bin&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;b. please check the photo snapshot, i am pressing home tab but the image still stay at monitoring page. The experience somehow will make the whole ASDM client hang and need to restart it. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Noel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 14 May 2012 12:03:15 GMT</pubDate>
    <dc:creator>yong khang NG</dc:creator>
    <dc:date>2012-05-14T12:03:15Z</dc:date>
    <item>
      <title>Active-Active firewall Admin context</title>
      <link>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926178#M437031</link>
      <description>&lt;P&gt;Hi all, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My problem statement was:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;my box is ASA 5585x, since this model have G0/0 - 0/7 sufficient interface, so i no need to do sub-interface for the context. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My question:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;a. is it cumpulsary must have the admin context on A-A deployment?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Somehow i read on &lt;A href="http://www.techrepublic.com/blog/networking/understand-the-pros-and-cons-of-using-cisco-asa-multiple-context-mode/1413" target="_blank"&gt;http://www.techrepublic.com/blog/networking/understand-the-pros-and-cons-of-using-cisco-asa-multiple-context-mode/1413&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it mention that "The Admin Context is not restricted and can be used as any other security context."&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can i just exclude this admin context?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;b. Refer to my config snipet, can i just allocate management interface to the admin context, instead of allocate it to any inside/outside interface?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;c. Is it a good practice not to use the same interface to do LAN failover and stateful failover? I facing the problem of "ghost image" when i enable the multiple mode and both LAN/stateful failover on same interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Noel&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P.S: Config snipet&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;admin-context admin&lt;/P&gt;&lt;P&gt;context admin &lt;/P&gt;&lt;P&gt;&amp;nbsp; allocate-interface Management0/0 &lt;/P&gt;&lt;P&gt;&amp;nbsp; config-url disk0:/admin.cfg&lt;/P&gt;&lt;P&gt;&amp;nbsp; join-failover-group 1&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;context public-internet&lt;/P&gt;&lt;P&gt;&amp;nbsp; allocate-interface GigabitEthernet0/0 &lt;/P&gt;&lt;P&gt;&amp;nbsp; allocate-interface GigabitEthernet0/1 &lt;/P&gt;&lt;P&gt;&amp;nbsp; config-url disk0:/public-intenet.cfg&lt;/P&gt;&lt;P&gt;&amp;nbsp; join-failover-group 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;context secure-voice&lt;/P&gt;&lt;P&gt;&amp;nbsp; allocate-interface GigabitEthernet0/2 &lt;/P&gt;&lt;P&gt;&amp;nbsp; allocate-interface GigabitEthernet0/3 &lt;/P&gt;&lt;P&gt;&amp;nbsp; allocate-interface GigabitEthernet0/4 &lt;/P&gt;&lt;P&gt;&amp;nbsp; config-url disk0:/secure-voice.cfg&lt;/P&gt;&lt;P&gt;&amp;nbsp; join-failover-group 1&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 23:06:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926178#M437031</guid>
      <dc:creator>yong khang NG</dc:creator>
      <dc:date>2019-03-11T23:06:39Z</dc:date>
    </item>
    <item>
      <title>Active-Active firewall Admin context</title>
      <link>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926179#M437032</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Yong,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Admin context is always created, although you can just use it for management purpose, its not an issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For the lan failover and stateful failover, you can follow these recommendations:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/asa84/configuration/guide/ha_overview.html#wp1077627"&gt;http://www.cisco.com/en/US/docs/security/asa/asa84/configuration/guide/ha_overview.html#wp1077627&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks, &lt;BR /&gt;Varun Rao &lt;BR /&gt;Security Team, &lt;BR /&gt;Cisco TAC&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 14 May 2012 11:45:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926179#M437032</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2012-05-14T11:45:34Z</dc:date>
    </item>
    <item>
      <title>Active-Active firewall Admin context</title>
      <link>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926180#M437033</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Varun, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for reply. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Appearnatly my ASA 5585x box facing "ghost image" on the home screen, where it cannot display the real time traffic at the panel. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My concern come to split my previous LAN/State failover interface to seperate interface then, just hope it can solve the problem. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am now using ASDM 6.47, according to cisco statement it's been solve on this issue, but it seems still happen on my case. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any command can let me troubleshoot on this?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Noel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 14 May 2012 11:53:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926180#M437033</guid>
      <dc:creator>yong khang NG</dc:creator>
      <dc:date>2012-05-14T11:53:40Z</dc:date>
    </item>
    <item>
      <title>Active-Active firewall Admin context</title>
      <link>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926181#M437034</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can you share a screen shot of the issue that you are facing?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks, &lt;BR /&gt;Varun Rao &lt;BR /&gt;Security Team, &lt;BR /&gt;Cisco TAC&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 14 May 2012 11:56:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926181#M437034</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2012-05-14T11:56:10Z</dc:date>
    </item>
    <item>
      <title>Active-Active firewall Admin context</title>
      <link>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926182#M437035</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Varun, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;A similar thread was ask over partner communities forum, but so far no reply on it. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You may found the previse problem statement on following URL&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://communities.cisco.com/message/95329#95329"&gt;https://communities.cisco.com/message/95329#95329&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;noel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 14 May 2012 12:01:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926182#M437035</guid>
      <dc:creator>yong khang NG</dc:creator>
      <dc:date>2012-05-14T12:01:25Z</dc:date>
    </item>
    <item>
      <title>Active-Active firewall Admin context</title>
      <link>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926183#M437036</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;few amendment&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;a. the ASDM now loading with ASDM-647.bin&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;b. please check the photo snapshot, i am pressing home tab but the image still stay at monitoring page. The experience somehow will make the whole ASDM client hang and need to restart it. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Noel&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 14 May 2012 12:03:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926183#M437036</guid>
      <dc:creator>yong khang NG</dc:creator>
      <dc:date>2012-05-14T12:03:15Z</dc:date>
    </item>
    <item>
      <title>Active-Active firewall Admin context</title>
      <link>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926184#M437037</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I just checked about this bug, and it seems that this bug has now been fixed in the ASDM image 6.4.7.53, so you can upgrade the ASDM to this version to get past this bug.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks, &lt;BR /&gt;Varun Rao &lt;BR /&gt;Security Team, &lt;BR /&gt;Cisco TAC&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 14 May 2012 12:44:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/active-active-firewall-admin-context/m-p/1926184#M437037</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2012-05-14T12:44:13Z</dc:date>
    </item>
  </channel>
</rss>

