<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA Active/Passive Failed in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-active-passive-failed/m-p/1848519#M488721</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello ajay,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the configs are correct.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-- Active --&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface Ethernet0/0 &lt;/P&gt;&lt;P&gt; no nameif &lt;/P&gt;&lt;P&gt; no security-level &lt;/P&gt;&lt;P&gt; no ip address &lt;/P&gt;&lt;P&gt;! &lt;/P&gt;&lt;P&gt;interface Ethernet0/0.5 &lt;/P&gt;&lt;P&gt; vlan 5 &lt;/P&gt;&lt;P&gt; nameif outside &lt;/P&gt;&lt;P&gt; security-level 0 &lt;/P&gt;&lt;P&gt; ip address 1x.x.x.210 255.255.255.248 standby 1x.x.x.211&amp;nbsp; &lt;/P&gt;&lt;P&gt;! &lt;/P&gt;&lt;P&gt;interface Ethernet0/0.6 &lt;/P&gt;&lt;P&gt; vlan 6 &lt;/P&gt;&lt;P&gt; nameif DMZ_01 &lt;/P&gt;&lt;P&gt; security-level 2 &lt;/P&gt;&lt;P&gt; ip address 10.3.1.10 255.255.255.0 standby 10.3.1.11&amp;nbsp; &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/1.2&lt;/P&gt;&lt;P&gt; vlan 2&lt;/P&gt;&lt;P&gt; nameif DMZ_02&lt;/P&gt;&lt;P&gt; security-level 50&lt;/P&gt;&lt;P&gt; ip address 10.0.1.1 255.255.255.248 standby 10.0.1.2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/1.10&lt;/P&gt;&lt;P&gt; vlan 10&lt;/P&gt;&lt;P&gt; nameif DMZ_03&lt;/P&gt;&lt;P&gt; security-level 50&lt;/P&gt;&lt;P&gt; ip address 10.0.1.8 255.255.255.248 standby 10.0.1.9&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/2&lt;/P&gt;&lt;P&gt; nameif DMZ_04&lt;/P&gt;&lt;P&gt; security-level 50&lt;/P&gt;&lt;P&gt; ip address 172.16.0.1 255.255.255.0 standby 172.16.0.2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/3&lt;/P&gt;&lt;P&gt; no nameif &lt;/P&gt;&lt;P&gt; no security-level &lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt;interface Ethernet0/3.50&lt;/P&gt;&lt;P&gt; description LAN Failover Interface&lt;/P&gt;&lt;P&gt; vlan 50&lt;/P&gt;&lt;P&gt;interface Ethernet0/3.51&lt;/P&gt;&lt;P&gt; description STATE Failover Interface&lt;/P&gt;&lt;P&gt; vlan 51&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Management0/0&lt;/P&gt;&lt;P&gt; nameif Management&lt;/P&gt;&lt;P&gt; security-level 99&lt;/P&gt;&lt;P&gt; ip address 172.31.0.1 255.255.255.0 standby 172.31.0.2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;failover&lt;/P&gt;&lt;P&gt;failover lan unit primary&lt;/P&gt;&lt;P&gt;failover lan interface Failover Ethernet0/3.50&lt;/P&gt;&lt;P&gt;failover key xxxxx&lt;/P&gt;&lt;P&gt;failover replication http&lt;/P&gt;&lt;P&gt;failover link Failover Ethernet0/3.50&lt;/P&gt;&lt;P&gt;failover link State Ethernet0/3.51&lt;/P&gt;&lt;P&gt;failover interface ip Failover 172.18.2.1 255.255.255.248 standby 172.18.2.2&lt;/P&gt;&lt;P&gt;failover interface ip State 172.18.3.1 255.255.255.248 standby 172.18.3.2&lt;/P&gt;&lt;P&gt;monitor-interface outside&lt;/P&gt;&lt;P&gt;monitor-interface DMZ_01&lt;/P&gt;&lt;P&gt;monitor-interface DMZ_02&lt;/P&gt;&lt;P&gt;monitor-interface DMZ_03&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-- Standby --&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;failover&lt;/P&gt;&lt;P&gt;failover lan unit secondary&lt;/P&gt;&lt;P&gt;failover lan interface Failover Ethernet0/3.50&lt;/P&gt;&lt;P&gt;failover key xxxxx&lt;/P&gt;&lt;P&gt;failover replication http&lt;/P&gt;&lt;P&gt;failover link Failover Ethernet0/3.50&lt;/P&gt;&lt;P&gt;failover link State Ethernet0/3.51&lt;/P&gt;&lt;P&gt;failover interface ip Failover 172.18.2.1 255.255.255.248 standby 172.18.2.2&lt;/P&gt;&lt;P&gt;failover interface ip State 172.18.3.1 255.255.255.248 standby 172.18.3.2&lt;/P&gt;&lt;P&gt;monitor-interface outside&lt;/P&gt;&lt;P&gt;monitor-interface DMZ_01&lt;/P&gt;&lt;P&gt;monitor-interface DMZ_02&lt;/P&gt;&lt;P&gt;monitor-interface DMZ_03&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;---&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The Standby ASA is now Offline. I can't get a 'show failover' now. I post the logging at Monday.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mfg&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 13 Jan 2012 12:11:01 GMT</pubDate>
    <dc:creator>Michael Wollner</dc:creator>
    <dc:date>2012-01-13T12:11:01Z</dc:date>
    <item>
      <title>ASA Active/Passive Failed</title>
      <link>https://community.cisco.com/t5/network-security/asa-active-passive-failed/m-p/1848515#M488710</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i have a problem with a Failover Pair of 5510. The Boxes run with the software version 8.2.5.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If the Active ASA goes down, the Standby ASA switch to Active.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now the problem.&lt;/P&gt;&lt;P&gt;If i switch on the old Active ASA, both ASA are Active. &lt;/P&gt;&lt;P&gt;This problem don't solved with the command 'no failover active' on the Standby box.&lt;/P&gt;&lt;P&gt;This problem only solved with the command 'no failover' and then 'failover' on the Standby box.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mfg&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Michael Wollner&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 22:13:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-active-passive-failed/m-p/1848515#M488710</guid>
      <dc:creator>Michael Wollner</dc:creator>
      <dc:date>2019-03-11T22:13:47Z</dc:date>
    </item>
    <item>
      <title>ASA Active/Passive Failed</title>
      <link>https://community.cisco.com/t5/network-security/asa-active-passive-failed/m-p/1848516#M488711</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; use the &lt;STRONG&gt;failover active &lt;/STRONG&gt;command on the standby unit or the &lt;STRONG&gt;no failover active&lt;/STRONG&gt; command on the active. This should work fine if not working then something else might causing some issue.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 13 Jan 2012 11:37:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-active-passive-failed/m-p/1848516#M488711</guid>
      <dc:creator>ajay chauhan</dc:creator>
      <dc:date>2012-01-13T11:37:26Z</dc:date>
    </item>
    <item>
      <title>ASA Active/Passive Failed</title>
      <link>https://community.cisco.com/t5/network-security/asa-active-passive-failed/m-p/1848517#M488712</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello ajay,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This command have no effect on the Standby unit. Both ASA Primary and Standby are Active after restart the Primary ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Only the command 'no failover' and then 'failover' works.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mfg&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 13 Jan 2012 11:47:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-active-passive-failed/m-p/1848517#M488712</guid>
      <dc:creator>Michael Wollner</dc:creator>
      <dc:date>2012-01-13T11:47:17Z</dc:date>
    </item>
    <item>
      <title>ASA Active/Passive Failed</title>
      <link>https://community.cisco.com/t5/network-security/asa-active-passive-failed/m-p/1848518#M488713</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Michael,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; Can you post failover config for both the Firewalls as well as show failover output attached with them?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Ajay&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 13 Jan 2012 11:49:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-active-passive-failed/m-p/1848518#M488713</guid>
      <dc:creator>ajay chauhan</dc:creator>
      <dc:date>2012-01-13T11:49:43Z</dc:date>
    </item>
    <item>
      <title>Re: ASA Active/Passive Failed</title>
      <link>https://community.cisco.com/t5/network-security/asa-active-passive-failed/m-p/1848519#M488721</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello ajay,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the configs are correct.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-- Active --&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface Ethernet0/0 &lt;/P&gt;&lt;P&gt; no nameif &lt;/P&gt;&lt;P&gt; no security-level &lt;/P&gt;&lt;P&gt; no ip address &lt;/P&gt;&lt;P&gt;! &lt;/P&gt;&lt;P&gt;interface Ethernet0/0.5 &lt;/P&gt;&lt;P&gt; vlan 5 &lt;/P&gt;&lt;P&gt; nameif outside &lt;/P&gt;&lt;P&gt; security-level 0 &lt;/P&gt;&lt;P&gt; ip address 1x.x.x.210 255.255.255.248 standby 1x.x.x.211&amp;nbsp; &lt;/P&gt;&lt;P&gt;! &lt;/P&gt;&lt;P&gt;interface Ethernet0/0.6 &lt;/P&gt;&lt;P&gt; vlan 6 &lt;/P&gt;&lt;P&gt; nameif DMZ_01 &lt;/P&gt;&lt;P&gt; security-level 2 &lt;/P&gt;&lt;P&gt; ip address 10.3.1.10 255.255.255.0 standby 10.3.1.11&amp;nbsp; &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/1.2&lt;/P&gt;&lt;P&gt; vlan 2&lt;/P&gt;&lt;P&gt; nameif DMZ_02&lt;/P&gt;&lt;P&gt; security-level 50&lt;/P&gt;&lt;P&gt; ip address 10.0.1.1 255.255.255.248 standby 10.0.1.2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/1.10&lt;/P&gt;&lt;P&gt; vlan 10&lt;/P&gt;&lt;P&gt; nameif DMZ_03&lt;/P&gt;&lt;P&gt; security-level 50&lt;/P&gt;&lt;P&gt; ip address 10.0.1.8 255.255.255.248 standby 10.0.1.9&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/2&lt;/P&gt;&lt;P&gt; nameif DMZ_04&lt;/P&gt;&lt;P&gt; security-level 50&lt;/P&gt;&lt;P&gt; ip address 172.16.0.1 255.255.255.0 standby 172.16.0.2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Ethernet0/3&lt;/P&gt;&lt;P&gt; no nameif &lt;/P&gt;&lt;P&gt; no security-level &lt;/P&gt;&lt;P&gt; no ip address&lt;/P&gt;&lt;P&gt;interface Ethernet0/3.50&lt;/P&gt;&lt;P&gt; description LAN Failover Interface&lt;/P&gt;&lt;P&gt; vlan 50&lt;/P&gt;&lt;P&gt;interface Ethernet0/3.51&lt;/P&gt;&lt;P&gt; description STATE Failover Interface&lt;/P&gt;&lt;P&gt; vlan 51&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Management0/0&lt;/P&gt;&lt;P&gt; nameif Management&lt;/P&gt;&lt;P&gt; security-level 99&lt;/P&gt;&lt;P&gt; ip address 172.31.0.1 255.255.255.0 standby 172.31.0.2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;failover&lt;/P&gt;&lt;P&gt;failover lan unit primary&lt;/P&gt;&lt;P&gt;failover lan interface Failover Ethernet0/3.50&lt;/P&gt;&lt;P&gt;failover key xxxxx&lt;/P&gt;&lt;P&gt;failover replication http&lt;/P&gt;&lt;P&gt;failover link Failover Ethernet0/3.50&lt;/P&gt;&lt;P&gt;failover link State Ethernet0/3.51&lt;/P&gt;&lt;P&gt;failover interface ip Failover 172.18.2.1 255.255.255.248 standby 172.18.2.2&lt;/P&gt;&lt;P&gt;failover interface ip State 172.18.3.1 255.255.255.248 standby 172.18.3.2&lt;/P&gt;&lt;P&gt;monitor-interface outside&lt;/P&gt;&lt;P&gt;monitor-interface DMZ_01&lt;/P&gt;&lt;P&gt;monitor-interface DMZ_02&lt;/P&gt;&lt;P&gt;monitor-interface DMZ_03&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-- Standby --&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;failover&lt;/P&gt;&lt;P&gt;failover lan unit secondary&lt;/P&gt;&lt;P&gt;failover lan interface Failover Ethernet0/3.50&lt;/P&gt;&lt;P&gt;failover key xxxxx&lt;/P&gt;&lt;P&gt;failover replication http&lt;/P&gt;&lt;P&gt;failover link Failover Ethernet0/3.50&lt;/P&gt;&lt;P&gt;failover link State Ethernet0/3.51&lt;/P&gt;&lt;P&gt;failover interface ip Failover 172.18.2.1 255.255.255.248 standby 172.18.2.2&lt;/P&gt;&lt;P&gt;failover interface ip State 172.18.3.1 255.255.255.248 standby 172.18.3.2&lt;/P&gt;&lt;P&gt;monitor-interface outside&lt;/P&gt;&lt;P&gt;monitor-interface DMZ_01&lt;/P&gt;&lt;P&gt;monitor-interface DMZ_02&lt;/P&gt;&lt;P&gt;monitor-interface DMZ_03&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;---&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The Standby ASA is now Offline. I can't get a 'show failover' now. I post the logging at Monday.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mfg&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 13 Jan 2012 12:11:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-active-passive-failed/m-p/1848519#M488721</guid>
      <dc:creator>Michael Wollner</dc:creator>
      <dc:date>2012-01-13T12:11:01Z</dc:date>
    </item>
  </channel>
</rss>

