<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA failover cluster software upgrade problems in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657717#M535294</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yup, no problem, do let me knw if the upgrade resolves both your issues.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 22 Jul 2011 18:22:38 GMT</pubDate>
    <dc:creator>varrao</dc:creator>
    <dc:date>2011-07-22T18:22:38Z</dc:date>
    <item>
      <title>ASA failover cluster software upgrade problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657712#M535289</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;last night we tried to upgrade our cluster (2x ASA5520) from 8.0(4) to 8.2(3) and failed miserably. &lt;SPAN __jive_emoticon_name="sad" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/sad.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. Both units got the new image, but when we reloaded the secondary unit then we got the following strange message:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"Mate's license (10GE I/O Enabled) is not compatible with my license (10GE I/O Disabled). Failover will be disabled."&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;After this message failover was not there anymore and both units became active (!!!) which killed everything.&lt;/P&gt;&lt;P&gt;Of course ASA5520 doesn't have 10GE and we have exactly the same units. What could be the problem here?&lt;/P&gt;&lt;P&gt;Currently we run with a single unit with 8.2(3) and the secondary unit is switched off.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. After the upgrade we cannot connect with multiple VPN sessions from the same client, this gets logged:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"Multiple sessions per tunnel are not supported"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This was working just fine with 8.0(4) and doesn't work with 8.2(3). Do we have to update something in the config or what is causing this?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you ask why we went with 8.2(3) instead of 8.2(5) then the answer is because we were testing that for several month in our secondary datacenter, but unfortunately only on a single ASA and not on a cluster. We couldn't go higher due to the 512MB RAM we have in all units.&lt;/P&gt;&lt;P&gt;And we had to upgrade, because we had crashes with 8.0(4) which was working fine for a long-long time.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;BR,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Andras&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 21:02:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657712#M535289</guid>
      <dc:creator>atudos</dc:creator>
      <dc:date>2019-03-11T21:02:20Z</dc:date>
    </item>
    <item>
      <title>ASA failover cluster software upgrade problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657713#M535290</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I've found another thread which discusses the first problem and it is a bug of 8.2(3), which we picked. &lt;SPAN __jive_emoticon_name="sad" __jive_macro_name="emoticon" class="jive_macro jive_emote" height="16" src="https://community.cisco.com/4.5.4/images/emoticons/sad.gif" width="16"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;We will test out 8.2(5) now.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any ideas about the second issue?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;A.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Jul 2011 12:06:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657713#M535290</guid>
      <dc:creator>atudos</dc:creator>
      <dc:date>2011-07-22T12:06:00Z</dc:date>
    </item>
    <item>
      <title>ASA failover cluster software upgrade problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657714#M535291</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI Andras,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You might very well be running into this DDTS - CSCti70859&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;amp;bugId=CSCti70859"&gt;http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;amp;bugId=CSCti70859&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To restore normalcy, kindly follow the wowrkaround.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this resolves your issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Jul 2011 16:02:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657714#M535291</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-07-22T16:02:11Z</dc:date>
    </item>
    <item>
      <title>ASA failover cluster software upgrade problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657715#M535292</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The second issue is also seems to be due to both the firewalls becaoming active, I would suggest you to first restore the failover and then monitor the VPN traffic, it shoud not be there. Whats heppening is since both the firewalls are passing the traffic, so it might creating multiple session of one tunnel on both the firewalls, so restoring failover should work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Jul 2011 16:05:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657715#M535292</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-07-22T16:05:35Z</dc:date>
    </item>
    <item>
      <title>ASA failover cluster software upgrade problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657716#M535293</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Unfortunately the VPN issue is present with a single firewall running.&lt;/P&gt;&lt;P&gt;We will soon do the upgrade to 8.2(5) and then we will see if that resolves both or just the failover functionality.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Andras&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Jul 2011 17:04:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657716#M535293</guid>
      <dc:creator>atudos</dc:creator>
      <dc:date>2011-07-22T17:04:55Z</dc:date>
    </item>
    <item>
      <title>ASA failover cluster software upgrade problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657717#M535294</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yup, no problem, do let me knw if the upgrade resolves both your issues.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Jul 2011 18:22:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657717#M535294</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-07-22T18:22:38Z</dc:date>
    </item>
    <item>
      <title>ASA failover cluster software upgrade problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657718#M535295</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This time the upgrade went OK, we are at 8.2(5) and failover clustering works as it should.&lt;/P&gt;&lt;P&gt;But the VPN problem is still there, we cannot connect twice from the same client (with different users and policies).&lt;/P&gt;&lt;P&gt;Any further idea what could be the difference regarding this between 8.0(4) and 8.2(5)?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Andras&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 22 Jul 2011 21:16:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657718#M535295</guid>
      <dc:creator>atudos</dc:creator>
      <dc:date>2011-07-22T21:16:46Z</dc:date>
    </item>
    <item>
      <title>ASA failover cluster software upgrade problems</title>
      <link>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657719#M535296</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Andras,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Difficult to guess from here , what could be the issue, I would suggest you open a TAC case to get it investigated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Varun&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 23 Jul 2011 04:15:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-failover-cluster-software-upgrade-problems/m-p/1657719#M535296</guid>
      <dc:creator>varrao</dc:creator>
      <dc:date>2011-07-23T04:15:19Z</dc:date>
    </item>
  </channel>
</rss>

