<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA LAN Failover question in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966274#M939986</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks for the reply. the problem is that if the 6500 connected to the primary ASA loses power then the primary ASA Inside, LAN Failover and State Failover interfaces will all go down at the same time.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;so the question is does failover occur because the primary ASA inside interface goes down or is there no failover because the LAN Failover interface went down during operation?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;andy&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 01 Apr 2008 14:52:03 GMT</pubDate>
    <dc:creator>andrewswanson</dc:creator>
    <dc:date>2008-04-01T14:52:03Z</dc:date>
    <item>
      <title>ASA LAN Failover question</title>
      <link>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966271#M939983</link>
      <description>&lt;P&gt;hello&lt;/P&gt;&lt;P&gt;we have 2 5550 ASAs in active-standby mode - please see attached diagram. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the ASAs LAN Failover, Stateful Failover and Inside interfaces all physically connect into Cisco catalyst 6500s.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;we're about to test the resiliance of  our network design by powering of one of our 6500s. If ASA A was active and 6500 A was powered off, what would happen regarding failover?&lt;/P&gt;&lt;P&gt;The inside (monitored) interface and the LAN failover interface on ASA A both patch into 6500 A which has been powered off. does failover to ASA B happen because a monitored interface (inside) is down or is there no failover because a failover link (LAN Failover) failed during operation?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;any insight appreciated&lt;/P&gt;&lt;P&gt;andy&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 12:25:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966271#M939983</guid>
      <dc:creator>andrewswanson</dc:creator>
      <dc:date>2019-03-11T12:25:24Z</dc:date>
    </item>
    <item>
      <title>Re: ASA LAN Failover question</title>
      <link>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966272#M939984</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey its so funny that I am actually doing the same thing now and we posted a similar scenario.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Anyway the way it works is it will monitor the interfaces you specify. If one of your interfaces detects a link down (and it is specified as an interface that you are monitoring on the firewall) It will automatically force the secondary asa to become active. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Apr 2008 14:46:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966272#M939984</guid>
      <dc:creator>amohabir1</dc:creator>
      <dc:date>2008-04-01T14:46:06Z</dc:date>
    </item>
    <item>
      <title>Re: ASA LAN Failover question</title>
      <link>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966273#M939985</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Let me know how long your failover takes because right now my failover takes about a minute to recover sourcing a ping from the inside to any internet site.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;A ping to the firewall shows about 2-4 dropped pings before the secondary becomes active. I am not sure if this is normal behavior. But since you are doing a similar test, let me know what your results are.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Apr 2008 14:48:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966273#M939985</guid>
      <dc:creator>amohabir1</dc:creator>
      <dc:date>2008-04-01T14:48:49Z</dc:date>
    </item>
    <item>
      <title>Re: ASA LAN Failover question</title>
      <link>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966274#M939986</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks for the reply. the problem is that if the 6500 connected to the primary ASA loses power then the primary ASA Inside, LAN Failover and State Failover interfaces will all go down at the same time.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;so the question is does failover occur because the primary ASA inside interface goes down or is there no failover because the LAN Failover interface went down during operation?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;andy&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Apr 2008 14:52:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966274#M939986</guid>
      <dc:creator>andrewswanson</dc:creator>
      <dc:date>2008-04-01T14:52:03Z</dc:date>
    </item>
    <item>
      <title>Re: ASA LAN Failover question</title>
      <link>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966275#M939987</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;we've already conducted some testing by manually failing over the ASAs and we aren't dropping any packets. do you have Stateful Failover configured for your ASAs?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;andy&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Apr 2008 14:56:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966275#M939987</guid>
      <dc:creator>andrewswanson</dc:creator>
      <dc:date>2008-04-01T14:56:33Z</dc:date>
    </item>
    <item>
      <title>Re: ASA LAN Failover question</title>
      <link>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966276#M939988</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes I do have stateful configured however I do not have any of the interfaces terminated onto a secondary switch. I just have straight cables connecting the firewalls. I guess it would make more sense to create a seperate vlan on the switch for this purpose. I guess I'll have to do that instead to see how that works out.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Apr 2008 14:58:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966276#M939988</guid>
      <dc:creator>amohabir1</dc:creator>
      <dc:date>2008-04-01T14:58:23Z</dc:date>
    </item>
    <item>
      <title>Re: ASA LAN Failover question</title>
      <link>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966277#M939989</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey can show me what your config looks like for the active and secondary asa's I'm still having trouble with the failover times. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Apr 2008 16:34:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-lan-failover-question/m-p/966277#M939989</guid>
      <dc:creator>amohabir1</dc:creator>
      <dc:date>2008-04-01T16:34:31Z</dc:date>
    </item>
  </channel>
</rss>

