cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1159
Views
0
Helpful
4
Replies

ASA-5508-X on what appears to be timed reboots

fbeye
Level 4
Level 4

Hello, not sure if this would be hardware or software.

 

I am getting what appears to be a timed reboot sequence. I have verified the power supply is not the issue as I have swapped it with another.

from my ISP perspective my authentication drops what seems to be every 1 day 23 hours then up for 2 mins then down 28 mins then up 16 mins then down 3 mins then up 1 day 24 hours.

I can easily focus on the ASA 5508 as it itself shuts down and reboots on its own which causes the drop of authentication as I have my DSL router in bridge mode and it authenticates.

the only thing I have changed on this ASA in the past month which this has only begun is the Cisco Logging. Is there a bug or glitch that would cause this what seems to be perfect reboot sequence?

any suggestions? BTW this power system is a nice battery backup system that has the ASA and 2 Linux servers running on and neither server reboots, just the ASA.

here is a pic from ISP side of the drops. 

1 Accepted Solution

Accepted Solutions

Leo Laohoo
Hall of Fame
Hall of Fame

Please read Cisco Adaptive Security Appliance Web Services Denial of Service Vulnerability and scroll down to the "Exploitation and Public Announcements" section where it specifically states:  

 

In September 2019, the Cisco Product Security Incident Response Team (PSIRT) became aware of additional attempted exploitation of this vulnerability in the wild. Cisco continues to strongly recommend that customers upgrade to a fixed Cisco ASA Software release to remediate this vulnerability.

 

View solution in original post

4 Replies 4

Leo Laohoo
Hall of Fame
Hall of Fame

Please read Cisco Adaptive Security Appliance Web Services Denial of Service Vulnerability and scroll down to the "Exploitation and Public Announcements" section where it specifically states:  

 

In September 2019, the Cisco Product Security Incident Response Team (PSIRT) became aware of additional attempted exploitation of this vulnerability in the wild. Cisco continues to strongly recommend that customers upgrade to a fixed Cisco ASA Software release to remediate this vulnerability.

 

Another new one:  Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Read-Only Path Traversal Vulnerability

Same as the other, currently vulnerability is being exploited in the wild.  

 

Leo Laohoo
Hall of Fame
Hall of Fame

And here is another:  Cisco Adaptive Security Appliance Remote Code Execution and Denial of Service Vulnerability

Same as above, this vulnerability is actively being exploited in the wild.  

Hello

 

I thank you again for your assistance and I apologize for the delay. 

I had the initial problem patched and after a week it was stable so that has been fixed. As far as the 2 more recent links you sent me I contacted Cisco again and he mentioned my initial patch fixed the first of the 2 links you sent me as well but he sent me another patch to fix the 2nd of the 2 vulnerabilities. So I am very happy with Cisco’s response and help and even more so with your guidance . Thank you.