12-29-2010 04:25 AM - edited 03-11-2019 12:28 PM
I just stood up 2 ASA 5580-40 runnng 8.3(2) code.
I configured an active / passive failover configuration with a primary and secondary lan unit.
they are directly connected with 10g fiber connections.
i downed the primary and the secondary picked up. However, once i brought the primary back online, they continually failover from active to standby and back, over and over...
I removed the failover configuration on both units and reapplied the configuration following the instructions (again) from the configuration guide.
same issue.
Any thoughts on why these 2 appliances will fail back and forth like this?
thanks.
Bruce
12-29-2010 04:37 AM
Can you please share the output of the following from both primary and secondary FW:
sh run failover
sh failover
sh failover state
sh failover history
12-29-2010 04:43 AM
I can, but it will be a couple hours before I can get to the datacenter.
Other than those outputs, is there any thoughts on what could cause this? Polling maybe ? thats been one thought.
thanks.
Bruce
12-29-2010 04:44 AM
Not really, unless there are any cable or interfaces issue between the 2 ASAs, that's why it keeps failing over between the 2 firewalls.
12-29-2010 04:50 AM
if we down one of the peers, when we bring it back up, we actually see that the 2 appliances can "see" each other...it goes through the entire "peer detected, synchronizing configuration, config sync complete" process and then they start the entering standby state, active state, standby and so on, continuously...
we've changed out interfaces and fiber...
12-29-2010 04:56 AM
The output of the requested commands should tell us more information.
12-29-2010 05:01 AM
understood...I'll get those posted soon...
thanks for your thoughts and help.
Bruce
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide