cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
716
Views
15
Helpful
6
Replies

ASA5508 Failover Firewalls reboot

Hello Community!
We have two ASA5508s with failover (one active and one standby).
We need to reboot both firewalls due to a memory leak issue
What is the reboot process?
1. Check the status of the failover
2. Reboot the backup firewall.
3. Check the status of the backup firewall.
4. Check the status of the primary firewall.
5. Reboot the primary firewall.
6. Check the fault tolerance status of the primary firewall.
Is there any "how to..." guide or list of commands I can use?

Thank you!
Sincerely,
Andrey P.

6 Replies 6

@andreycgipokorskiy use the command "show failover" to determine the status before and after.

The primary should be "active" and the secondary should be "standby ready"

Reboot the secondary firewall, once up check the status. Then reboot the primary, this should automatically failover. Only do this if the output of "show failover" does not confirm there are any issues.

 

Hello Rob!
Thank you so much again!!!
I really appreciate your help with my second request!!!

Thank you so much MHM Cisco World!!

 
 

Just to add my two cents.  Your steps are correct but I would add an extra step. You might already plan to do this but good to put it down in writing.

  1. Check status of firewalls (show failover | in host)
  2. Reboot Secondary/standby firewall
  3. Check status of the firewall
  4. Failover so that Secondary/active
  5. verify traffic is passing through secondary/active firewall correctly
  6. reboot Primary/standby firewall
  7. Check status of firewall
  8. failover to Primary/active
  9. verify traffic is passing correctly.
--
Please remember to select a correct answer and rate helpful posts

Thank you Marius Gunnerud!! 
 
Review Cisco Networking for a $25 gift card