Hi all,
This is probably not a specific firewall issue but as it happened on my firewalls I thought I'd post here.
I have 2 ASA5555-X firewalls back-to-back connected via a redundant pair of GigE CAT5 cables. I've configured both firewalls with a redundant interface, with both GigE ports as members on each.
I rebooted one of the firewalls this afternoon but couldn't reach it afterwards.
After a lot of head scratching I decided to shutdown one of the interfaces in the Redundant pair on the 'up' firewall. I did this to force the active interface to move. Lo and behold this fixed the issue, as it now must have connected to the active interface on the 'down' firewall.
Is there no intelligence in redundant interfaces to check which physical interface is active on the other side of the connection before deciding which one should be active on itself??
This seems stupid to me.
Any thoughts appreciated