05-12-2020 01:14 AM
We are running Cisco ASA firewalls in Cluster, yesterday there was alert for cluster failover.
When we check firewall uptime, it is showing differently in the system context and admin context.
Why uptime showing differently?
CiscoASA/admin/act# sh ver | i up
CiscoASA up 6 days 23 hours
failover cluster up 4 years 195 days
CiscoASA/admin/act# changeto sys
CiscoASA/act# sh ver | i up
Config file at boot was "startup-config"
CiscoASA up 4 years 184 days
failover cluster up 4 years 195 days
CiscoASA/act#
05-12-2020 05:25 AM - edited 05-12-2020 05:26 AM
Contexts can failover independently of one another. Generally it's due to what interfaces are included in their respective failover monitoring.
"show failover history" executed from both units will give you a more complete picture of when and why failover events have occurred.
05-12-2020 08:15 AM
05-12-2020 08:27 AM
"HELO not heard from mate" normally either means the mate went offline or (less likely) that the failover link had an issue. Checking the mate for its uptime would confirm if the first reason is the cause.
The uptime is for the context in which you run the command.
If you open a TAC case, the engineer can look at the configuration with you in real time and perhaps give you a more complete explanation.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide