Cisco ASA FTD 4100 SW version 9.8(4)-having different show run config
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-07-2021 09:32 AM
Hello Team,
i am having issue with my Cisco ASA firewall in FTD 4100 running in Multicontext mode.
Both primary and secondary firewall is having some different configuration
wherease Primary firewall is having correct configuration.
In order to mitigate the issue , should i run write standby command..
Will it impact any thing..
What will happen if i will not do any thing.. and need to upgrade the firewall and need to reboot the primary one..
Once the secondary will come up.. it can make my network worst.. and once Primary will come back. then it secondary write its configuration to primary and complete network will down.
Pls advise.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-07-2021 09:54 AM
Write standby would be the next move, I would definitely do a complete backup via ASDM for the entire config.
You can read about write standby here:
Regards,
Chakshu
Do rate helpful posts!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-07-2021 10:56 AM
Any recommendation procedure for FTD ASA
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-07-2021 11:58 PM
For multiple context mode, when you enter the write standby command in the system execution space, all contexts are replicated. If you enter the write standby command within a context, the command replicates only the context configuration.
Regards,
Chakshu
Do rate helpful posts!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
10-08-2021 06:57 PM
hi,
is the failover working/sync between primary and secondary FW?
also ensure ports on both units are all up.
post the output from 'system' context:
changeto system
show failover
show failover state
