05-11-2018 03:24 AM - edited 02-21-2020 07:45 AM
Our FMC keeps throwing in the same VPN status event "VPN tunnell between FWA/peerip/subnetX and FWB/peerip/subnetY is inactive due to to Deleted backup session"
Firstly any idea what a backup session refers to? If its a VPN SA, well I've checked the Firewalls and the VPN SA for these subnets is ok on each side. Traffic is being encrypted/decrypted, SPIs match. I have no inactive SAs on the FTDs. So why does FMC keep reporting this?
Secondly, since it'sthe same message every 2-3 mins including the subnets in question, shouldn't the Health Events Value column count increment instead rather than generating a new message?
05-12-2020 08:16 AM
I'm seeing the same issue and would like to know if this was ever fixed.
05-12-2020 10:04 AM - edited 05-12-2020 10:16 AM
01-18-2021 07:53 PM - edited 01-18-2021 07:54 PM
We're seeing this as well, but for VPN configurations that overlap with another's extranet protected networks (as a backup session). The errors point to it being a critical issue, but the other session is up and traffic is flowing as expected.
These VPN sessions are to AWS and Azure.
I believe this only appeared for us after upgrading from 6.4.0.5 to 6.6.1 for the FMC 1000. Any ideas? It's just adding to the list of alerts we're getting that are of no significance to us.
04-23-2021 12:14 PM
If anyone has discovered what could be the reason please share. I have a policy based routing and have routed all the traffic from one site to the HQ. After that change the message keeps rolling in. Everything seems to be working as the tunnel is up and i can pig bidirectional as well as all the routes to internet and all is going trough the tunnel.
Thanks in advance.
PS: version 6.7
11-19-2021 05:31 AM
Did anyone ever get an answer to this string? I have been getting the same for quite a while and everything seems to be working. Just want to know if I have something misconfigured that would cause this.Thank You
08-25-2023 04:07 AM - edited 08-25-2023 04:07 AM
I also would be interested in a resolution to this. Im having the same issue, VPN is all working but have a critical health alert.
10-17-2023 02:55 AM
I am having the same issue however, it is reporting VPN tunnels being down with the alert originating from the standby FTD. The VPN tunnel is connected and working on the active FTD.
02-01-2024 06:52 AM
Did anyone find a resolution for this issue? We are receiving the same error. Please let me know if anyone found anything.
05-13-2024 06:31 AM
Did anyone find a resolution for this issue? We are receiving the same error
05-21-2024 08:11 AM - edited 05-21-2024 08:12 AM
I am getting this critical error also on v 7.2.6. Our tunnel with Azure is operating as expected, so unsure where this error is coming from. It would be appreciated if the Cisco Moderator who is managing this forum could provide some input as19 other people have reported the same issue. Thank you.
05-27-2024 01:00 AM - edited 05-27-2024 01:15 AM
Just starting seeing the same error on FMC version 7.2.7 that was upgraded from 7.2.4 last week. Didn't noticed this before.
08-26-2024 04:08 AM
I am running FMC 7.2.4 with 2 FTDs in high availability, site-2-site vpn is configurered against Azure and works fine. But both FTD (active/standby) have this alert app every 5 minutes,
10-31-2024 07:12 AM
Did anyone get a resolution on this? We have just upgraded to 7.2.9 connecting to an AWS Peer.
10-10-2024 01:17 PM
Same here - it started after a Snort crash v.7.2.8.1 !
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide