10-20-2022 08:22 AM
I have a pair of ASA 5585-x firewalls in HA mode - after a failover we are seeing VPN's comes becoming non-responsive up to 9hrs after failover. The investigation has indicated that the preshare key isn't be renegotiated when the lifetime counter times out. Resulting in the need to clear vpn and impacting customer service
We are currently running 9.8.4(20) can't find any indication of a bug.
Anyone else experienced this issue?
10-20-2022 08:32 AM
ASA failover outside interface use to connect to other peer
the only case here that the Outside IP is not exchange from active to standby when active is failed.
10-23-2022 11:59 PM
We have 53 vpn's terminating or traversing these ASA's if there was a routing or IP issue wouldn't impact all of them
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide