cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Bookmark
|
Subscribe
|
1053
Views
0
Helpful
8
Replies

Radius auth to standby ASA in Active Active Failover

mahesh18
Level 6
Level 6

 

Hi Everyone,

When ASA is in Active/standby failover i can ssh to standby ASA using Radius.

But when ASA is in multi context mode  Active/Active failover i can not do Radius Auth to standby ASA?

Is this default behaviour?

Regards

MAhesh

8 Replies 8

I would not have thought this is the default behavior...but then again, I have never tested this.  If you console into the standby context issue the command show run | in aaa.  Which authentication database is indicated?

--

Please remember to select a correct answer and rate helpful posts

--
Please remember to select a correct answer and rate helpful posts

 

Hi Marius,

both ASA active and standby in Active/active failover when i run the command

sh run | inc aaa

have same config with radius as protocol and same radius servers.

 

Regards

MAhesh

 

 

Also when i run command sh aaa-server on standby ASA it shows

 

Server status as Failed,Server disabled at

 

Regards

MAhesh

Collin Clark
VIP Alumni
VIP Alumni
That is not the default behavior. Make sure you have all the IP's in your AAA server.

 

Hi Collin,

Both ASA have same IP's in their AAA server group.

Regards

MAhesh

I think Collin was talking about having the IP addresses for both the Active and Standby ASA (for each context) in your RADIUS server.

 

Will check Entries of IP in radius.

Collin Clark
VIP Alumni
VIP Alumni
That is not the default behavior. Make sure you have all the IP's in your AAA server.
Review Cisco Networking for a $25 gift card