cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
849
Views
10
Helpful
5
Replies

Troubleshooting ASA Failing over

KGrev
Level 4
Level 4

Novice Here,

 

Occasionally, my asa's will failover to seconday/active. Im able to fail them back to primary/active with no issues.

I need help figuring out what is causing the failover. Is there a log anywhere I can troubleshoot with to signify an issue?

 

Thank you for any advice.

5 Replies 5

Marvin Rhoads
Hall of Fame
Hall of Fame

Look at the "show failover history" output on both appliances.

20211214_130431.jpg

 

I attached a photo above. Please let me know if you cannot see it. I'm gathering that there was an issue with my inside interface on my active Firewall?

 

 

Marvin Rhoads
Hall of Fame
Hall of Fame

Correct. The interface went down - most often due to the cabling or the downstream device to which it is connected.

Marvin,

 

I've looked at the logs for the inside connected device, in this case a cisco 6500, I dont see any interfaces go down for this time period.

 

Is there a more valuable resource other than "show logging" I could try on this device?

 

Thank you

The interface check fail can also be due to inability to reach the peer device on its interface standby address when one is configured. So there could have been something related to that causing the failover event.

Review Cisco Networking for a $25 gift card