cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
500
Views
0
Helpful
1
Replies

Cannot SSH into G0/0/1

KarelSoel
Level 1
Level 1

HI all, I'm working on ISP failover on ISR4300's using Boolean track statements and sla.
I'm running into a few (not all) where I cannot SSH into interface G0/0/1(backup ISP).

Here's what I've found.

G0/0/1 doesn't respond to ping from the outside.
I can SSH into G0/0/0(Primary ISP).
Both interfaces show as UP UP.
When I simulate a failure by shutting down G0/0/0, G0/0/1 then responds to pings and therefore can reach via SSH.
No shut interface G0/0/0 to simulate the primary ISP coming back online.
Repeat from the top.

This isn't all ISRs. Just a few. The configs across the company are pretty much the same.

Another Cisco bug?

Thanks for the input!

1 Reply 1

Giuseppe Larosa
Hall of Fame
Hall of Fame

Hello @KarelSoel ,

>> The configs across the company are pretty much the same.

Can you provide the configurations ?

 

It is difficult to say something meaningful without more info.

>> When I simulate a failure by shutting down G0/0/0, G0/0/1 then responds to pings and therefore can reach via SSH.

It is strange I agree.

However other features like NAT or Zone Based FW if enabled can influence the router.

 

Hope to help

Giuseppe