cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
801
Views
0
Helpful
4
Replies

Link between ASA 5525 and Nexus 5548UP

Hi 

I have two Nexus 5538UP switches, that i have bought some peak optical SFTP modul to, the model is PTSFP-24-1111F

I will used them to link my ASA 5525 to directly to my Nexus 5548UP switches.

The problems is that when i make a link between Nexus 5548UP and the ASA 5525. I will not get link on my Nexus 5548UP, but my ASA 5525, says there are link.

i have change the speed to 1000 on the Nexus 5548.

If i put this module in my ASR or 3750G there is no problem, i then have link in both end.

Can anybody help me? :)

SIL-CORE-SW01# sh int eth1/18 transceiver
Ethernet1/18
transceiver is present
type is SFP-1000BASE-T
name is PeakOptical
part number is PTSFP-24-1111F
revision is A
serial number is CIB170601156
nominal bitrate is 0 MBit/sec
Link length supported for copper is 100 m
cisco id is --
cisco extended id number is 4

SIL-CORE-SW01# sh int eth1/18
Ethernet1/18 is down (Link not connected)
Dedicated Interface

Belongs to Po6
Hardware: 1000/10000 Ethernet, address: 00de.fb4c.4959 (bia 00de.fb4c.4959)
Description: SIL-FW01-Module1-Gi0/2
MTU 1500 bytes, BW 1000000 Kbit,, BW 1000000 Kbit, DLY 10 usec
reliability 255/255, txload 1/255, rxload 1/255
Encapsulation ARPA, medium is broadcast
Port mode is trunk
full-duplex, 1000 Mb/s, media type is 1G
Beacon is turned off
Input flow-control is off, output flow-control is off
Rate mode is dedicated
Switchport monitor is off
EtherType is 0x8100
Last link flapped never
Last clearing of "show interface" counters 01:43:12
0 interface resets
30 seconds input rate 0 bits/sec, 0 packets/sec
30 seconds output rate 0 bits/sec, 0 packets/sec
Load-Interval #2: 5 minute (300 seconds)
input rate 0 bps, 0 pps; output rate 0 bps, 0 pps
RX
11 unicast packets 0 multicast packets 0 broadcast packets
11 input packets 1418 bytes
0 jumbo packets 0 storm suppression bytes
0 runts 0 giants 0 CRC 0 no buffer
0 input error 0 short frame 0 overrun 0 underrun 0 ignored
0 watchdog 0 bad etype drop 0 bad proto drop 0 if down drop
0 input with dribble 0 input discard
0 Rx pause
TX
0 unicast packets 0 multicast packets 0 broadcast packets
0 output packets 0 bytes
0 jumbo packets
0 output error 0 collision 0 deferred 0 late collision
0 lost carrier 0 no carrier 0 babble 0 output discard
0 Tx pause

SIL-CORE-SW01# sh run int eth1/18

!Command: show running-config interface Ethernet1/18
!Time: Mon Jun 26 15:05:08 2017

version 7.1(4)N1(1)

interface Ethernet1/18
description SIL-FW01-Module1-Gi0/2
switchport mode trunk
switchport trunk native vlan 31
speed 1000
duplex full
channel-group 6

SIL-CORE-SW01# sh run int po6

!Command: show running-config interface port-channel6
!Time: Mon Jun 26 15:06:05 2017

version 7.1(4)N1(1)

interface port-channel6
switchport mode trunk
switchport trunk native vlan 31
speed 1000
duplex full
vpc 106

4 Replies 4

joselgo2
Cisco Employee
Cisco Employee

Hello Kennet!

Do you try to change the SFTP module in another port of your Nexus?, can you provided the show version of your Nexus and ASA?.

Greetings!

Thx for you reply.

Yes i have try to put the SFP into another ports.

I find someone how have the same problems with an older Nexus switch, i think the post, was about an Nexus 5000 switch or so. And he solved it by plug the sfp in port between 1-14. I have also try this.

Show version from the nexus:

Cisco Nexus Operating System (NX-OS) Software
TAC support: http://www.cisco.com/tac
Documents: http://www.cisco.com/en/US/products/ps9372/tsd_products_support_series_home.html
Copyright (c) 2002-2016, Cisco Systems, Inc. All rights reserved.
The copyrights to certain works contained herein are owned by
other third parties and are used and distributed under license.
Some parts of this software are covered under the GNU Public
License. A copy of the license is available at
http://www.gnu.org/licenses/gpl.html.

Software
BIOS: version 3.6.0
Power Sequencer Firmware:
Module 1: v3.0
Module 2: v2.0
Microcontroller Firmware: version v1.2.0.1
QSFP Microcontroller Firmware:
Module not detected
CXP Microcontroller Firmware:
Module not detected
kickstart: version 7.1(4)N1(1)
system: version 7.1(4)N1(1)
BIOS compile time: 05/09/2012
kickstart image file is: bootflash:///n5000-uk9-kickstart.7.1.4.N1.1.bin
kickstart compile time: 9/2/2016 10:00:00 [09/02/2016 19:37:35]
system image file is: bootflash:///n5000-uk9.7.1.4.N1.1.bin
system compile time: 9/2/2016 10:00:00 [09/02/2016 21:16:21]


Hardware
cisco Nexus5548 Chassis ("O2 32X10GE/Modular Universal Platform Supervisor")
Intel(R) Xeon(R) CPU with 8253848 kB of memory.
Processor Board ID FOC20416V5N

Device name: SIL-CORE-SW01
bootflash: 1966080 kB

Kernel uptime is 56 day(s), 23 hour(s), 26 minute(s), 43 second(s)

Last reset at 254798 usecs after Wed May 3 12:31:07 2017

Reason: Disruptive upgrade
System version: 7.0(0)N1(1)
Service:

plugin
Core Plugin, Ethernet Plugin

Show version from asa

Result of the command: "sh ver"

Cisco Adaptive Security Appliance Software Version 9.7(1)2
Firepower Extensible Operating System Version 2.1(1.66)
Device Manager Version 7.7(1)150

Compiled on Mon 27-Feb-17 07:54 PST by builders
System image file is "disk0:/asa971-2-smp-k8.bin"
Config file at boot was "startup-config"

SIL-FW01 up 85 days 22 hours
failover cluster up 91 days 23 hours

Hardware: ASA5525, 8192 MB RAM, CPU Lynnfield 2394 MHz, 1 CPU (4 cores)
ASA: 4186 MB RAM, 1 CPU (1 core)
Internal ATA Compact Flash, 8192MB
BIOS Flash MX25L6445E @ 0xffbb0000, 8192KB

Encryption hardware device : Cisco ASA Crypto on-board accelerator (revision 0x1)
Boot microcode : CNPx-MC-BOOT-2.00
SSL/IKE microcode : CNPx-MC-SSL-SB-PLUS-0005
IPSec microcode : CNPx-MC-IPSEC-MAIN-0026
Number of accelerators: 1
Baseboard Management Controller (revision 0x1) Firmware Version: 2.4


0: Int: Internal-Data0/0 : address is 2cd0.2dc6.3563, irq 11
1: Ext: GigabitEthernet0/0 : address is 2cd0.2dc6.3568, irq 5
2: Ext: GigabitEthernet0/1 : address is 2cd0.2dc6.3564, irq 5
3: Ext: GigabitEthernet0/2 : address is 2cd0.2dc6.3569, irq 10
4: Ext: GigabitEthernet0/3 : address is 2cd0.2dc6.3565, irq 10
5: Ext: GigabitEthernet0/4 : address is 2cd0.2dc6.356a, irq 5
6: Ext: GigabitEthernet0/5 : address is 2cd0.2dc6.3566, irq 5
7: Ext: GigabitEthernet0/6 : address is 2cd0.2dc6.356b, irq 10
8: Ext: GigabitEthernet0/7 : address is 2cd0.2dc6.3567, irq 10
9: Int: Internal-Data0/1 : address is 0000.0001.0002, irq 0
10: Int: Internal-Control0/0 : address is 0000.0001.0001, irq 0
11: Int: Internal-Data0/2 : address is 0000.0001.0003, irq 0
12: Ext: Management0/0 : address is 2cd0.2dc6.3563, irq 0
13: Int: Internal-Data0/3 : address is 0000.0100.0001, irq 0

Licensed features for this platform:
Maximum Physical Interfaces : Unlimited perpetual
Maximum VLANs : 200 perpetual
Inside Hosts : Unlimited perpetual
Failover : Active/Active perpetual
Encryption-DES : Enabled perpetual
Encryption-3DES-AES : Enabled perpetual
Security Contexts : 2 perpetual
Carrier : Disabled perpetual
AnyConnect Premium Peers : 2 perpetual
AnyConnect Essentials : 750 perpetual
Other VPN Peers : 750 perpetual
Total VPN Peers : 750 perpetual
AnyConnect for Mobile : Disabled perpetual
AnyConnect for Cisco VPN Phone : Disabled perpetual
Advanced Endpoint Assessment : Disabled perpetual
Shared License : Disabled perpetual
Total TLS Proxy Sessions : 2 perpetual
Botnet Traffic Filter : Disabled perpetual
IPS Module : Disabled perpetual
Cluster : Enabled perpetual
Cluster Members : 2 perpetual

This platform has an ASA5525 VPN Premium license.


Failover cluster licensed features for this platform:
Maximum Physical Interfaces : Unlimited perpetual
Maximum VLANs : 200 perpetual
Inside Hosts : Unlimited perpetual
Failover : Active/Active perpetual
Encryption-DES : Enabled perpetual
Encryption-3DES-AES : Enabled perpetual
Security Contexts : 4 perpetual
Carrier : Disabled perpetual
AnyConnect Premium Peers : 750 perpetual
AnyConnect Essentials : 750 perpetual
Other VPN Peers : 750 perpetual
Total VPN Peers : 750 perpetual
AnyConnect for Mobile : Enabled perpetual
AnyConnect for Cisco VPN Phone : Enabled perpetual
Advanced Endpoint Assessment : Enabled perpetual
Shared License : Enabled perpetual
Total TLS Proxy Sessions : 4 perpetual
Botnet Traffic Filter : Enabled perpetual
IPS Module : Disabled perpetual
Cluster : Enabled perpetual

This platform has an ASA5525 VPN Premium license.

Serial Number: FCH2046JRPX
Running Permanent Activation Key: 0xe53bdf67 0xe8d59e12 0x110299cc 0xfe046830 0x470cc38d
Configuration register is 0x1

Image type : Release
Key version : A

Configuration last modified by ITAdmin at 15:25:25.602 CEDT Mon Jun 26 2017

Hi Kennet!

I searched for a bug, but i didn´t find something like that, anyway sometimes the sftp with some third vendors have some issues in the Nexus, so my recommendation is try with other model from other vendor, hoping you have in stock.

greetings!

Ok, i will try contacting the vendor. I don't have other SFP's, with kobber.

Do you know some others that Cisco, that cost a fortune? :)

Review Cisco Networking for a $25 gift card