02-20-2024 11:11 AM
Hello ,
I have a cluster contains: CUCM01 , CUCM02, IM Presence 01 and IM Presence 02 with version 14.0.1
The backup not passed it give me this message : unable to contact server. master or local agent could be down , on IM Presence 01 and IM Presence 02.
Could you help me please ?
Best regards
02-21-2024 01:29 AM
There are a lot of old threads, asking the same question. Have you checked them first, before asking the same question again?
02-21-2024 01:49 AM
02-21-2024 01:58 AM - edited 02-21-2024 02:59 AM
And what did you do, after you checked them?
Everything is there in this old thread:
https://community.cisco.com/t5/unified-communications-infrastructure/quot-unable-to-contact-server-master-or-local-agent-could-be/td-p/2941292
02-21-2024 02:58 AM
@b.winter I checked Services Cisco DRF Master and DRF local ,
and cert ipsec-trust they have the same serial number of the certificate ipsec.pem cucm publisher on all node.
02-21-2024 03:01 AM
And have you restarted the services?!
If you have checked something with the certs already, have you checked, if the ipsec certs are still valid on all nodes? if not, regenerate them.
02-21-2024 03:36 AM
@b.winter Thank you for your reply , the certs ipsec are still valid , yes i had restarted the services Cisco DRF Master and DRF local on all node.
Best regards
02-21-2024 03:46 AM
Did you restart the services in the correct order?
Publisher:
DRF Master
DRF Local
Subscribers:
DRF local?
02-21-2024 03:59 AM
02-21-2024 03:45 AM
Here the the actions that I did:
-Regenerated ipsec.pem certificate on all server
-Download ipsec.pem from cucm pub and upload it on Sub node on ipsec-trust
-Restarted DRS Master and local on PUB DRS local on all SUB
Best regards
02-21-2024 04:15 AM
I’ve never done this step.
-Download ipsec.pem from cucm pub and upload it on Sub node on ipsec-trust
From where did you pickup that this is needed?
02-21-2024 04:24 AM
02-21-2024 04:32 AM
That’s only necessary if you don’t have the same IPSEC certificate on all nodes in the cluster, including the IMP nodes as outlined in point 7 in the blog you referenced.
7. Certificate Serial Number should be same on all the nodes of the cluster. If Serial Number of any node is mismatched, complete these steps.
Did you check on this prior and was the certificate serial not the same on all cluster nodes?
02-21-2024 04:37 AM
@Roger Kallberg thank you for your reply , yes i checked it before , the certificate serial number was not the same on all cluster nodes.
02-21-2024 04:00 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide