cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
499
Views
3
Helpful
1
Replies

Anyconnect Profile Issue

marcuslover1
Level 1
Level 1

Hello,

I have 2 asa firewall in HA where I have created any-connect vpn profile for end users

All users profile are stored in flash as well as anyconnect client image

Suddenly due to some reason I need to shutdown my primary firewall

All things works good, secondary firewall came up,but no any connect user are able to connect their profile

When I see in ASA there are no profiles available in flash which I created in primary firewall

Its seems veired to me as both firewall config must be synced,..

Cn anyone help us what was the issue

or Should I need to create profile on both the firewall

1 Reply 1

Marvin Rhoads
Hall of Fame
Hall of Fame

AnyConnect profiles (and a few other things) are not automatically synchronized between ASAs in a failover pair. I'm not sure why Cisco has never fixed this but it's been a documented bug for quite some time.

You need to copy the files manually. They are small xml files and usually not too hard to copy.

If you've lost the primary unit altogether, you will need to recreate the profiles on the secondary active unit.