cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements
764
Views
0
Helpful
7
Replies
tommcmahontac
Beginner

ASA 5500 Restored a failed unit now seeing issues with VPN tunnels.

I restored the HA pair back to Active/Standby.

1 remaining issue.

I have 3 IPsec Site-to_SIte tunnels.

I noticed that when the NEW UNIT becomes ACTIVE that I am unble to pass traffic over the VPN tunnels.

When I failback I am able to pass traffic.

Any ideas?

Thanks...

7 REPLIES 7
Jennifer Halim
Cisco Employee

Can you pls check if the configuration gets synchronized to the new Unit, as well as you also have stateful failover configured?

Yes - stateful failover is configured. I have attached the configuration for review.

The Sync appears fine. The unit operates fine for a few hours and then the traffic stops getting passed over the VPN tunnels. I perform a failover and traffic passes immediately.