cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
193
Views
2
Helpful
2
Replies

ASA 5506x error message: 528FAIL re_compile not all rules are compiled

Phoneguy-Mike
Level 1
Level 1

Hello,

We are having an issue with our ASA 5506x router. Recently the router would stop responding to client VPN requests and when trying to access the unit with ASDM it would just hang. Power cycling the unit would return normal function for a few days but then exhibit the same behavior.

Connecting to the unit using a console cable does work. When connected the console repeatedly shows the following message, which I have searched for but get no results.

% Failed to allocate regular expression state table: 528FAIL re_compile, not all rules are compiled

Based on the wording I would guess it has something to do with the firewall rules but I can't find any information on this message. 

Any insight you can offer would be greatly appreciated. Thank you

P.S. I wasn't sure where I should put this post, hopefully this is the right place.

1 Accepted Solution

Accepted Solutions

marce1000
VIP
VIP

 

          - FYI : https://bst.cloudapps.cisco.com/bugsearch/bug/CSCtd34212
   Reboot the ASA , afterwards look at the current software version and check if more recent (advisory) release(s) are
   available , if so upgrade ,

M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

View solution in original post

2 Replies 2

marce1000
VIP
VIP

 

          - FYI : https://bst.cloudapps.cisco.com/bugsearch/bug/CSCtd34212
   Reboot the ASA , afterwards look at the current software version and check if more recent (advisory) release(s) are
   available , if so upgrade ,

M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

Thank you for the reply. The link was very helpful.

We did identify memory exhaustion as a possible cause and this helps confirm that. Unfortunately, management let our support contract expire so we do not have access to firmware updates. However, this device is EOL anyway so this is a good excuse to replace it.

Thank you again.

Link info repeated for webrot purposes:

Unexpected ACL recompile failure messages
BugID: CSCtd34212
Description
Symptom: Due to memory exhaustion issues ACLs were not properly compiled and traffic was failing.
Conditions: While working on a 5520 in the solution test set up and trying to run a mix of HTTP, SMTP, DNS, SIP traffic it was observed from the Agilent test tool that the SMTP traffic was not passing. Upon further review the following messages were seen on the console: % Failed to allocate regular expression state table: 520FAIL re_compile, not all rules are compiled
This appears to be a memory exhaustion issue.
Workaround: None

Review Cisco Networking for a $25 gift card