12-03-2017 02:38 PM - edited 02-21-2020 06:53 AM
Today we experienced something weird. We have 2 ASA5515's in failover state. Checking the logs, every failover check was fine until the secondary reported "Ifc Faillure". After that our Active unit also became "unresponsive"from the network (both units were responsive with console cable but there was no time to troubleshoot right that time) and we had to reload both units to get everything back up.The Active unit is up and running and the Secondary is up and "Standby Ready".
Reloading the units also seemed to have "wiped" the show failover history. How can i investigate what happened now? We're having serious doubts about the failover now.
12-03-2017 05:33 PM
hi,
it's generally a good idea to retrieve logs and show command output before reloading the box.
you can use the show crashinfo command and open a TAC case. TAC can debug and have to tools to know what went wrong on your ASA pair.
12-04-2017 12:40 AM
Thank you for the information. Too bad there is no crashinfo since the units didn't completely crash. The problems we saw was:
- Secondary Unit reporting "(Secondary) Failover interface failed"
- 8 Seconds later Primary Unit reporting "(Primary) Failover interface failed"
The strange thing is that i wasn't able to SSH into any of the 2 ASA's, but both ASA's were still logging to our LogServer. There were also other signs of netwerk issue's.
Besided saving the logs before reloading next time, is there any other useful things i could check?
12-04-2017 05:24 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide