ACE 4710 upgrade to A4(2.1)

Hi,
I am currenlty running A3(2.6) and evaluate the possibility of upgrading to A4(2.1).
The Instal & Upgrade Guide A4(2.0) mentions that A4(2.0) does not include all features of A4(1.1).
Does this apply to A4(2.1)? The Release Notes mentions a list of features merged from A4(1.1) to A4(2.1)
but does not clarify if there any features not merged.
http://www.cisco.com/en/US/customer/docs/app_ntwk_services/data_center_app_services/ace_appliances/vA4_2_0/upgrade/guide/aceupgradgd.html#wp658979
http://www.cisco.com/en/US/customer/docs/app_ntwk_services/data_center_app_services/ace_appliances/vA4_2_x/release/note/RACEA4_2_X.html#wp656229
Does anybody experienced an upgrade to A4(2.1) and are there any implications (other than the ones mentioned in the Release Notes)?
./G

George-
You probably want to get a tac case open to be sure you don't have any SSL related issues/bugs going on here. However, my ininitial thought was either HTTP parse length is too short for the HTTP header your client may be sending.
Check "show stat http" and look for both of these:
"Max parselen errors" and "Static parse errors"
If you see any, then create an http parameter map and apply it to the class map under the policymap multimatch.
i.e.
parameter-map type http FixMe
set header-maxparse-length 8192
Policy-map multi-match PMM
  Class VIP
   loadbalance vip inservice
   loadbalance policy LBPM
   appl-parameter http advanced-options FixMe
Chris

Similar Messages

  • ACE 4710 upgrading software problem

    I logged into ACE 4710 to upgrade the image to c4710ace-mz.A1_8_0.bin. I logged in with Admin status and I got the following message, "
    ACE4710/Admin# delete image:c4710ace-mz.3.0.0_A1_7a.bin
    delete: cannot remove 'c4710ace-mz.3.0.0_A1_7a.bin': Permission denied"
    Is this a bug? Is there a workaround? Thank you.

    I am getting the same message again when i tried to delete an image and put a new image on.
    ACE4710/Admin# dir image:
    180784189 May 20 07:52:18 2008 c4710ace-mz.A1_8_0.bin
    176933319 May 6 07:10:04 2008 c4710ace-mz.A1_7b.bin
    Usage for image: filesystem
    714985472 bytes total used
    167362560 bytes free
    882348032 bytes total
    ACE4710/Admin# delete image:4710ace-mz.A1_7b.bin
    delete: cannot remove '4710ace-mz.A1_7b.bin': No such file or directory
    How can this issue be resolved?

  • Cannot Telnet to ACE 4710 after upgrade to A4(2.3)

             I have a pair of ACE 4710s with 12 contexts sharing the load, running A4(2.1). Yesterday I upgraded one of them to A4(2.3)
    now I cannot telnet to the Admin context.Pings ok. I can telnet to other contexts on the box and everything seems to be working ok   
    when i do a " sh telnet"
    comes back with
    No Session Information is available
    sh telnet maxsessions
    telnet maxsessions 16
    Can anybody help?

    further this post, it was not a resource problem as had allocated 5% for the Admin context.
    I up graded IOS Saturday evening, could not Telnet in, tried again on Sunday same result,
    though this morning (Monday) Can now telnet in ok very strange
    I was connecting via the AUX line of a 2851 router to the console port.
    whe I disconnected this morning I saw the following message
    INIT: id "T0" respawning too fast : disabled for  5 minutes
    not sure if this is a 2851 message or an ACE message, but after getting that message is when I was able to Telnet in
    was it a coincidence
    anybody any ideas

  • Upgrade steps for ACE 4710

    Hi Everyone
    We will be upgrading our ACE 4710s from A3(2.2) to A4(1.0). We have a pair in high availability mode. Has anyone here got any tips on how we can get a smooth upgrade without downtime? Is this even possible?
    Thanks
    A

    Of course it is possible to upgrade with no downtime!
    However it is always recommended to schedule the upgrade in a maintenance window to minimize the impact in case of any issues.
    You can normally find the documented procedure here for the upgrade:
    http://cco/en/US/docs/app_ntwk_services/data_center_app_services/ace_appliances/vA3_1_0/configuration/admin/guide/upgrade.html#wp1012243
    I find in fact the best would be the following:
    1. Upgrade the stand by module first.
    2. Once reloaded, switchover to the standby and verify all services working correctly.
    3.Upgrade the new stand by module.
    4. Eventually switch over again to restore the active box as per the original configuration.
    By doing this, if for some reason the first switchover at point 2. would not work, you can switch back to a safe scenario which you are sure to work.
    Cheers,
    Domenico.

  • Upgrading ACE 4710 & Licensing

    Hello
    We have two pairs of ACE 4710s, one pair running A3(2.4) and the other pair A3(2.0). We plan to upgarde the second pair so that they are running the same image as the first pair (we know they are not the latest, but this is the first step in a larger rollout plan, and to aid some troublshooting for a major issue we are seeing.)
    I have details of the upgrade steps, but my question is with regards to the licenses which are now enforced after (2.0). We currently have the following on the first pair, but are these part of the default licenses for (2.4) or would we need to purchase these as well?
    ACE-AP-500M-LIC
    ACE-AP-C-100-LIC
    ACE-AP-OPT-50-K9
    ACE-AP-SSL-05k-K9
    Thanks in advance
    Shaun

    According to the release notes, the default with the ACE running A3 is :
    •Performance: 1 gigabit per second (Gbps) appliance throughput
    •Virtualization: 1 admin context and 5 user contexts
    •Secure Sockets Layer (SSL): 100 transactions per second (TPS)
    •Hypertext Transfer Protocol (HTTP) compression: 100 megabits per second (Mbps)
    so you don't have to purchase anything

  • ACE 4710 and mangled HTTP requests

    After replacing a Cisco CSS/SSL  Accelorator and PIX firewall with an ACE 4710 to do load balancing and  SSL encryption behind an ASA firewall we started seeing mangled HTTP  requests in the Apache access logs for the servers in the server farm.  Here is one example:
    XX.XX.XXX.XXX  - - [21/Oct/2012:01:42:12 -0500]  "heckoutFlag=true&verifyPassword=false&newsletter=false&emailaddress=&email2=&pass1=&pass2=&username=POST /register/LServlet HTTP/1.1" 501 3322 "https://www.ourwebsite.com/register/CServlet" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)"
    Rather  than appearing just after the timestamp, the "POST /register/LServlet"  is tacked on to header information that shouldn't even appear in the  log. Also the first letter in that header information is always missing  (heckoutFlag instead of checkoutFlag in this example). 
    The  mangled request always shows up as a 501 HTTP error and shows up late  in the Apache access logs (timestamp is out of chronogical order) and  always appears with several duplicate POSTs:
    XX.XX.XXX.XXX - - [21/Oct/2012:01:42:23 -0500] "POST /register/LServlet HTTP/1.1" 200 8537 "https://www.ourwebsite/register/CServlet" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)"
    XX.XX.XXX.XXX - - [21/Oct/2012:01:44:12 -0500] "POST /register/LServlet HTTP/1.1" 200 8537 "https://www.ourwebsite/register/CServlet" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)"
    XX.XX.XX.XXX  - - [21/Oct/2012:01:42:12 -0500]   "heckoutFlag=true&verifyPassword=false&newsletter=false&emailaddress=&email2=&pass1=&pass2=&username=POST /register/LServlet HTTP/1.1" 501 3322 "https://www.ourwebsite.com/register/CServlet"  "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)"
    XX.XX.XXX.XXX - - [21/Oct/2012:01:44:12 -0500] "POST /register/LServlet HTTP/1.1" 200 8537 "https://www.ourwebsite/register/CServlet" "Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0)"
    This is occurring for several different URLs and not just the one above and for multiple web browsers.
    The ACE load balances to servers running Tomcat 7 with Apache HTTP server v. 2.2.14.
    A recent ACE software upgrade to A5(2.1) has not fixed the problem.
    Has anyone seen this before?
    Thanks for any insight you can provide.
    -Kari

    Hi Kari,
    Do you have a sample of the configuration which you got with the CSS?
    What is the current configuration which you got on the ACE?
    Can you shows this output: # show stats http?
    Jorge

  • ACE 4710 Web Optimization Licnesing

    I currently have a 4710 running the 1Gbps package. We are utilizing Application Acceleration and are comg very close to hitting our 10,000 Web Optimization connection limit. I am trying to find out how to upgrade that.
    I see in our license usage an option of ACE-AP-OPT-UP1-K9 but can find no information on this part number. Does anyone know if this is even available and what it brings you connection limit to?
    ACE01/Admin# show license usage
    License                      Ins   Lic    Status   Expiry Date   Comments
                                      Count
    ACE-AP-C-UP1                  No     -    Unused                 -
    ACE-AP-C-UP2                  No     -    Unused                 -
    ACE-AP-C-UP3                  No     -    Unused                 -
    ACE-AP-01-LIC                 No     -    Unused                 -
    ACE-AP-01-UP1                 No     -    Unused                 -
    ACE-AP-02-LIC                 No     -    Unused                 -
    ACE-AP-02-UP1                 No     -    Unused                 -
    ACE-AP-04-LIC                 No     -    Unused                 -
    ACE-AP-04-UP1                 No     -    Unused                 -
    ACE-AP-04-UP2                 No     -    Unused                 -
    ACE-AP-VIRT-5                 No     -    Unused                 -
    ACE-AP-500M-LIC               No     -    Unused                 -
    ACE-AP-VIRT-020               No     -    Unused                 -
    ACE-AP-C-100-LIC              No     -    Unused                 -
    ACE-AP-C-500-LIC              Yes    1    In use   never         -
    ACE-AP-C-500-UP1              No     -    Unused                 -
    ACE-AP-OPT-50-K9              No     -    Unused                 -
    ACE-AP-C-1000-LIC             No     -    Unused                 -
    ACE-AP-C-2000-LIC             No     -    Unused                 -
    ACE-AP-OPT-LIC-K9             Yes    1    In use   never         -
    ACE-AP-OPT-UP1-K9             No     -    Unused                 -
    ACE-AP-SSL-05K-K9             Yes    1    In use   never         -
    ACE-AP-SSL-07K-K9             No     -    Unused                 -
    ACE-AP-SSL-100-K9             No     -    Unused                 -
    ACE-AP-SSL-UP1-K9             No     -    Unused                 -
    ACE-AP-SSLUP-5K-K9            No     -    Unused                 -
    ACE-AP-VIRT-020-UP            No     -    Unused                 -

    Unfortunately, ACE-AP-OPT-LIC-K9 is not available on ACE4710 and
    ACE 4710 cannot handle more than 10,000 concurrent connections..
    When you use the ACE to perform a specific set of application
    acceleration and optimization functions, and the ACE reaches the
    maximum of 10,000 concurrent connections, the appliance stops
    accepting any additional concurrent connections until the count
    drops below 10,000.
    http://www.cisco.com/en/US/partner/docs/app_ntwk_services/data_center_app_services/ace_appliances/vA3_x/command/reference/optimize.html#wp1048813
    Regards,
    Yuji

  • ACE 4710 - Gracefully Shutting Down a Server

    Hi,
    Recently I had to stop an RServer to allow for software upgrades. I entered a no inservice command in the rserver config and all the connections on the serverfarm disappeared. I thought the no inservice should allow existing connections to finish. Is there another way of taking a server out of service?
    We are running on an ACE 4710 version A3(2.5). We offload SSL on the ACE and use sticky connections using cookie insert
    Thanks for your help

    Hi,
    To gracefully shutdown use the "no inservice" on the rserver within the serverfarm rather than on the rserver definition.
    HTH
    Cathy

  • Cannot Telnet back into standby ACE after upgrading to V4(2.1)

    I am in the process of upgrading from v3.2.5 to v4.2.1, i have been follwing the upgrade/downgrade guide forv4(2.0) for my redunanant pair of ACE 4710.
    everything ok, following procedure after the standby is reloaded and comes up to standby-warm, Iget the license incompatabilty message on the primary.
    but I cannot telnet back into the standby, i can ping it ok though.
    I am loathe to go any further, and do the 'ft Switchover all' and reload the primary incase I cannot telnet back into the primary when it comes back up.
    Is this a known problem? whats the fix?

    Hi, I have a similar problem, when I want to telnet to the ACE sometimes does not work, can you tell me how can I give to the admin context more resources?

  • ACE 4710 bundle license backup

    Hello,
    Is it possible to backup ACE appliance licenses if product is bought as a bundle?
    ACE-4710-BAS-SK-K9
    Promo Bundle - ACE 4710 HW-1Gbps-1K SSL-100MbpsComp-5VC
    Following is mentioned in the ACE documentation:
    "If you need to replace the ACE, you can copy and install the license file for the license onto the replacement appliance."
    But, when we try to backup licenses, we get following results:
    ACE-1/Admin# sh license
    ACE-1/Admin# copy licenses disk0:mylicenses.tar
    Backing up license... failed: License file not found
    ACE-1/Admin# sh license status
    Licensed Feature Count
    Compression Performance in Mbps 100
    Web Optimization Concurrent Conns. 50
    SSL transactions per second 1000
    Virtualized contexts 5
    Module bandwidth in Gbps 1.0
    ACE-1/Admin# sh license usage
    License Ins Lic Status Expiry Date Comments
    Count
    ACE-AP-C-UP1 No - Unused -
    ACE-AP-C-UP2 No - Unused -
    ACE-AP-C-UP3 No - Unused -
    ACE-AP-01-LIC No - Unused -
    ACE-AP-01-UP1 No - Unused -
    ACE-AP-02-LIC No - Unused -
    ACE-AP-02-UP1 No - Unused -
    ACE-AP-04-LIC No - Unused -
    ACE-AP-04-UP1 No - Unused -
    ACE-AP-04-UP2 No - Unused -
    ACE-AP-VIRT-5 No - Unused -
    ACE-AP-500M-LIC No - Unused -
    ACE-AP-VIRT-020 No - Unused -
    ACE-AP-C-100-LIC No - Unused -
    ACE-AP-C-500-LIC No - Unused -
    ACE-AP-C-500-UP1 No - Unused -
    ACE-AP-OPT-50-K9 No - Unused -
    ACE-AP-C-1000-LIC No - Unused -
    ACE-AP-C-2000-LIC No - Unused -
    ACE-AP-OPT-LIC-K9 No - Unused -
    ACE-AP-OPT-UP1-K9 No - Unused -
    ACE-AP-SSL-05K-K9 No - Unused -
    ACE-AP-SSL-07K-K9 No - Unused -
    ACE-AP-SSL-100-K9 No - Unused -
    ACE-AP-SSL-UP1-K9 No - Unused -
    ACE-AP-SSLUP-5K-K9 No - Unused -
    ACE-AP-VIRT-020-UP No - Unused -
    I suppose licenses cannot be backuped because they are bundled and delivered with the bundle by default, and not installed...
    Does anyone know what would be the procedure for this bundled licenses in case of ACE HW replacement needed?
    Best regards,
    Jasmina

    Hi Jasmina,
    License file management is quite simple for ACE.  Two methods; save original license email or copy from disk0:.
    If you purchased and upgraded license, and followed procedure to generate it, you would have received your license via email.   We recommend per  documentation (License ordering section) that you:
    "Step 5 Save the license key e-mail in a safe place in case you need it in the future (for example, to transfer the license to another ACE). "
    Also,  to apply,  you copy the license file to disk0: on the ACE.  This *.lic file resides on disk0: thereafter.
    So if you did not happen to save the original email when you obtained the license, and the license has been installed, then you can simply copy the *.lic file off the ACE from disk0: to a safe place.  Example copying file from ACE to FTP server:
    Switch/Admin# copy disk0: ftp:
    Enter source filename]? 1ACE2009060306445454.lic
    Enter Address for the ftp server]? 10.2.3.4
    Enter the destination filename]? [1ACE2009060306445454.lic]
    Enter username]? anonymous
    Enter the file transfer mode[bin/ascii]: [bin]
    Enable Passive mode[Yes/No]: [Yes]
    Password:
    Passive mode on.
    Hash mark printing on (1024 bytes/hash mark).
    Switch/Admin#
    Administrator Guide - Licenses on ACE:
    http://www.cisco.com/en/US/docs/app_ntwk_services/data_center_app_services/ace_appliances/vA4_1_0/configuration/administration/guide/license.html#wp1010344
    Hope this helps.
    -pefrench

  • ACE-4710-01-K9

    Dear All,
    i have  ACE-4710-1F-K9  (ACE 4710 Hardware‐1Gbps‐5K SSL‐500MbpsComp‐5VC-50 APPAccel )
    and i need to buy ACE-4710-01-K9
    I want to ask does (ACE-4710-01-K9) has 50 AppAccel like the old part number (ACE-4710-1F-K9)???

    As per my understanding
    Both will give you same functionality
    ACE-4710-BAS-SK-K9 is a basic kit/bundle
    that Includes:
    - ACE 4710 Hardware
    - ACE Software
    - 1 Gbps Throughput License
    - 1,000 SSL TPS
    - 100Mbps Compression
    - 5 Virtual Devices
    Where as
    "ACE-4710-K9 with ACE-AP-01-LIC" is kind of La Carte option
    ACE-4710-K9 is the ACE Appliance Hardware includes(1K SSL TPS, 5 contexts, 100Mbps comp)
    With it you need to select two mandatory options
    ACE Software :ACE-AP-SW-XX Software Version XX
    Throughput License :("ACE-AP-01-LIC" 1 Gbps OR "ACE-AP-02-LIC" 2 Gbps )
    Then you can select optional licences for
    SSL TPS, Virtual Devices, compression & App acceleration...(if you need to upgrade the defaults 1K SSL TPS, 5 contexts, 100Mbps comp)
    Syed iftekhar Ahmed

  • Can't install ACE 4710 license

    Hi,
    I've tried to installed the license, but is not successful, below are the steps which i've taken to installed the license, with error messages. pls. assist.
    CBJ6-LBDMZ2/Admin# copy tftp://10.2.18.66/ACE20090909090659371.lic disk0:
    Enter the destination filename[]? [ACE20090909090659371.lic]
    Trying to connect to tftp server......
    TFTP get operation was successful
    685 bytes copied
    CBJ6-LBDMZ2/Admin# license install disk0:ACE20090909090659371.lic
    Installing license... failed: Can't install this license with the current count

    CBJ6-LBDMZ2/Admin# show licen
    ACE20090727112500202.lic:
    SERVER this_host ANY
    VENDOR cisco
    INCREMENT ACE-AP-01-LIC cisco 1.0 permanent 1 \
            VENDOR_STRING=1 HOSTID=ANY \
            NOTICE="200907271125002021 \
            1211J5CB363" SIGN=F2E3AFA69526
    I think you have an HW appliance (code: ACE-4710-K9) with one a la carte license ( ACE-AP-01-LIC).
    You bought a Bundle upgrade license, and  this is not compatibly with you current license ( a la carte license).
    To use the  ACE-4710-BUN-UP2= ( 1G Bundle to 2G Bundle Upgrade License) you need to have a bundle product like the
    ACE-4710-1F-K9.
    Check this:
    Table 1     ACE Licensing Bundles
    License Model Description Upgrade Path
    ACE-4710-0.5F-K9
    This license bundle includes the following items:
    •ACE 4710 appliance
    •0.5-Gbps throughput license (ACE-AP-500M-LIC)
    •100-Mbps compression license (ACE-AP-C-100-LIC)
    •100 SSL transactions per second (TPS) license (ACE-AP-SSL-100-K9)
    •5 virtual contexts license (ACE-AP-VIRT-5)
    •Application acceleration license (50 connections) (ACE-AP-OPT-50-K9)
    You have the option to upgrade to the 1-Gbps, 2-Gbps, or 4-Gbps bundle.
    Start the upgrade with ACE-4710-BUN-UP1=.
    ACE-4710-1F-K9
    This license bundle includes the following items:
    •ACE 4710 appliance
    •1-Gbps throughput license (ACE-AP-01-LIC)
    •500-Mbps compression license (ACE-AP-C-500-LIC)
    •5000 SSL TPS license (ACE-AP-SSL-05K-K9)
    •5 virtual contexts license (ACE-AP-VIRT-5)
    •Application acceleration license (50 connections) (ACE-AP-OPT-50-K9)
    You have the option to upgrade to the 2-Gbps or 4-Gbps bundle.
    Start the upgrade with ACE-4710-BUN-UP2=.
    ACE-4710-BAS-2PAK
    This license bundle includes the following items:
    •Two ACE 4710 appliances
    •1-Gbps throughput license (ACE-AP-01-LIC)
    ACE-4710-BAS-2PAK also includes the following default options:
    •1000 SSL TPS
    •100-Mbps compression
    •5 virtual contexts
    •Application acceleration (50 connections)
    You have the option to upgrade to the 2-Gbps or 4-Gbps bundle.
    Start the upgrade with ACE-4710-BUN-UP2=. Two upgrade licenses are  required for upgrading two units of the ACE-4710-BAS-2PAK bundle.
    ACE-4710-2F-K9
    This license bundle includes the following items:
    •ACE 4710 appliance
    •2-Gbps throughput license (ACE-AP-02-LIC)
    •1-Gbps compression license (ACE-AP-C-1000-LIC)
    •7500 SSL TPS license (ACE-AP-SSL-07K-K9)
    •5 virtual contexts license (ACE-AP-VIRT-5)
    •Application acceleration license (50 connections) (ACE-AP-OPT-50-K9)
    You have the option to upgrade to the 4-Gbps bundle.
    Start the upgrade with ACE-4710-BUN-UP3=.
    ACE-4710-4F-K9
    This license bundle includes the following items:
    •ACE 4710 appliance
    •4-Gbps throughput license (ACE-AP-04-LIC)
    •2-Gbps compression license (ACE-AP-C-2000-LIC)
    •7500 SSL TPS license (ACE-AP-SSL-07K-K9)
    •5 virtual contexts license (ACE-AP-VIRT-5)
    •Application acceleration license (50 connections) (ACE-AP-OPT-50-K9)
    This is the highest value bundle.
    ACE-4710-BUN-UP1
    0.5 to 1-Gbps throughput bundle upgrade license
    See the Upgrade Path outlined above.
    ACE-4710-BUN-UP2
    1 to 2-Gbps throughput bundle upgrade license
    See the Upgrade Path outlined above.
    ACE-4710-BUN-UP3
    2 to 4-Gbps throughput bundle upgrade license
    See the Upgrade Path outlined above.
    Table 2     ACE Licensing Options
    Feature License Model Description
    Performance Throughput
    Default
    1-Gbps throughput.
    ACE-AP-500M-LIC
    0.5-Gbps throughput.
    ACE-AP-01-LIC
    1-Gbps throughput.
    ACE-AP-02-LIC
    2-Gbps throughput.
    ACE-AP-04-LIC
    4-Gbps throughput.
    ACE-AP-02-UP1
    Upgrade from 1-Gbps to 2-Gbps throughput.
    ACE-AP-04-UP1
    Upgrade from 1-Gbps to 4-Gbps throughput.
    ACE-AP-04-UP2
    Upgrade from 2-Gbps to 4-Gbps throughput.
    Virtualization
    Default
    1 admin/5 user contexts.
    ACE-AP-VIRT-020
    1 admin/20 user contexts.
    SSL
    Default
    100 TPS.
    ACE-AP-SSL-05K-K9
    5000 TPS.
    ACE-AP-SSL-07K-K9
    7500 TPS.
    ACE-AP-SSL-UP1-K9
    Upgrade from 5000 TPS to 7500 TPS.
    HTTP Compression
    Default
    100-Mbps.
    ACE-AP-C-500-LIC
    500-Mbps.
    ACE-AP-C-1000-LIC
    1-Gbps.
    ACE-AP-C-2000-LIC
    2-Gbps.
    ACE-AP-C-UP1
    Upgrade from 500-Mbps to 1 Gbps.
    ACE-AP-C-UP2
    Upgrade from 500-Mbps to 2 Gbps.
    ACE-AP-C-UP3
    Upgrade from 1 Gbps to 2 Gbps.
    Application Acceleration Feature Pack License
    ACE-AP-OPT-LIC-K9
    Application acceleration and optimization. By default, the ACE performs  up to 50 concurrent connections. With the application acceleration and  optimization software feature pack installed, the ACE can provide  greater than 50 concurrent connections.
    This license increases the operating capabilities of the following features:
    •Delta optimization
    •Adaptive dynamic caching
    •FlashForward
    •Dynamic Etag
    ACE-AP-02-LIC=
    Upgrade Performance License 2   Gbps Spare

  • Technical differences between ACE-4710-K9 & ACE-4710-BAS-SK-K9

    Hi All,
    Iam trying to find technical diff between ACE-4710-K9 with ACE-AP-01-LIC & ACE-4710-BAS-SK-K9 with ACE-AP-BAS-LIC.
    Can someone shed some light..?
    Thank you all in advance
    MS

    As per my understanding
    Both will give you same functionality
    ACE-4710-BAS-SK-K9 is a basic kit/bundle
    that Includes:
    - ACE 4710 Hardware
    - ACE Software
    - 1 Gbps Throughput License
    - 1,000 SSL TPS
    - 100Mbps Compression
    - 5 Virtual Devices
    Where as
    "ACE-4710-K9 with ACE-AP-01-LIC" is kind of La Carte option
    ACE-4710-K9 is the ACE Appliance Hardware includes(1K SSL TPS, 5 contexts, 100Mbps comp)
    With it you need to select two mandatory options
    ACE Software :ACE-AP-SW-XX Software Version XX
    Throughput License :("ACE-AP-01-LIC" 1 Gbps OR "ACE-AP-02-LIC" 2 Gbps )
    Then you can select optional licences for
    SSL TPS, Virtual Devices, compression & App acceleration...(if you need to upgrade the defaults 1K SSL TPS, 5 contexts, 100Mbps comp)
    Syed iftekhar Ahmed

  • Ace 4710 strange behaviour

    Hi, We have two ACE-4710-K9 (named LB01 and LB02) configured in HA mode. Besides Admin, on each of them there are tree context configured, named, ACADEMIC, COMMERCIAL, STREAMING. On LB01 the active context is ACADEMIC. On LB02 the active contexts are COMMERCIAL and STREAMING. Each context is configured with a FrontEnd and a BackEnd Vlan interface, and a "management" Vlan interface used for accessing and monitoring the device and for the downloading of the needed ssl certificates. Recently we upgraded the devices to Version A3(2.6) form a previous A3(2.4). After that upgrade we experienced some strange behaviour. From the context in STANDBY state we are not able to ping the host on the "management" Vlan interface, while there is no problem on the other Vlans. We see that the ICMP packets are sent to the Vlan, are replayed by the remote host BUT are not received at all on the LB01 or LB02. No messages in the log. Trying with 5 consecutive (failed) ping we can see that the counters of unicast packet output on LB01/LB02 Vlan is incremented by 5 BUT the unicast packets input counters is unchanged even if the remote host sent the replays. In the STREAMING context this behaviour isn't constant, ie the ping *sometimes* starts working for a few second and then returns to stop. In the other standby context the ping never works instead. In the active context all works fine. This strange problem prevents us to load the ssl certificates in the STANDBY context from the "management" Vlan. We was not able to find any reference to a similar problem in the Cisco documentation or Tac collection, so we are curious to know wheter someone else experienced such a behaviour. Thank you and best regards. Alessandro Asson - CINECA

    Thanks,
    I see you are using shared VLAN config in both ACE.
    Same VLAN 1000 is used for both Admin and streaming context.
    In this config, you may need to use the shared-vlan-host-id command as explained here:
    http://www.cisco.com/en/US/docs/app_ntwk_services/data_center_app_services/ace_appliances/vA3_1_0/configuration/routing_bridging/guide/vlansif.html#wp1025243
    In fact as explained:
    'By default, the bank of MAC addresses that the ACE uses is randomly selected at boot time. However, if you configure two ACE appliances in the same Layer 2 network and they are using shared VLANs, the ACEs may select the same address bank, which results in the use of the same MAC addresses. To avoid this conflict, you must configure the bank that the ACEs will use.'
    This would also reply to your question in the readme file:
    SHOW ARP TABLE ON THE D01,D02,D07 ROUTERS SHOWS THE SAME MAC ADDRESS FOR
    BOTH IP ADDRESSES OF LB01 AND LB02: is that normal ??
    Hope this helps,
    Dom.

  • TCP SYNSEEN with load balancing Cisco ACE 4710

    I have a Cisco ACE 4710 load balancing the traffic to two proxy servers, the configuration is the same since December 2012,  but yesterday it stated to show SYNSEEN in the show conn command, and the hosts cannot browse. I think that means that the three-way-handshake is not complete.
    If I bypass the ACE the hosts can browse without problems. 
    I have tested with another ACE appliance and the same configuration but the behaviour is the same.
    I need help as soon as possible,
    thanks,
    I've attached the Show conn, show conn detail and show run.

    Hi Cesar,
    Thank you for your answer,
    The issue was solved,
    We were running an A3 software version, it seems to have a Bug so it doesn't show the NAT commands in the "show run", so when we made the configuration backup we didn't noticed it.
    The ACE reloaded because an electrical failure so it losted the NAT config.
    We just upgraded to an A4 version and also added a NAT/PAT to enable the communication between the Clients and the Proxy.
    Regards,

Maybe you are looking for

  • Multiple iCloud mail accounts on one computer

    We had a family pack on mac.com and when we moved the accounts to icloud (on  the same mac), the mac can no longer get email from one of the accounts... icloud is not accepting the pasword for this account - however, withut making any changes to the

  • Firefox crashes MY COMPUTER!!! When I open it, my computer BLUE SCREENS then turns off!!!

    Within the past few months, I have not been able to use Firefox at all. It started crashing my whole computer, making the whole thing go blue screen before shutting down, and I have uninstalled and reinstalled it TWICE, the second time sacrificing AL

  • What's wrong? Plz Help

    okay, i'm pretty good with programming, and I dont like asking for support on forums before I give it, but i know pretty much nothing about hardware and drivers so i dont really know if I have a sound cardor anything I have a windows xp I used some s

  • Camera and photos

    Photos taken with back camera have black spot like having stain on back camera. however, back camera was complete clean! Help needed. Still under warranty!

  • Having difficulties with AirPlay

    Recently bought Apple TV 3gen Linked it up everything fine its just basically not hooking up with both my devices iPad mini and 4 s I really want to view home video footage recorded and be able to view all my apps etc i have on both devices ? AirPlay