Link failover on Nexus 5K

We have Dell R730 server hooked up to two N5Ks and bundled using LACP(vPC), however when one of the NICs on server is disabled it takes about 30 seconds to fail over to second segment in bundle. Any suggestions what might be the reason or what could be done to fix this. Other servers connected same manner have no issues and failover is subsecond.
Thanks

Thanks Stephen, from that it sounds to me that if I enable jumbo frames system wide on the 5k, only devices that are configured on their end will use jumbo frames and devices connected to the switch that are configured for mtu 1500, will still use 1500.

Similar Messages

  • Solution on Link Failover for Hosted Webserver

    Hi,
    One of my customer has Web based application which is hosted over internet on IP provided by ISP. Challange is in case, the ISP link fails webserver is not available. Customer is planning to add one more link from different ISP. How do I Load balance both this links and have webserver being accessible from any of the link in case of link failover.

    Assuming that we have a webserver hosted by us on our internal network as 192.168.1.1 and we map it to pix outside interface ip address x.x.x.x as follows:
    static (inside,outside) x.x.x.x 192.168.1.1 netmask 255.255.255.255 then any traffic from outside world hitting to x.x.x.x will directly be routed to 192.168.1.1. Hence, we use port forwarding as follows:static (inside,outside) tcp interface 80 192.168.1.1 80 so that only the port 80 traffic destined to x.x.x.x should be forwarded to 192.168.1.1 and not all the traffic. And you can also do by change the ISP cable to your device and reconfigure it .

  • LRT224 Load Balancing and Link Failover

    Hi, I am new to this forum. I have recently set up the LRT224 with two different ISP's. I am having problems configuring the Load Balance and Link Failover.
    When I have Load Balance selected only one ISP (WAN 1) is active, the other (WAN2, ISP modem) remains inactive. Why is Load Balance only engaging one ISP?
    When I have Link Failover selected, even with attempts and seconds configured to one second, and WAN1 has packets lost, it doesn't switch over to WAN2.
    I am not tech savey but any help will be greatly appreciated so that I can get both ISP's active with Load Balance or at least have Link Failover work almost instantly. Thanks.

    Hi @BSue2015,
    If both WAN1 and WAN2 are already getting IP Addresses from your ISPs then we can say that Load Balance is working. To check it further, do a speed test by going to http://www.speedtest.net. Dual WAN connections are doubling the amount of available full speed connections due to the load balancing. The speed should have its maximum throughput even if you have several users on the network.

  • Database link failover on RAC

    Dear Friends.
    Could you please provide me the information about implementation of Database links failover in RAC. (Oracle 10g RAC on linux)
    I have created db links across the two RAC environments. Each RAC setup contains 2 nodes.
    I have created DB link across the two RAC environemtns.
    i.e I have created DB link between 1st node of Source RAC system to 1st node of Target RAC system.
    If 1st node of Target RAC system is down, I need to setup in such way that the link should failover to node 2 of Target system.
    I have tried all possible options of TAF. But I did not succeed. Is there anybody is implemented this type setup...?
    How to setup tnsnames.ora on source DB to get this type of failover.
    Thanks in Advance.
    Best Regards
    Kanumuri Raju

    Oracle was kind enough to provide some configuration details in their docco. You may want to review this link:
    http://download-east.oracle.com/docs/cd/B19306_01/network.102/b14212/advcfg.htm#sthref1275
    The configuration needs to be performed in the TNSNAMES.ORA associated with the database initiating the link. If you want bi-directional TAF, you would need to update the TNSNAMES.ORA for 'both' databases.
    I suggest you don't get your hopes up too high about the capability of TAF across DBLinks. I'm pretty sure you will not be able to get SELECT-based TAF. And I'm not absolutely sure which session rules will be used to determine the failover time.

  • HT4759 can i link my google nexus 7 tablet and android phone to my ipod touch?

    Can I link my Google nexus 7 tablet and android phone with my iPod touch, like music, contacts, pics and such?

    I do have the Free Video Downloader Plus Plus before the iOS 4.3 update....... and yes I can save it to a computer, but is there a way I can view it from my sister's tablet after doing that?

  • VN-Link Hardware require Nexus 1000v yes or not?

    I have a problem about VN-Link Hardware. When i create port profile on UCS Manager and Create Port Profile Client then vCenter will create Port Group too. But when i apply network in Virtual Machine by select Port Group in vCenter i can't see Virtual Maching Guest in VM tab on UCS Manager.
    Finally question VN-Link Hardware require Nexus 1000v install on ESX yes or not? in UCS Manager GUI document say need require DVS Switch.

    Thank you for reply. I have successfully turn on VN-Link hardware by follow this video --> http://tinyurl.com/23p896k
    and i have install Nexus 1000v VEM in ESX for turn on VN-Link hardware.
    I need test performance of CNA Card (palo) and report to my CEO.
    - How to test it?
    - What is tool for test?
    PS.Sorry for English language

  • 2 ISP link failover in ASA 5505

    Hi,
    I have ASA 5505, want to configure the 2 ISP link Tata and Airtel with failover.
    I want to configure the WebVPN with failover, so that user don't need to change the public address when one link goes down.
    thanks with regards
    Ashish Kumar

    Hi michael,
    First of thanks for reply.
    Can we do it by public certificate or DNS entry e.g. both ISP Public ip address entry will be in DNS and user will hit particular DNS name. You r right that once link down so user will disconnect but when he will retry then he will connect via another link.
    Is it possible??
    Ashish

  • Link FC between Nexus 5548 UP and Brocade 300

    Hello,
    I have got two Nexus 5548UP and fabric Brocade.
    I would like to connect my Nexus at my fabric Brocade.
    See the pdf file.
    Best regards,

    Its possible to have more links between npv and brocade but if you want to port channel them, please check first with brocade support if they allow F port channel trunking in their code. Not sure if FOS 6.2.2 supports it. From our side (cisco switch running npv) we should be able to do a port channel upto any NPIV switch provided the upstream switch supports it.
    https://supportforums.cisco.com/thread/2091664
    Thanks,
    Vinayak

  • RV042 Smart Link / Failover is Sticky

    RV042 in Router mode.
    WAN1 preferred.
    With Smart Link it seems to work to a point.
    When WAN1 fails, it fails over to WAN2.
    But then it gets stuck on WAN2 and I have to manually switch to WAN2 preferred and then back to WAN1 preferred to get WAN1 connection to return.
    The test IP addresses should be just fine as set.
    Is there something I should be doing differently?

    I really appreciate the help.  I think I would do better if I understood the definition and purpose and INTERACTION of those 4 entries.
    Well, I can figure out "Default Gateway" ... I think.  But maybe I don't understand the designer's context for this one even.
    And, I tried entering the DNS Host and an IP wouldn't do so I put in the URL.  I also think I can figure that one out OK.
    Then there are: ISP and Remote Hosts.
    According to the documentation with my comments at "***"
    Default Gateway:
    If you check this item, the Router will ping the default gateway first.
    ***OK.  That's easy.  But it doesn't say "you must check this item".  So, I had not.
    ISP Host:
    After ping Default Gateway, the Router will ping ISP Host “Retry timeout" later. The ISP Host is provided by ISP.
    ***I guess I just pick an IP address belonging to the ISP or what?   Or I could pick the public address gateway at the ISP.
    Remote Host:
    Enter the IP address of Remote Host that you’re going to ping.
    ***OK. So I could pick anything in the public address space that normally works, eh? But, does it necessarily have to be a public address?  How about an upstream address in my network?
    DNS Lookup Host: Enter the Host Name or Domain Name that you’re going to ping.
    ***Well, I wouild have thought that this means the host name of the ISP DNS server.  But here it seems to say it can be almost any URL.  Is the point here that it's a test of DNS service?
    I think perhaps this will help reveal where I'm getting hung up.  I should think that the design intends to test the closest connection first and surely failover if it fails.  Then on to the next, and the next, etc.
    If that's the case then I should think one could pick a single IP address to test and that's all.  Is that correct.  That's what I've been doing because I think that will effect the behavior I need.
    I look forward to hearing more.  Thank You!!

  • Using SNMP is it possible to find the vPC peer link of a Nexus 5K?

    I'm trying to use SNMP to get the Peer Link pair...

    hi,
    You can include 0calyear characteristic before the structure in the column and set it to no display and show result row.
    regards,
    Arvind.

  • Dual Homed DSL Link failover

    Hi Experts !!!
    We have 2 DSL links from same SP at two different sites with one acting as primary and second link need to be configured as redundant to the primary link. i.e if primary goes down the secondary dsl link should become primary and take over.
    2 DSL links in ethernet from SP firewall terminate on client firewall.
    Howz is this possible? Any ideas would be appreciated.

    Milan,
    thanks for the reply. Yes, I see that my ASN (say 45678) gets appended to the route when I check the route using a few ISP's looking glass sites.:
    Following are results from ISP (different from the two I peer with)- for the route 4.5.6.0/24
    ISP-X:
    BGP routing table entry for 4.5.6.0/24, version 8919944
    Bestpath Modifiers: always-compare-med, deterministic-med
    Paths: (12 available, best #9)
      Not advertised to any peer
      1234 45678, (received & used)
    ISP-Y:
    BGP routing table entry for 4.5.6.0/24, version 19432520
    Bestpath Modifiers: deterministic-med
    Paths: (1 available, best #1)
        1234 1234 1234 1234 45678
    I believe they are tagging my routes with a diff Local-Pref or something (as as-path comes into play only when there is a tie between weight and local-pref - in BGP route selection) - dont knwo what type of tagging though
    thanks.

  • Wireless Mesh 1552 Link failover not seamless

    All,
    Child  MAP failover to another parent MAP takes 4 request time out (rto). Client  applications also time out and needs to reconnect everytime it  happens. It is a normal behavior for a 1552 ap?
    Cheers,
    Arvin

    All,
    Anyone encounter a problem like this? By the way my WLC is version
    7.0.116.0.
    Cheers,
    Arvin

  • Call break during link failover in voice over ip

    when i established a call from one location to another locaion, during link change call break for about 14 seconds, but in ping after one second route is changeing

    To troubleshoot problems with voice networks, you must follow the call both inside the router and outside on the network in order to isolate the problem. You must understand the relationship of dial peers and call legs to follow the calls.
    You can isolate where a problem is occurring by determining which dial peer or call leg is having the problem, as described in the below URL:
    http://www.cisco.com/en/US/docs/ios/12_3/vvf_c/voice_troubleshooting/old/vts_cflw.html#wp1056754

  • Link outage in Etherchannel causes interface down and failover Secondary Faild

    Hi,
    I have configured port-channel Firewall ASA5515-X and  stacking switch WS-3750X. Also firewall configured as failover mode. Problem is that my active firewall connected switch port show green and working but standby firewall connected switch port shows orange color. When i inpute show failover command on firewall, secondary is faild. Please assist. Here is the below show command.
    mdbl-int-fw-01# sho port-channel 10
    Ports: 2   Maxports = 16
    Port-channels: 1 Max Port-channels = 48
    Protocol: LACP/ active
    Minimum Links: 1
    Maximum Bundle: 8
    Load balance: src-dst-ip
    mdbl-int-fw-01# sho interface port-channel 10
    Interface Port-channel10 "inside", is up, line protocol is up
      Hardware is EtherChannel/LACP, BW 2000 Mbps, DLY 10 usec
            Auto-Duplex(Full-duplex), Auto-Speed(1000 Mbps)
            Input flow control is unsupported, output flow control is off
            Description: *** Connected to CORE-SW ***
            MAC address 4c00.821d.511f, MTU 1500
            IP address 10.98.8.97, subnet mask 255.255.255.248
      Traffic Statistics for "inside":
            56859 packets input, 3419130 bytes
            148709 packets output, 16063580 bytes
            56858 packets dropped
          1 minute input rate 0 pkts/sec,  46 bytes/sec
          1 minute output rate 2 pkts/sec,  216 bytes/sec
          1 minute drop rate, 0 pkts/sec
          5 minute input rate 0 pkts/sec,  46 bytes/sec
          5 minute output rate 2 pkts/sec,  216 bytes/sec
          5 minute drop rate, 0 pkts/sec
      Members in this channel:
          Active:   Gi0/1 Gi0/2
    mdbl-int-fw-01# sho port
    mdbl-int-fw-01# sho port-channel sum
    mdbl-int-fw-01# sho port-channel summary
    Flags:  D - down        P - bundled in port-channel
            I - stand-alone s - suspended
            H - Hot-standby (LACP only)
            U - in use      N - not in use, no aggregation/nameif
            M - not in use, no aggregation due to minimum links not met
            w - waiting to be aggregated
    Number of channel-groups in use: 1
    Group  Port-channel  Protocol    Ports
    ------+-------------+-----------+-----------------------------------------------
    10     Po10(U)           LACP    Gi0/1(P)   Gi0/2(P)  
    mdbl-int-fw-01#
    mdbl-int-fw-01# sho port-channel ?      
      <1-48>    Channel group number
      brief     Brief information
      detail    Detail information
      port      Port information
      protocol  protocol enabled
      summary   One-line summary per channel-group
      |         Output modifiers
      <cr>
    mdbl-int-fw-01# sho port-channel bri
    mdbl-int-fw-01# sho port-channel brief
                    Channel-group listing:
    Group: 10
    Ports: 2   Maxports = 16
    Port-channels: 1 Max Port-channels = 48
    Protocol: LACP/ active
    Minimum Links: 1
    Maximum Bundle: 8
    Load balance: src-dst-ip
    mdbl-int-fw-01# sho port-channel ?    
      <1-48>    Channel group number
      brief     Brief information
      detail    Detail information
      port      Port information
      protocol  protocol enabled
      summary   One-line summary per channel-group
      |         Output modifiers
      <cr>
    mdbl-int-fw-01# sho port-channel pro
    mdbl-int-fw-01# sho port-channel protocol
                    Channel-group listing:
    Group: 10
    Protocol: LACP
    mdbl-int-fw-01# sho port-channel ?       
      <1-48>    Channel group number
      brief     Brief information
      detail    Detail information
      port      Port information
      protocol  protocol enabled
      summary   One-line summary per channel-group
      |         Output modifiers
      <cr>
    mdbl-int-fw-01# sho port-channel det
    mdbl-int-fw-01# sho port-channel detail
                    Channel-group listing:
    Group: 10
    Ports: 2   Maxports = 16
    Port-channels: 1 Max Port-channels = 48
    Protocol: LACP/ active
    Minimum Links: 1
    Maximum Bundle: 8
    Load balance: src-dst-ip
                    Ports in the group:
    Port: Gi0/1
    Port state    = bndl
    Channel group =   10        Mode = LACP/ active
    Port-channel  = Po10
    Flags:  S - Device is sending Slow LACPDUs   F - Device is sending fast LACPDUs.
            A - Device is in active mode.        P - Device is in passive mode.
    Local information:
                                 LACP port     Admin     Oper    Port        Port
    Port      Flags   State      Priority      Key       Key     Number      State
    Gi0/1     SA      bndl       32768         0xa       0xa     0x2         0x3d 
    Partner's information:
              Partner Partner    LACP Partner  Partner   Partner  Partner     Partner
    Port      Flags   State      Port Priority Admin Key Oper Key Port Number Port State
    Gi0/1     SA      bndl       32768         0x0       0xa      0x118       0x3d 
    Port: Gi0/2  
    Port state    = bndl
    Channel group =   10        Mode = LACP/ active
    Port-channel  = Po10
    Flags:  S - Device is sending Slow LACPDUs   F - Device is sending fast LACPDUs.
            A - Device is in active mode.        P - Device is in passive mode.
    Local information:
                                 LACP port     Admin     Oper    Port        Port
    Port      Flags   State      Priority      Key       Key     Number      State
    Gi0/2     SA      bndl       32768         0xa       0xa     0x3         0x3d 
    Partner's information:
              Partner Partner    LACP Partner  Partner   Partner  Partner     Partner
    Port      Flags   State      Port Priority Admin Key Oper Key Port Number Port State
    Gi0/2     SA      bndl       32768         0x0       0xa      0x119       0x3d 
    mdbl-int-fw-01#
    mdbl-int-fw-01#
    mdbl-int-fw-01#
    mdbl-int-fw-01#
    mdbl-int-fw-01# sho port-channel ?     
      <1-48>    Channel group number
      brief     Brief information
      detail    Detail information
      port      Port information
      protocol  protocol enabled
      summary   One-line summary per channel-group
      |         Output modifiers
      <cr>
    mdbl-int-fw-01# sho fail        
    mdbl-int-fw-01# sho failover st
    mdbl-int-fw-01# sho failover state
                   State          Last Failure Reason      Date/Time
    This host  -   Primary
                   Active         None
    Other host -   Secondary
                   Failed         Ifc Failure              22:03:03 UTC Jan 8 2014
                                  outside: No Link
                                  dmz: No Link
                                  mgt: No Link
                                  inside: No Link
    ====Configuration State===
            Sync Done
    ====Communication State===
            Mac set
    mdbl-int-fw-01#
    mdbl-int-fw-01#
    mdbl-int-fw-01#
    mdbl-int-fw-01# sho failover     
    Failover On
    Failover unit Primary
    Failover LAN Interface: failover GigabitEthernet0/3 (up)
    Unit Poll frequency 200 milliseconds, holdtime 800 milliseconds
    Interface Poll frequency 500 milliseconds, holdtime 5 seconds
    Interface Policy 1
    Monitored Interfaces 4 of 114 maximum
    failover replication http
    Version: Ours 8.6(1)2, Mate 8.6(1)2
    Last Failover at: 02:16:48 UTC Jan 8 2014
            This host: Primary - Active
                    Active time: 74479 (sec)
                    slot 0: ASA5515 hw/sw rev (1.0/8.6(1)2) status (Up Sys)
                      Interface outside (118.179.139.4): No Link (Waiting)
                      Interface dmz (10.98.56.3): No Link (Waiting)
                      Interface mgt (10.10.11.1): Unknown (Waiting)
                      Interface inside (10.98.8.97): Normal (Waiting)
                    slot 1: IPS5515 hw/sw rev (N/A/7.1(4)E4) status (Up/Up)
                      IPS, 7.1(4)E4, Up
            Other host: Secondary - Failed
                    Active time: 0 (sec)
                    slot 0: ASA5515 hw/sw rev (1.0/8.6(1)2) status (Up Sys)
                      Interface outside (118.179.139.6): No Link (Waiting)
                      Interface dmz (10.98.56.2): No Link (Waiting)
                      Interface mgt (0.0.0.0): No Link (Waiting)
                      Interface inside (10.98.8.98): No Link (Waiting)
                    slot 1: IPS5515 hw/sw rev (N/A/7.1(4)E4) status (Up/Up)
                      IPS, 7.1(4)E4, Up
    Stateful Failover Logical Update Statistics
            Link : failover GigabitEthernet0/3 (up)
            Stateful Obj    xmit       xerr       rcv        rerr     
            General         12665      0          9929       0        
            sys cmd         9929       0          9929       0        
            up time         0          0          0          0        
            RPC services    0          0          0          0        
            TCP conn        0          0          0          0        
            UDP conn        0          0          0          0        
            ARP tbl         2735       0          0          0        
            Xlate_Timeout   0          0          0          0        
            IPv6 ND tbl     0          0          0          0        
            VPN IKEv1 SA    0          0          0          0        
            VPN IKEv1 P2    0          0          0          0        
            VPN IKEv2 SA    0          0          0          0        
            VPN IKEv2 P2    0          0          0          0        
            VPN CTCP upd    0          0          0          0        
            VPN SDI upd     0          0          0          0        
            VPN DHCP upd    0          0          0          0        
            SIP Session     0          0          0          0        
            Route Session   0          0          0          0        
            User-Identity   1          0          0          0        
            Logical Update Queue Information
                            Cur     Max     Total
            Recv Q:         0       7       9930
            Xmit Q:         0       30      99581
    mdbl-int-fw-01#
    mdbl-int-fw-01#
    mdbl-int-fw-01# sho failover state     
                   State          Last Failure Reason      Date/Time
    This host  -   Primary
                   Active         None
    Other host -   Secondary
                   Failed         Ifc Failure              22:03:03 UTC Jan 8 2014
                                  outside: No Link
                                  dmz: No Link
                                  mgt: No Link
                                  inside: No Link
    ====Configuration State===
            Sync Done
    ====Communication State===
            Mac set
    mdbl-int-fw-01# sho failover ?   
      descriptor  Show failover interface descriptors. Two numbers are shown for
                  each interface. When exchanging information regarding a
                  particular interface, this unit uses the first number in messages
                  it sends to its peer. And it expects the second number in
                  messages it receives from its peer. For trouble shooting, collect
                  the show output from both units and verify that the numbers
                  match.
      exec        Show failover command execution information
      history     Show failover switching history
      interface   Show failover command interface information
      state       Show failover internal state information
      statistics  Show failover command interface statistics information
      |           Output modifiers
      <cr>
    mdbl-int-fw-01# sho failover inter
    mdbl-int-fw-01# sho failover interface
            interface failover GigabitEthernet0/3
                    System IP Address: 10.98.8.89 255.255.255.248
                    My IP Address    : 10.98.8.89
                    Other IP Address : 10.98.8.90
    mdbl-int-fw-01# sho failover stati    
    mdbl-int-fw-01# sho failover statistics
            tx:995725
            rx:980617
    mdbl-int-fw-01# sho failover hi        
    mdbl-int-fw-01# sho failover history
    ==========================================================================
    From State                 To State                   Reason
    ==========================================================================
    02:16:40 UTC Jan 8 2014
    Not Detected               Negotiation                No Error
    02:16:48 UTC Jan 8 2014
    Negotiation                Just Active                No Active unit found
    02:16:48 UTC Jan 8 2014
    Just Active                Active Drain               No Active unit found
    02:16:48 UTC Jan 8 2014
    Active Drain               Active Applying Config     No Active unit found
    02:16:48 UTC Jan 8 2014
    Active Applying Config     Active Config Applied      No Active unit found
    02:16:48 UTC Jan 8 2014
    Active Config Applied      Active                     No Active unit found
    ==========================================================================
    mdbl-int-fw-01# sho failover        
    Failover On
    Failover unit Primary
    Failover LAN Interface: failover GigabitEthernet0/3 (up)
    Unit Poll frequency 200 milliseconds, holdtime 800 milliseconds
    Interface Poll frequency 500 milliseconds, holdtime 5 seconds
    Interface Policy 1
    Monitored Interfaces 4 of 114 maximum
    failover replication http
    Version: Ours 8.6(1)2, Mate 8.6(1)2
    Last Failover at: 02:16:48 UTC Jan 8 2014
            This host: Primary - Active
                    Active time: 74554 (sec)
                    slot 0: ASA5515 hw/sw rev (1.0/8.6(1)2) status (Up Sys)
                      Interface outside (118.179.139.4): No Link (Waiting)
                      Interface dmz (10.98.56.3): No Link (Waiting)
                      Interface mgt (10.10.11.1): Unknown (Waiting)
                      Interface inside (10.98.8.97): Normal (Waiting)
                    slot 1: IPS5515 hw/sw rev (N/A/7.1(4)E4) status (Up/Up)
                      IPS, 7.1(4)E4, Up
            Other host: Secondary - Failed
                    Active time: 0 (sec)
                    slot 0: ASA5515 hw/sw rev (1.0/8.6(1)2) status (Up Sys)
                      Interface outside (118.179.139.6): No Link (Waiting)
                      Interface dmz (10.98.56.2): No Link (Waiting)
                      Interface mgt (0.0.0.0): No Link (Waiting)
                      Interface inside (10.98.8.98): No Link (Waiting)
                    slot 1: IPS5515 hw/sw rev (N/A/7.1(4)E4) status (Up/Up)
                      IPS, 7.1(4)E4, Up
    Stateful Failover Logical Update Statistics
            Link : failover GigabitEthernet0/3 (up)
            Stateful Obj    xmit       xerr       rcv        rerr     
            General         12676      0          9938       0        
            sys cmd         9938       0          9938       0        
            up time         0          0          0          0        
            RPC services    0          0          0          0        
            TCP conn        0          0          0          0        
            UDP conn        0          0          0          0        
            ARP tbl         2737       0          0          0        
            Xlate_Timeout   0          0          0          0        
            IPv6 ND tbl     0          0          0          0        
            VPN IKEv1 SA    0          0          0          0        
            VPN IKEv1 P2    0          0          0          0        
            VPN IKEv2 SA    0          0          0          0        
            VPN IKEv2 P2    0          0          0          0        
            VPN CTCP upd    0          0          0          0        
            VPN SDI upd     0          0          0          0        
            VPN DHCP upd    0          0          0          0        
            SIP Session     0          0          0          0        
            Route Session   0          0          0          0        
            User-Identity   1          0          0          0        
            Logical Update Queue Information
                            Cur     Max     Total
            Recv Q:         0       7       9940
            Xmit Q:         0       30      99677

    Hi Ganesan,
    I am proposing a design like this. You can have the STP in pvst mode and have a different priority set for the core switch to make it core a as root bridge. There is nothing wrong with your design you have made you core switch which will be physically down to your firewall... but in real it comes on the top of your firewall as well... But spanning tree conf should be done properly to achieve this... I have proposed my design which is pretty simple but easy for troubleshoot....
    You can have your firewalls connected to core switch on the down and can directly connected to router on outside... always core a -->py fw--rtra will be the primary path... if anything goes wrong then secondary line will come in to picture....
    make sure that your hsrp will have high priority to ur core a vlan conf for the access switches.....
    Please do rate for the helpful posts.
    By
    Karthik

  • Failover link inteface redundant

    hola estoy tratando de configurar un asa active/standby pero a su vez tratanto de que la interface failover link sea una interface redudant segun la documentacio es posible pero al  configurar me indica que una interface compartida no es factible , no encuentro la configuracion correcta son dos ASA5525X version
    Cisco Adaptive Security Appliance Software Version 8.6(1)2
    Device Manager Version 7.0(2)

    Hola Julio
    claro no hay problema esta es la configuracion actual de mis interfaces y interfaces  redundantes quiero utilizar la interfaces G0/5 y G/6 como mi interface failover , no estoy seguro si funcionara?
    interface GigabitEthernet0/5
    no nameif
    no security-level
    no ip address
    interface GigabitEthernet0/6
    no nameif
    no security-level
    no ip address
    interface GigabitEthernet0/7
    description LAN/STATE Failover Interface
    interface Redundant1
    member-interface GigabitEthernet0/2
    member-interface GigabitEthernet0/1
    nameif inside
    security-level 100
    ip address 172.18.100.X 255.255.255.0 standby 172.18.100.X
    interface Redundant2
    member-interface GigabitEthernet0/0
    member-interface GigabitEthernet0/3
    nameif vpn-outside
    security-level 0
    ip address 10.245.245.x 255.255.255.0 standby 10.245.245.x
    interface Redundant3
    description Failover
    member-interface GigabitEthernet0/5
    member-interface GigabitEthernet0/6
    no nameif
    no security-level
    no ip address
    failover
    failover lan unit primary
    failover lan interface failover GigabitEthernet0/7
    failover polltime unit msec 500 holdtime 3
    failover key *****
    failover replication http
    failover link failover GigabitEthernet0/7
    failover interface ip failover 172.32.254.1 255.255.255.252 standby 172.32.254.2
    al configurar esta es la secuencia de error
    VPN5525X-VLP(config)# no failover lan interface failover GigabitEthernet0/7
    VPN5525X-VLP(config)# no failover link failover GigabitEthernet0/7
    VPN5525X-VLP(config)#  failover lan interface failover redunda
    VPN5525X-VLP(config)#  failover lan interface failover redundant3
    INFO: Non-failover interface config is cleared on Redundant3 and its sub-interfaces
    VPN5525X-VLP(config)# failover link failover Redunan
    VPN5525X-VLP(config)# failover link failover Redundant3
    VPN5525X-VLP(config)#
    VPN5525X-VLP(config)#
    VPN5525X-VLP(config)# exit
    VPN5525X-VLP# sh run fa
    ya esta configurado pero no estoy seguro si funcionara, Julio que asi configurado.
    VPN5525X-VLP# sh run failover
    failover
    failover lan unit primary
    failover lan interface failover Redundant3
    failover polltime unit msec 500 holdtime 3
    failover key *****
    failover replication http
    failover link failover Redundant3
    VPN5525X-VLP#

Maybe you are looking for

  • Servlet initialisation problem

    Hi! I am very new to servlet and would appreciate your assistance in this problem. I am using j2sdk1.3.1_08, Tomcat 4.1.27, Log4j 1.2.28 I would like to initialise log4j using servlet. Following are the codes I used. Somehow, this servlet does not ge

  • How to validate when date format is diff Internally and externally

    Hello, How can I validate the Date format if Internal format and external format is different. Ex : *  SELECT SINGLE CRTSP **                FROM /SAPSLL/PR **                INTO L_CRTSP **                WHERE CRTSP IN S_CRTSP . CRTSP (YYYY/DD/MM H

  • IPhoto icon changed to a question mark in my launch pad...

    Hi All, I used to have an iPhoto icon in my launch pad in order to pull up my pictures/movies.  Where I used to have the "regular" iPhoto icon, I now have a question mark and when I click on it, nothing happens.  I tried to use finder to find my iPho

  • Vista 'failed to start' software clash.

    I have a Blackberry 7520 with Nextel and BlackBerry desktop software 4.2 SP2. There appears to be a conflict with the Vista OS. I've worked with Microsoft Tech Service for some time to isolate a "Failed to start" problem requiring recoveries on many

  • BDBSQL & Isolation Level 2

    Does BDBSQL support isolation level 2 (READ COMMITTED DASTA) i.e. the readers release the read lock as soon as the data is read ? I will appreciate if you tell me how this can be configured.