Secondary IP over 5505 Fastethernet

Hi,
I would like to know if is possible to configure a secondary IP address in a 5505 interface ??
Thanks for your comments.

No, unfortunately ASA does not support secondary IP configuration.

Similar Messages

  • Cisco 5508 HA VS Primary/Secondary- Feedback

    Anyone having issues with 5508 HA switching between the pair? Would you say that the Primary/secondary fail over is good enough?

    Hi Leo, Scott
    So I was doing a bit more reading on this http://www.cisco.com/c/en/us/support/docs/wireless-mobility/wireless-lan-wlan/69639-wlc-failover.html it is an old document but working through it the document suggested that you didn't need to specify the IP address of the Primary or Secondary controller in the Wireless -> All AP -> AP_NAME -> High Availability. I removed this from one of the APs that was at the time serving no clients and tried to move it to the secondary and it worked. I then moved it back to the primary and it worked again.
    Any reason why this would happen? The IP addresses I was using were 100% correct. The only difference I see for this controller as opposed to others we manage is the introduction of new interface types i.e. 'redundancy management' , 'redundancy port' ,etc. I do not have redundancy enabled so I'm guessing not, but having trawled through the configuration this is the only difference I can see?

  • The best way to populate a secondary database

    I'm trying to create a secondary database over an existing primary database. I've looked over the GSG and Collections docs and haven't found an example that explicitly populates a secondary database.
    The one thing I did find was setAutoPopulate(true) on the SecondaryConfig.
    Is this the only way to get a secondary database populated from a primary? Or is there another way to achieve this?
    Thanks

    However, after primary and secondary are in sync,
    going forward, I'm unsure of the mechanics of how to
    automagically ensure that updates to primary db are
    reflected in secondary db. I'm sorry, I misunderstood your question earlier.
    Does JE take care of updating secondary db in such
    cases (provided both DBs are open)? In other words,
    if I have a Map open on the primary and do a put(), I
    can turn around and query the secondary (with apt
    key) and I should be able to retrieve the record I
    just put into the primary?Yes, JE maintains the secondaries automatically. The only requirement is that you always keep the secondary open while writing to the primary. JE uses your SecondaryKeyCreator implementation (you pass this object to SecondaryConfig.setKeyCreator when opening the secondary) to extract the secondary keys from the primary record, and automatically insert, update and delete records in the secondary databases as necessary.
    For the base API and collections API, JE does not persistently store the association between primaries and secondaries, so you must always open your secondary databases explicitly after opening your primary databases. For the DPL API (persist package), JE maintains the relationship persistently, so you don't have to always open the secondary indexes explicitly.
    I couldn't find an example illustrating this (nice)
    feature - hence the questions.For the collections API (I see you're using the collections API):
    http://www.oracle.com/technology/documentation/berkeley-db/je/collections/tutorial/UsingSecondaries.html
    In the examples directory:
    examples/collections/* -- all but the basic example use secondaries
    Mark

  • How do I use an old config file in cluster ?

    Hi,
    I have an asa cluster, and saved the config on disk0 once a week.
    Now I would like to replay the config from last week, but it doesn ?t work.
    I thought when I configure the boot config statement pointing to the old config on disk0 it should work. but ist doesn ?t. The Secondary takes over, and then the Primary comes back, but with the old config.
    How does is work ?

    Disconnect the command switch from the member switches and physically remove it from the cluster. Insert the member switch in place of the failed command switch, and duplicate its connections to the cluster members. Start a CLI session on the new command switch.

  • Thinkpad Edge S430 - Swapping out optical drive for HDD?

    Hi There
    I just ordered myself an S430 with a 128gb SSD HDD included. I didn't see an option to replace the optical drive with a secondary HDD (e.g. a 500gb) so have the optical drive in as standard. Now, I would have rather changed this out for a secondary HDD or for a Blu-Ray drive, thinking I could do this myself once bought...Looking at other posts it looks like you can swap out the optical drive for a Blu-Ray drive, although I would preferably get a secondary drive over the Blu-Ray, but I'm hesitant over a few things:
    Is this possible to do myself (swapping out for either secondary HDD or blu-ray drive) without voiding the warranty? (I got it with 2 year warranty)
    Is it actually possible to do at all? (swapping out for a secondary HDD)
    Thanks
    Solved!
    Go to Solution.

    Unfortunately, I have found no hard drives that are compatible for your optical bay.  I do believe the reason you can change out your optical drive is to change to a blue-ray or CD, or DVD, maybe a player or burner. But like I said, I have found no hard drive that can fit in your optical drive.  You may be able to find what I could not but I have been looking all over the web. 
    I know how you feel, my computer at home can not have any hard drives in the optical bay as well.
    Best regards,
    Alex
    Was this or another post on the forum helpful? Click the star on the left side of the screen to give kudos! Did someone solve the problem you encountered? Click Solution Provided to let us know!
    What we Do in Life will Echo through Eternity. -Maximus Aurelius

  • CISCO AP with 2.4GHz antenna now having throughput problem

    Hi all expert,
    Current i'm having problem with my AP running with WLC. For example, 1 AP in a room with 30 users, they are having throughput/slow connection problem.
    Just want to know, if we dun add another AP but instead add-in 5GHz antenna, will it improve the conectivity or it will be the same ?? If there is other solution that incur lower cost will be helpful as well..
    Regards,
    DericT

    i'll need to test it out 1st .. definitely its older model AP with only FE .. Hopefully with 5Ghz antenna will solve the problem.
    Mmmmmm ... Not it won't.    You just might make it alot worst.
    Think about it before throwing good money:  2.4Ghz is low speed but long range (check!).  You have 30 clients all going to ONE AP over a FastEthernet connection (check!).  Next, due to the overwhelming amount of client traffic resposes slow down (check!).  Next you want to put all the clients into 5.0 Ghz radio but still on a FastEthernet link, which is HIGH speed but short range.
    Still doesn't make sense?
    Try this:  Think of the situation as driving along a narrow, pot-holed riddled dirt road with your, say, VW Golf.  Your intention is to run this strech at high speed while carrying the entire football team behind you.  Your solution is to remove the VW Golf engine and stick the engine of a Caterpillar D10T under the hood/bonnet.  (How the heck you'll be able to fit the monster in is a marvel of technology by itself!)

  • HR Organisation Chart : Showing Position as Presently occupied by other

    As per our Business Practice, there are some Positions which are Vacant but occupied by some Employee as their Secondary assignment (over and above their primary assignment, which is some other position). And this position we don't want to show it as Vacant and as of now there's no plan to fill this also in near future, but as part of the Organisation Chart, we want to show this as Occupied position.
    e.g. Presently in our Org Chart, CIO Position is Vacant, but we want some existing employee to appear as "Acting CIO" and don't want Vacancy report to display such positions which is dully occupied by some Employee's.
    So how can we incorporate such Employee assignment to 2 different Positions, one Primary and other Secondary, so that such Positions are not shown as part of Vacancies.
    Thanks in Advance & Best Regards
    Harish

    Hi Harish,
    I hope you can create your Secondary Position in Planned Status and make it active after the primary Position got Obsolete.
    Good Luck
    Om
    Reward it, if u feel helpful.

  • How can i figure out what my pin number is?

    i need my pin number but don't remember what it is how can I figure this out?

        josh0921, I know that being without your PIN can be quite the hassel. Just to be sure, are you referring to your billing account password or are you referring to a PIN used to unlock the device? If this is regarding your billing PIN when calling into customer service that cannot be changed, but can certainly be updated after completeing secondary verification over the phone. If you need to reach out customer service you can give them a call at 800-922-0204.  http://vz.to/XNtW61
    AdamG_VZW
    Follow us on Twitter @VZWSupport

  • MST/RSTP not quite working

    Hi,
    I have 6 x 3560 switches all connected in a redundant ring topology and interconnected using fibre.
    I have enabled the fibre ports as trunk ports with dot1q encapsulation.
    I have created 6 VLANS and defined ports on each device as members of the configured VLANS, and also defined a VTP root switch (all VLAN info appears to be propagating correctly between all switches).
    I have enabled MST on all the devices and created an instance 1 with a name and revision number on all of the switches which are identical.
    I have also used the root and secondary mst commands to define a root and secondary switch.
    E.G:-
    spanning-tree mode mst
    spanning-tree extend system-id
    spanning-tree mst configuration
    name ABC
    revision 1
    instance 1 vlan 1-200
    The problem I am seeing is that if I remove the fibre from the ROOT port from the ROOT switch, the comms fail and I see a time out of approx 8-10 seconds before the link is re-established using the redundant path (second fibre port. I see the port swap the MST01 from DESG to ROOT, when the previous ROOT port goes down (cable removed).
    Ive reduced the forward time to the minimum 4 seconds, which has improved the recovery time, but still not <1 second which I need.
    Im confused as to why when I setup a device on 1 switch to ping a device on the adjacent switch (ie next device in the fibre), but is on the same VLAN, that the layer 2 comms should be affected by the removal of the Root switch link (physicaly not even connected to the 2 devices which need to talk).
    I can see if the root switch is totally removed from circuit, that the secondary takes over fine.
    Im also not doing any layer 3, inter-vlan routing.
    Can anyone help?

    If tuning the forward delay timer had any effect, it means that your network is not taking advantage of the MST protocol. Reconvergence is achieved with no use of the forward delay timer in your scenario. Check that all the links in your ring are seen as point-to-point by the STP. You can also adjust the max-hop parameter to a value closer to the size of your ring (assuming that your MST network is only this ring, you could tune it down to 8 for instance). Also, you may want to upgrade your software release if it's an old one, as the response to agreement have been optimized (it may save some few seconds). At last, if you are only using one instance, the simplest and the most efficient is to keep the default configuration, where all the vlans are mapped to instance 0 (but I guess your network is more complex than what you exposed).
    MST uses a sync mechanism that explains that the communication between your edge switch could be affected by a failure on the root. That should be short though.
    Regards,
    Francois

  • Failover interface failed

    Hi,
       I have 2 ASA 5520 firewall configured with HA(Failover). but some time my primary firewall goes down standby firewall doesnt come active. i found below log from primary firewall..what is the reason & what is the mining of reason code of 4...
    Nov 30 2012 14:07:47: %ASA-1-105002: (ASA) Enabling failover.
    Nov 30 2012 14:08:43: %ASA-1-105043: (Primary) Failover interface failed
    Nov 30 2012 14:08:56: %ASA-1-103001: (Primary) No response from other firewall (reason code = 4).
    After i hard reboot my standby firewall below log had been generated..
    Nov 30 2012 15:51:57: %ASA-1-105042: (Primary) Failover interface OK
    Nov 30 2012 15:52:02: %ASA-1-709003: (Primary) Beginning configuration replication: Send to mate.
    Nov 30 2012 15:52:15: %ASA-1-709004: (Primary) End Configuration Replication (ACT)
    Please assist....
    Regards
    Suhas

    Hi,
    The explanation for that can be found in the ASAs syslog messages document.
    Here it is
    103001 Error Message    %ASA-1-103001: (Primary) No response from other firewall (reason
    code = code).
    Explanation    This is a failover message, which is displayed if the primary unit is unable to  communicate with the secondary unit over the failover cable. (Primary) can also be listed as  (Secondary). for the secondary unit. Table 1-2 lists the reason codes and the descriptions to  determine why the failover occurred.
    Table 1-2     Reason Codes
    Reason Code
    Description
    1
    The local unit is not receiving the hello packet on the failover LAN  interface when LAN failover occurs or on the serial failover cable when  serial failover occurs, and declares that the peer is down.
    2
    An interface did not pass one of the four failover tests, which are as  follows: 1) Link Up, 2) Monitor for Network Traffic, 3) ARP, and 4)  Broadcast Ping.
    3
    No proper ACK for 15+ seconds after a command was sent on the serial cable.
    4
    The local unit is not receiving the hello packet on the failover LAN and  other data interfaces and it is declaring that the peer is down.
    5
    The failover LAN interface is down, and other data interfaces are not  responding to additional interface testing. In addition, the local unit  is declaring that the peer is down.
    Recommended Action    Verify that the failover cable is connected correctly and both units have the  same hardware, software, and configuration. If the problem persists, contact the Cisco TAC.
    Are you saying that the Primary ASA loses all connectivity to the Secondary ASA (looking at the log messages). Judging by the above Cisco description it would mean the Primary ASA isnt getting Failover Hellos through any of the monitored interfaces which again would make it seem like the Secondary Firewall is expriencing some problems.
    - Jouni

  • Berkeley DB Storage related questions

    Hi, I am new to BDB.
    We recently migrated our internal DB into BDB (we are using the C++ version). Here are some of the details:
    Data is saved using hash table (key has a fixed size of 16 bytes, but data size varies - from 20 bytes to a few kbs)
    We have an index on each record (the index has fixed size of 4 bytes). Index using btree.
    We do about 200 read, 200 write (update or insert), 200 delete every second. Update will always change the index.
    Over time, the number of records in the DB only increases slightly (total is about 2 million records).
    In the last month or two we have observed the following storage change:
    When the internal DB was converted into BDB, the data was about 8GB, index about 1GB. The actual data (key, data, index) we put into the BDB counts about 50% of the actual storage (the other 50% is BDB's overhead/other data structure, etc). Now, the data becomes about 9GB (slightly more than our data grows rate), but the index db size has grown to 9GB as well. Since the number of records are pretty much the same, the index DB has a lot of waste.
    My questions:
    Are there any parameters (eg fill factors) that could affect the storage usage? We just used the defaults.
    Over time, how to defragment the DB without taking the DB off line?
    Thanks in advance for your help.

    Hi John,
    So you are using the C++ API. What is the BDB release you are using (e.g. 5.1.19, 5.0.26 etc), on what OS, filesystem, and what is the underlying filesystem's I/O block size? (to get the block size, use something like "dumpe2fs /dev/hdN | grep 'Block size'" on Linux, "fsutil fsinfo ntfsinfo D:" on Windows -- look for "Bytes Per Cluster", "df -g /part_mount_point" on Solaris)
    Note that Btree and Hash databases are grow-only, that is, space freed by deleting items from a Btree or Hash database is never returned to the filesystem, although it is reused where possible; see the Disk space requirements section in the Berkeley DB Reference Guide.
    You can use compaction to reclaim disk space and shrink the databases' sizes; see the Db::compact() method. If you need clarification on the compact() method let me know; also, there are a lot of useful threads on the forum dealing with compaction, just do a search on "compact database".
    Data is saved using hash table (key has a fixed size of 16 bytes, but data size varies - from 20 bytes to a few kbs)More precisely, to how many "few" Kbs?
    the data becomes about 9GB (slightly more than our data grows rate), but the index db size has grown to 9GB as wellCould you check that the secondary key creator callback function is correct? It's a little bit surprising to see the secondary index database growing from 1GB to 9GB.
    Are there any parameters (eg fill factors) that could affect the storage usage? We just used the defaults.Yes, the most important is the database page size which will influence the fill factor; see Selecting a page size.
    As your data item size varies to a few Kbs your database probably has a lot of overflow pages (these pages store overflow items which are too large to be stored entirely onto a normal leaf page - an overflow item will be stored onto multiple overflow pages; retrieving such items is more expensive as the entire set of pages needs to be read into cache).
    Also, for specific configuration for each of the two access methods see Btree access method specific configuration and Hash access method specific configuration.
    Use the db_stat utility with the -d option and provide the database statistics for each of the databases (primary and secondary).
    Over time, how to defragment the DB without taking the DB off line?Use compaction as initially mentioned; compaction is done online, that is, you do not have to close the database (take it offline).
    Regards,
    Andrei

  • FT failover not working

    We have 2 ACEs configured as Active/Standby.  FT vlan is configured directly using a crossover cable , not using a switch for the FT vlan
    ACE is setup in routed mode ,vlan 29 is client vlan and 28 is server vlan ,both are being trunked on ACE-- trunk  3750 switch.
    When I shutdown the port on 3750 for the primary ACE , data connectivity wise ,primary ACE is down ,but the secondary is not taking over ,and also
    when I do sh ft group status  on the secondary ACE,I see the status of  STANDBY_HOT and the peer state: ACTIVE.
    Not sure why its not failing over . when I disable the port on switch.
    below is my ft config
    Primary
    ft interface vlan 1003
      ip address 1.1.1.1 255.255.255.252
      peer ip address 1.1.1.2 255.255.255.252
      no shutdown
    ft peer 1
      heartbeat interval 300
      heartbeat count 10
      ft-interface vlan 1003
    ft group 10
      peer 1
      no preempt
      priority 255
      peer priority 250
      associate-context Admin
      inservice
    ft track interface PCI
      track-interface vlan 29
      peer track-interface vlan 29
      priority 20
    ft group 11
      peer 1
      no preempt
      priority 255
      peer priority 250
      associate-context EPS-PCI
      inservice
    Secondary
    ft interface vlan 1003
      ip address 1.1.1.2 255.255.255.252
      peer ip address 1.1.1.1 255.255.255.252
      no shutdown
    ft peer 1
      heartbeat interval 300
      heartbeat count 10
      ft-interface vlan 1003
    ft group 10
      peer 1
      no preempt
      priority 250
      peer priority 255
      associate-context Admin
      inservice
    ft track interface PCI
      track-interface vlan 29
      peer track-interface vlan 29
      peer priority 20
    ft group 11
      peer 1
      no preempt
      priority 250
      peer priority 255
      associate-context EPS-PCI
      inservice

    We configured the FT
    configuration of the ft interface and group on primary ace
    ft interface vlan 1003
      ip address 1.1.1.1 255.255.255.252
      peer ip address 1.1.1.2 255.255.255.252
      no shutdown
    ft peer 1
      heartbeat interval 300
      heartbeat count 10
      ft-interface vlan 1003
    ft group 10
      peer 1
      priority 225
      peer priority 200
      associate-context Admin
      inservice
    ft track interface PCI
      track-interface vlan 29
      peer track-interface vlan 29
      priority 100
      peer priority 50
    ft group 11
      peer 1
      priority 225
      peer priority 200
      associate-context EPS-PROD
      inservice
    when the switch port is shutdown  for the primary ACE,secondary took over for the admin context .,and the application was not reachable  as the context dint switch over ,let me know if we need to change any value
    out of ft group of secondary
    ace2/Admin# sh ft group status
    FT Group                     : 10
    Configured Status            : in-service
    Maintenance mode             : MAINT_MODE_OFF
    My State                     : FSM_FT_STATE_ACTIVE
    Peer State                   : FSM_FT_STATE_STANDBY_HOT
    Peer Id                      : 1
    No. of Contexts              : 1
    Running cfg sync status      : Running configuration sync has completed
    Startup cfg sync status      : Startup configuration sync has completed
    FT Group                     : 11
    Configured Status            : in-service
    Maintenance mode             : MAINT_MODE_OFF
    My State                     : FSM_FT_STATE_STANDBY_HOT
    Peer State                   : FSM_FT_STATE_ACTIVE
    Peer Id                      : 1
    No. of Contexts              : 1
    Running cfg sync status      : Running configuration sync has completed
    Startup cfg sync status      : Startup configuration sync has completed
    ace2/Admin#
    NOTE: Configuration mode has been disabled on all sessions

  • WLC restarting on its own.

    Hi all,
    We've got a pair of WiSMs installed in our Cat6K, running VSS.
    From time to time, the primary WiSM will suddenly fail and secondary will take over.
    Unfortunately when the secondary takes over, NO APs will associate with the WLC. What is the reason? And why would the WiSM just suddenly fail on its on?
    Running version 7.4.121.0 for both, in AP SSO redundancy.
    Switchover History[9]:
    Previous Active = 172.24.x.x, Current Active = 172.24.x.x
    Switchover Reason = Active controller failed, Switchover Time = Wed Jan 28 22:26:54 2015
    Switchover History[10]:
    Previous Active = 172.24.x.x, Current Active = 172.24.x.x
    Switchover Reason = User initiated, Switchover Time = Wed Jan 28 22:35:45 2015
    edit : I can verify that after the secondary WiSM takes over, the licenses also gets adopted by the secondary, but no APs will associate.

    There are multiple BUGs which you can refer :
    https://tools.cisco.com/bugsearch/bug/CSCuo94185
    Symptom:
    WiSM2 on code 7.4.121.0 in HA SSO crashes causing the controllers to constantly fail over and fail back between active and standby controllers.
    Crash seen due to Task Name: nmspRxServerTask
    System Stack
    Frame 0: 0x10012c20 create_crash_dump+7156
    Frame 1: 0x10011a18 create_crash_dump+2540
    Frame 2: 0x10007ab8 sigsegv_handler+6168
    Frame 3: 0x45d803b0 license_xos_thread_create+871837312
    Frame 4: 0x11bdab48 MD5_Update+168
    Frame 5: 0x11bae424 tls1_mac+340
    Frame 6: 0x11baafb0 ssl3_read_bytes+1624
    Frame 7: 0x11ba7f90 ssl3_read+120
    Frame 8: 0x1029a638 doSSLRecvLoop+464
    Frame 9: 0x1029aff0 NetReceiveLoop+424
    Frame 10: 0x1029b3dc locpRxSocket+540
    Frame 11: 0x10b0e858 osapiTaskAppKeySelfSet+304
    Frame 12: 0x120292b0 license_xos_thread_create+2211200
    Frame 13: 0x12089c4c license_xos_thread_create+2606876
    Conditions:
    WiSM2 in HA SSO on code 7.4.121.0
    Workaround:
    None.
    Controller reboots and comes up on its own
    Further Problem Description:
    This is a hospital network
    Issue was first noticed when customer tried to restart services on the primary MSE in the network (MSE in HA)
    This caused a flood of error messages on the controller (error logs attached). It took about two hours for MSEs to come up and stabilize. Shortly after this the active controller crashed, failing over to standby. After some time, the standby WLC crashed failing back to active
    Customer setup has 4 WiSM2's in HA SSO and crash has occured multiple times on two of the controller pairs.
    https://tools.cisco.com/bugsearch/bug/CSCui35807

  • Replacement of primary unit failed! (ASA5510 active/standby)

    Hi all,
    I have an issue bringing up my RMA'd primary ASA unit.
    So what happened so far:
    1. primary unit failed
    2. secondary took over and is now secondary - active (as per sh fail)
    2. requested RMA at Cisco
    3. got ASA and checked that Lic (SSL), OS (8.2.2) and ASDM are at the same level as the secondary
    4. issued wr erase and reloaded
    5. copied the following commands to the new (RMA) primary unit:
    failover lan unit primary
    failover lan interface Failover Ethernet3
    failover interface ip Failover 172.x.x.9 255.255.255.248 standby 172.x.x.10
    int eth3
    no shut
    failover
    wr mem
    6. installed primary unit into rack
    7. plugged-in all cables (network, failover, console and power)
    8. fired up the primary unit
    9. expected that the unit shows:
    Detected an Active mate
    Beginning configuration replication from mate.
    End configuration replication from mate.
    10. but nothing happened on primary unit
    So can anyone give me assistance on what is a valid and viable approach in replacing a failed primary unit? Is there a missing step that hinders me to successfully replicate the secondary - active config to the primary - standby unit.
    I was looking for help on the net but unfortunately I was not able to find anything related to ASA55xx primary unit replacement with a clear guideline or step by step instructions.
    Any comments or suggestions are appreciated, and might help others who are in the same situation.
    Thanks,
    Nico

    Hi Varun,
    Thanks for catching-up this thread.
    Here you go:
    sh run fail on secondary - active:
    failover
    failover lan unit secondary
    failover lan interface Failover Ethernet0/3
    failover key *****
    failover link Failover Ethernet0/3
    failover interface ip Failover 172.x.x.9 255.255.255.248 standby 172.x.x.10
    sh fail hist on secondary - active:
    asa1# sh fail hist
    ==========================================================================
    From State                 To State                   Reason
    ==========================================================================
    23:47:15 CEST Feb 19 2011
    Not Detected               Negotiation                No Error
    23:47:19 CEST Feb 19 2011
    Negotiation                Cold Standby               Detected an Active mate
    23:47:21 CEST Feb 19 2011
    Cold Standby               Sync Config                Detected an Active mate
    23:47:36 CEST Feb 19 2011
    Sync Config                Sync File System           Detected an Active mate
    23:47:36 CEST Feb 19 2011
    Sync File System           Bulk Sync                  Detected an Active mate
    23:47:50 CEST Feb 19 2011
    Bulk Sync                  Standby Ready              Detected an Active mate
    10:34:09 CEDT Sep 3 2011
    Standby Ready              Just Active                HELLO not heard from mate
    10:34:09 CEDT Sep 3 2011
    Just Active                Active Drain               HELLO not heard from mate
    10:34:09 CEDT Sep 3 2011
    Active Drain               Active Applying Config     HELLO not heard from mate
    10:34:09 CEDT Sep 3 2011
    Active Applying Config     Active Config Applied      HELLO not heard from mate
    10:34:09 CEDT Sep 3 2011
    Active Config Applied      Active                     HELLO not heard from mate
    ==========================================================================
    sh fail on secondary - active
    asa1# show fail
    Failover On
    Failover unit Secondary
    Failover LAN Interface: Failover Ethernet0/3 (up)
    Unit Poll frequency 1 seconds, holdtime 15 seconds
    Interface Poll frequency 5 seconds, holdtime 25 seconds
    Interface Policy 1
    Monitored Interfaces 2 of 110 maximum
    Version: Ours 8.2(2), Mate 8.2(2)
    Last Failover at: 10:34:09 CEDT Sep 3 2011
            This host: Secondary - Active
                    Active time: 441832 (sec)
                    slot 0: ASA5510 hw/sw rev (2.0/8.2(2)) status (Up Sys)
                      Interface Outside (x.x.x.14): Normal (Waiting)
                      Interface Inside (x.x.x.11): Normal (Waiting)
                    slot 1: empty
            Other host: Primary - Failed
                    Active time: 40497504 (sec)
                    slot 0: ASA5510 hw/sw rev (2.0/8.2(2)) status (Unknown/Unknown)
                      Interface Outside (x.x.x.15): Unknown
                      Interface Inside (x.x.x.12): Unknown
                    slot 1: empty
    Stateful Failover Logical Update Statistics
            Link : Failover Ethernet0/3 (up)
            Stateful Obj    xmit       xerr       rcv        rerr
            General         2250212    0          64800624   309
            sys cmd         2250212    0          2249932    0
            up time         0          0          0          0
            RPC services    0          0          0          0
            TCP conn        0          0          46402635   309
            UDP conn        0          0          21248      0
            ARP tbl         0          0          15921639   0
            Xlate_Timeout   0          0          0          0
            IPv6 ND tbl     0          0          0          0
            VPN IKE upd     0          0          96977      0
            VPN IPSEC upd   0          0          108174     0
            VPN CTCP upd    0          0          19         0
            VPN SDI upd     0          0          0          0
            VPN DHCP upd    0          0          0          0
            SIP Session     0          0          0          0
            Logical Update Queue Information
                            Cur     Max     Total
            Recv Q:         0       17      203259096
            Xmit Q:         0       1       2250212
    show ver on secondary - active
    asa1# sh ver
    Cisco Adaptive Security Appliance Software Version 8.2(2)
    Device Manager Version 6.2(5)53
    Compiled on Mon 11-Jan-10 14:19 by builders
    System image file is "disk0:/asa822-k8.bin"
    Config file at boot was "startup-config"
    asa1 up 200 days 12 hours
    failover cluster up 1 year 108 days
    Hardware:   ASA5510, 256 MB RAM, CPU Pentium 4 Celeron 1600 MHz
    Internal ATA Compact Flash, 256MB
    Slot 1: ATA Compact Flash, 64MB
    BIOS Flash M50FW080 @ 0xffe00000, 1024KB
    Encryption hardware device : Cisco ASA-55x0 on-board accelerator (revision 0x0)
                                 Boot microcode   : CN1000-MC-BOOT-2.00
                                 SSL/IKE microcode: CNLite-MC-SSLm-PLUS-2.03
                                 IPSec microcode  : CNlite-MC-IPSECm-MAIN-2.04
    0: Ext: Ethernet0/0         : address is 0022.55cf.7420, irq 9
    1: Ext: Ethernet0/1         : address is 0022.55cf.7421, irq 9
    2: Ext: Ethernet0/2         : address is 0022.55cf.7422, irq 9
    3: Ext: Ethernet0/3         : address is 0022.55cf.7423, irq 9
    4: Ext: Management0/0       : address is 0022.55cf.741f, irq 11
    5: Int: Not used            : irq 11
    6: Int: Not used            : irq 5
    Licensed features for this platform:
    Maximum Physical Interfaces    : Unlimited
    Maximum VLANs                  : 100
    Inside Hosts                   : Unlimited
    Failover                       : Active/Active
    VPN-DES                        : Enabled
    VPN-3DES-AES                   : Enabled
    Security Contexts              : 2
    GTP/GPRS                       : Disabled
    SSL VPN Peers                  : 10
    Total VPN Peers                : 250
    Shared License                 : Disabled
    AnyConnect for Mobile          : Disabled
    AnyConnect for Cisco VPN Phone : Disabled
    AnyConnect Essentials          : Disabled
    Advanced Endpoint Assessment   : Disabled
    UC Phone Proxy Sessions        : 2
    Total UC Proxy Sessions        : 2
    Botnet Traffic Filter          : Disabled
    This platform has an ASA 5510 Security Plus license.
    Serial Number: xxx
    Running Activation Key:xxxx
    Configuration register is 0x1
    Configuration last modified by enable_1 at 10:05:32.149 CEDT Fri Jul 15 2011

  • Calculate traffic amount on interface

    Team:
    I have not deployed any monitoring software yet; however, Cacti is in the works. But is it possible to change ‘five minute input rate / five minute output rate’ time interval from 5 min to secs and get an accurate account of traffic going over a FastEthernet interface? Would I choke the hardware (3750) if I can change this attribute? Would this be a good method to see the load/traffic values in real time?
    BACKGROUD:
    The server team has deployed a new SQL server, and the DB devs are complaining that it is slow. I am suspecting that more traffic is going over the interfaces then what the ‘server team’ and ‘db devs’ indicated because they know I would raise a stink. I do not have access to the database server, nor the other end, yet I have access to network gear between the points.
    Since I have never faced this type of issue, or problem – I need some direction and/or suggestions on how to troubleshoot this type of issue.
    Thanks
    JJ

    Hi Jason,
    Issue the command load interval 30  on the interface and it will start displaying the input/output rate for 30 secs.
    This won't impact the efficiency of the switch..
    For further troubleshooting of the issue check for any output drops/ input errors/crc in the show interface fax/y output.
    Thanks
    Ankur
    "Please rate the post if found useful"

Maybe you are looking for

  • Old Apple Dock??

    I have an old Apple iPod dock. I think it is "iPod Dock M9602G/A" from the 4th generation b&w click-wheel. When I plug the iPhone into it I get the message "This accessory is not made to work with iPhone." Engadget says it works fine and that the mes

  • Chat messages stuck in 'Not delivered yet' and oth...

    Today, Skype (latest version 6.18.0.106) started acting up: * Attempt to chat result in gray circular arrow 'Not delivered yet'. If I close Skype and start again, the queued chat message gets sent, but a new message also gets frozen in queued status.

  • Regarding document type in  batch input session

    Hi,     when i run int.cal. (f.16) it is calculating perfect and posting also perfect using TC FB01 when i run batch input session but the deflaut values i.e.. doument type is assigned DA but now the client want to change the document type from DA to

  • PDF to what?

    Hi There, I've got a PDF that looks pretty good.  I'd like to include it on a webpage, but that doesn't work. I've tried to convert to both PNG and JPEG, but there's a lot of loss.  Text is pretty much unreadable. What should I do?  Any ideas? Thanks

  • [HELP!!]After Firmware upgrading, **bleep**! So how can I turn off the WRT54G Firewall? Thanks!!

    One program was using fine when using previous firmware and now facing firewall problem after upgrading. Can anybody help me to turn off the firewall? THanks a lot!