Seeing errors & FIFO Overruns on the ASA-SSM-10

Hello,
A few of my customers are utilizing ASA-SSM-10 module running under ASA5510/20 hardware. The FW?s is part of the Failover configuration.
The module is running in "promiscuous fail-open" mode and the class-map for the IPS is applied as global_policy with access-list monitoring all the interfaces and all protocols.
In two independent cases, we are seeing errors on the Sensing interface GigabitEthernet0/1
Total Receive Errors = 772089
Total Receive FIFO Overruns = 3832
I've already verified speed/duplex settings on the FW side and I don't see any errors that would probably be causing this behavior. The bandwidth on the all interfaces is also nowhere close to the rated 150Mbps/s inspection.
Here is the scenario:
Client1 - HA
ASA 5510 Adaptive Security Appliance v7.2(2)19
ASA 5500 Series Security Services Module-10 v5.1(6)E1
Client2 - HA
ASA 5520 Adaptive Security Appliance v7.2(2)10
ASA 5500 Series Security Services Module-10 v5.1(6)E1
Wondering if anyone has seen the behavior in their environment and what might be causing it?

Hello Giorgi,
Sometimes it may be server saturation, other connection problems proxy and so on. I recommend you to not put the hour for auto update to an exact time ie 2:00 PM or 1:00 AM try putting not even numbers like 9:17 or 10:41, and see if you continue getting these errors.
Mike

Similar Messages

  • Upgrading IPS strings, ASA SSM-10 module

    I am having a challenging time upgrading the ASA SSM-10 IPS module. I down loaded the IPS-sig-s327-req-e1.pkg to Win XP ftp server (my workstation). The instructions in following does not work: http://download-sj.cisco.com/cisco/ciscosecure/ips/6.x/sigup/IPS-sig-S327.readme.txt
    "error: execUpgradeSoftware : Connect failed". Any suggestion would be appreciated.

    I can connect the LAN switch directly to the inside interface of the ASA5510 firewall. Hosts can get Internet connectivity while cabled to the switch. However, when the LAN switch is connected to the port on the IPS module, there is no Internet connectivity. Any suggestions would be appreciated. The following is the sh configuration and sh int output.
    sh con_[Jfiguration
    Version 5.1(6)
    ! Current configuration last modified Sat Apr 05 12:28:11 2008
    service interface
    exit
    service analysis-engine
    virtual-sensor vs0
    physical-interface GigabitEthernet0/1
    exit
    exit
    service authentication
    exit
    service event-action-rules rules0
    exit
    service host
    network-settings
    host-ip 192.168.1.36/24,192.168.1.10
    host-name ips
    telnet-option enabled
    --MORE--
    access-list 0.0.0.0/0
    exit
    time-zone-settings
    offset 0
    standard-time-zone-name UTC
    exit
    exit
    service logger
    exit
    service network-access
    exit
    service notification
    exit
    service signature-definition sig0
    exit
    service ssh-known-hosts
    exit
    service trusted-certificates
    --MORE--
    exit
    service web-server
    exit
    ips# sh inter_[Jfaces _[2C
    Interface Statistics
    Total Packets Received = 6806
    Total Bytes Received = 2001784
    Missed Packet Percentage = 0
    Current Bypass Mode = Auto_off
    MAC statistics from interface GigabitEthernet0/1
    Interface function = Sensing interface
    Description =
    Media Type = backplane
    Missed Packet Percentage = 0
    Inline Mode = Unpaired
    Pair Status = N/A
    Link Status = Up
    Link Speed = Auto_1000
    Link Duplex = Auto_Full
    Total Packets Received = 6807
    Total Bytes Received = 2001866
    Total Multicast Packets Received = 0
    Total Broadcast Packets Received = 0
    Total Jumbo Packets Received = 0
    Total Undersize Packets Received = 0
    Total Receive Errors = 0
    Total Receive FIFO Overruns = 0
    Total Packets Transmitted = 6807
    --MORE--
    Total Bytes Transmitted = 2017118
    Total Multicast Packets Transmitted = 0
    Total Broadcast Packets Transmitted = 0
    Total Jumbo Packets Transmitted = 0
    Total Undersize Packets Transmitted = 0
    Total Transmit Errors = 0
    Total Transmit FIFO Overruns = 0
    MAC statistics from interface GigabitEthernet0/0
    Interface function = Command-control interface
    Description =
    Media Type = TX
    Link Status = Down
    Link Speed = N/A
    Link Duplex = N/A
    Total Packets Received = 126
    Total Bytes Received = 14255
    Total Multicast Packets Received = 0
    Total Receive Errors = 0
    Total Receive FIFO Overruns = 0
    Total Packets Transmitted = 1
    Total Bytes Transmitted = 64
    Total Transmit Errors = 0
    Total Transmit FIFO Overruns = 0

  • ASA SSM IPS module upgrade won't work

    Hello all,
    I'm trying to upgrade the IPS sig's on an ASA5520 with a SSM IPS module. I'm trying to upgrade the system to 5.1.1 to further upgrade the device with no luck.
    I followed these steps provided by Cisco.com:
    1. Log in to the ASA.
    2. Enter enable mode:
    asa# enable
    3. Configure the recovery settings for ASA-SSM:
    asa (enable)# hw-module module 1 recover configure
    NOTE: If you make an error in the recovery configuration, use the
    hw-module module 1 recover stop command to stop the system reimaging
    and then you can correct the configuration.
    4. Specify the TFTP URL for the system image:
    Image URL [tftp://0.0.0.0/]:
    Example:
    Image URL [tftp://0.0.0.0/]: tftp://10.20.30.40/IPS-SSM-K9-sys-1.1-a-5.1-1.img
    5. Specify the command and control interface of ASA-SSM:
    Port IP Address [0.0.0.0]:
    Example:
    Port IP Address [0.0.0.0]: 11.21.31.41
    6. Leave the VLAN ID at 0.
    VLAN ID [0]:
    7. Specify the default gateway of the ASA-SSM:
    Gateway IP Address [0.0.0.0]:
    Example:
    Gateway IP Address [0.0.0.0]: 11.22.33.44
    8. Execute the recovery:
    asa# hw-module module 1 recover boot
    9. Periodically check the recovery until it is complete.
    NOTE: The status reads "Recovery" during recovery and reads "Up" when
    reimaging is complete.
    AFter #8 it just goes back to the enable prompt. A 'sh module' lists the device as 'recover' and hangs FOREVER.... I tested the TFTP server which the new image resides on, and the TFTP is working fine. I don't see any attempts or downloads from the TFTP server for over an hour.
    I opened a Ciscop TAC on this and not receiving alot of help...
    Please help!!!:)
    Thanks
    Chris Serafin
    [email protected]

    The recovery using this method can takes upwards of 30 minutes, and in some cases even longer.
    How long have you left the SSM in the "recovery" state?
    There may be something wrong in the config you entered. when that happens the SSM can go into a continuous reboot cycle trying to do the recovery.
    Execute "debug module-boot" on the console of the ASA.
    The debug output will show you the ROMMON output of the SSM itself. (The SSM has it's own ROMMON. The recovery boot command sends the settings made during the recover configure command to the SSM's ROMMON).
    If the ROMMON is experiencing a problem in trying to download the tftp image you should now see that ROMMON error message.
    Some typical problems I have seen:
    1) Wrong IP given for the sensor.
    2) Wrong IP given for the gateway (the gateway must exist on the same network as the sensor) this problem usually happens when using a non-standard netmasked network.
    3) Not having the sensor's command and control port plugged into the right network. The external port of the SSM itself is where the IP is being applied. You need to ensure that the extenral port of the SSM is plugged into the right network for that IP.
    4) The tftp server is not reachable from the network where the sensor's command and control port is attached. Some users think that if the ASA itself can reach the tftp server that the SSM will also be able to. This is not always the case. It is best to use a tftp server on the same network as the IP provided to the SSM. Or to test the tftp server from another machine on the same network as the SSM.
    5) The file name is wrong. Check the captialization especially.
    6) The file is not in the default directory on the tftp server. If the file is in a subdirectory you will need to add that subdirectory to the URL:
    tftp://10.20.30.40/subdirectoryname/filename
    7) The tftp is timing out.
    There are 2 things that can cause this:
    a) The tftp server is remote, and it takes too long to download the file. The ROMMON does have limits on the number of retries and per packet timeouts (but they are not user configurable). Try using a tftp server local to the SSM.
    b) The switch that the SSM connects to has spanning-tree running and spanning-tree does not complete before the SSM ROMMON times out for the tftp attempt. The tftp attempt happens immediately upon ROMMON startup and link up. But with a switch the switch port may be in a "Listen" or "Learn" state for 40 seconds before the box can actually talk on the network. In some cases the tftp download attempts started as soon as link up, and may timeout even before the spanning-tree completes. To work around this configure "spanning-tree portfast" on the switchport. Spanning-tree will connect the port into the vlan immediately rather than 40 seconds later.
    If it was a config problem when configuring the recovery settings, then there is a "recover stop" command on the ASA.
    It will stop the reboot cycle from happening.
    Let the module come up with the old image.
    Then correct your "recover configure" settings, and try the "recover boot" again.
    Another alternative:
    Stop the recovery "recover stop"
    Let it boot into the old image.
    If it was a 5.0 version, then you can actually upgrade to 5.1 using the sensor's own CLI "upgrade" command. It is actually the preferred method.
    The "recover" from the ASA will wipe the box clean and load a fresh image.
    The "upgrade" from the sensor will convert your 5.0 config into a 5.1 config while installing 5.1.
    5.1 upgrade file:
    IPS-K9-min-5.1-1g.pkg
    http://www.cisco.com/cgi-bin/tablebuild.pl/ips5
    It can be applied through the sensor's CLI upgrade command, or pushed directly through IDM, or applied by CSM.
    The "recover" should be limited to disaster recovery. When you can't access the SSM at all, or the files on the SSM have been corrupted.
    For normal upgrades you want to use "upgrade" files done through the sensor itelf (CLI, IDM, or CSM).

  • No AutoUpdate feature working on ASA-SSM-20

    Hi!
    Autoupdate feature is not working on ASA-SSM-20 module.
    We have configure:
    https://www.cisco.com//cgi-bin/front.x/ida/locator/locator.pl
    And/Or:
    https://198.133.219.25//cgi-bin/front.x/ida/locator/locator.pl
    And/Or:
    https://www.cisco.com/cgi-bin/front.x/ida/locator/locator.pl
    And/Or:
    https://198.133.219.25//cgi-bin/front.x/ida/locator/locator.pl
    We get this errors on the ASA-SSM-20 module:
    evError: eventId=1280563964539644086  vendor=Cisco  severity=error 
      originator:  
        hostId: sensor1 
        appName: mainApp 
        appInstanceId: 356 
      time: nov 17, 2010 08:15:45 UTC  offset=60  timeZone=GMT+01:00 
      errorMessage: AutoUpdate exception: Receive HTTP response failed [3,212]  name=errSystemError
    evError: eventId=1280563964539644079  vendor=Cisco  severity=error 
      originator:  
        hostId: sensor1 
        appName: mainApp 
        appInstanceId: 356 
      time: nov 17, 2010 08:10:02 UTC  offset=60  timeZone=GMT+01:00 
      errorMessage: http error response: 400  name=errSystemError
    Any Ideas?

    I am experiencing a similar issue currently with a new SSC-5 module.  I am working with TAC, however reposne has been slow.  I can see traffic with Wireshark for 198.133.219.25 but I never see the traffic for 198.133.219.243 that I was told to allow on the firewall.  I also found it confusing that I need to create exceptions on the firewall for outbound traffic to these two IP addresses when I do not have to make any exceptions for any other outbound traffic.
    /* Style Definitions */
    table.MsoNormalTable
    {mso-style-name:"Table Normal";
    mso-tstyle-rowband-size:0;
    mso-tstyle-colband-size:0;
    mso-style-noshow:yes;
    mso-style-priority:99;
    mso-style-parent:"";
    mso-padding-alt:0in 5.4pt 0in 5.4pt;
    mso-para-margin:0in;
    mso-para-margin-bottom:.0001pt;
    mso-pagination:widow-orphan;
    font-size:11.0pt;
    font-family:"Calibri","sans-serif";
    mso-ascii-font-family:Calibri;
    mso-ascii-theme-font:minor-latin;
    mso-hansi-font-family:Calibri;
    mso-hansi-theme-font:minor-latin;
    mso-bidi-font-family:"Times New Roman";
    mso-bidi-theme-font:minor-bidi;}
    /* Style Definitions */
    table.MsoNormalTable
    {mso-style-name:"Table Normal";
    mso-tstyle-rowband-size:0;
    mso-tstyle-colband-size:0;
    mso-style-noshow:yes;
    mso-style-priority:99;
    mso-style-parent:"";
    mso-padding-alt:0in 5.4pt 0in 5.4pt;
    mso-para-margin:0in;
    mso-para-margin-bottom:.0001pt;
    mso-pagination:widow-orphan;
    font-size:11.0pt;
    font-family:"Calibri","sans-serif";
    mso-ascii-font-family:Calibri;
    mso-ascii-theme-font:minor-latin;
    mso-hansi-font-family:Calibri;
    mso-hansi-theme-font:minor-latin;
    mso-bidi-font-family:"Times New Roman";
    mso-bidi-theme-font:minor-bidi;}
    Here is what I see:
    IPS_Sensor# show stat host
    /* Style Definitions */
    table.MsoNormalTable
    {mso-style-name:"Table Normal";
    mso-tstyle-rowband-size:0;
    mso-tstyle-colband-size:0;
    mso-style-noshow:yes;
    mso-style-priority:99;
    mso-style-parent:"";
    mso-padding-alt:0in 5.4pt 0in 5.4pt;
    mso-para-margin:0in;
    mso-para-margin-bottom:.0001pt;
    mso-pagination:widow-orphan;
    font-size:11.0pt;
    font-family:"Calibri","sans-serif";
    mso-ascii-font-family:Calibri;
    mso-ascii-theme-font:minor-latin;
    mso-hansi-font-family:Calibri;
    mso-hansi-theme-font:minor-latin;
    mso-bidi-font-family:"Times New Roman";
    mso-bidi-theme-font:minor-bidi;}
    Auto Update Statistics
       lastDirectoryReadAttempt = 09:03:09 GMT-06:00 Wed Jan 19 2011
        =   Read directory: https://198.133.219.25//cgi-bin/front.x/ida/locator/locator.pl
        =   Error: AutoUpdate exception: HTTP connection failed [1,110]
       lastDownloadAttempt = N/A
       lastInstallAttempt = N/A
       nextAttempt = 11:00:00 GMT-06:00 Wed Jan 19 2011 Auxilliary Processors Installed
    IPS_Sensor# show clock
    .09:24:05 GMT-06:00 Wed Jan 19 2011
    I know this thread is a few months old, but am hoping to spark an interest here.
    Thanks.

  • Will ASA-SSM-20 reload affect ASA failover?

    I have 2 ASA 5520s with an ASA-SSM-20 installed in each. The ASA-SSM-20 in the primary ASA is not working correctly:
    Error: Cannot communicate with mainApp (getVersion). Please contact your system administrator.
    Would you like to run cidDump?[no]:
    I would like to reload the module, but I don't know if that will cause the whole ASA to failover. The ASAs are running 7.2(3).
    Any thoughts?

    Thanks Brett.
    We are using stateful failover. Not all sessions get dropped, just enough Telnet and application interface links that we start getting calls and people show up at my door. This is on a new ASA5520 that normally runs <5% CPU utilization. I just checked the failover link is set to 1000FULL so there should not be any delay updated state information.
    Am I missing something in the config?
    Portcullis# sho run failover
    failover
    failover lan unit primary
    failover lan interface heartbeat GigabitEthernet0/2
    failover polltime unit 3 holdtime 9
    failover replication http
    failover link heartbeat GigabitEthernet0/2
    failover interface ip heartbeat 172.31.0.201 255.255.255.0 standby 172.31.0.202
    Portcullis# sho run interface g0/2
    interface GigabitEthernet0/2
    description LAN/STATE Failover Interface
    speed 1000
    duplex full
    Portcullis#
    -Roy-

  • ASA-SSM-10 inspection load 100% (version 7.0(5a)E4

    Hi all,
    I have a challenge with the IPS module in the ASA5520, the ASA-SSM-10. When we start a test to connect to the webservers I get a inspection load of 100% and traffic/performance will slow down.
    We test with 63000 sessions per minute which perform a load of: from the test-servers(clients) to the web-servers of 20.000 kbits/sec and traffic from the web-servers back to the test-servers(clients) 75.000 kbits/sec.
    Can you please advise what to do because we cannot go live with this environment only when this is fixed.
    Thanks in advance,
    Erik Verkerk.

    Hi Bob,
    thanks for you reply/suggestion and you understood the numbers correctly. Unfortunately the AIP-SSM-10 module must inspect this kind of load. I can test, within 8 hours time, a lower amount of traffic.
    I do have some questions for you:
    When you have a traffic of 75Mb/s what is your inspection load saying 80%?
    Regarding the specs Cisco tells in the documentation of the ASA5520 that when you are using a AIP-SSM-10 you can firewalling and IPS a maximum of 225Mb/s. Now I understand that this is probably the commercial figures but Iám only looking for half of this, 95MB/s. Do you have an explaination for this?
    Perhaps the amount of signatures is too much: I have 1500 signatures active, can you tell how much active signatures you run in your AIP-SSM-10?
    Last but not least question:
    It is hard for me to find some usefull documentation, specific troubleshooting the IPS, do you have suggestions?
    I hope you have the time to answers these questions it certainly helps me to understand the IPS and fix the problem.
    Many thanks in advance,
    Erik.

  • Signature recommendations for ASA-SSM-10

    hi, I was wondering if anyone has recommendations on what sigs to enable on the ASA-SSM-10.......I know.... to a certain extent, 'it depends'  on your individual environment.  But I think it must be the case that there are some disabled sigs that are good to enable..right?  I was hoping to tap into the 'group mind' on what works well.
    Also, why not enable all?  I am assuming the ASA-SSM-10 probably cannot keep up with that level of inspection??
    thanks in advance

    androdri,
      Thanks for your reply.  I have some followup questions.
    1.  I noticed that any signature that is disabled is listed as retired....does retired mean disabled or something else (like not needed any more).
    2.  it seems like most of the malware sigs are disabled, i would think that if you are in a user environment, you would want those on, is there an example of a situation that you would not want them on....how do you know if you have a problem if you don't look.
    thanks

  • Serial FIFO overrun errors

    I have an built an application that communicates with a device via RS232.  I am using LabVIEW 2011 and VISA 5.1.   I am continually getting this error:
    -1073807252: VISA: (Hex 0xBFFF006C) An overrun error occurred during transfer. A character was not read from the hardware before the next character arrived
    After carefully reading this page, I see that the error is happening on the hardware level and appears to have nothing to do with my LabVIEW code nor how quickly I read from the serial buffer.
    It appears that the FIFO buffer on the UART chip is overflowing because the CPU is not responding to interrupts quickly enough (at least that is my understanding of it).  This would make sense because the error appears to happen when I open other applications (eg, if I open MSIE while the application is running).
    Do you have any additional suggestions (other than what is listed on this page)?  I am wondering if I should get a better RS232 card?  Would getting a card with a large FIFO help?  128 B?  Any reccomendations?

    Hi josborne,
    This KB also suggests a couple of things. One idea here is to lower the buffer size. The UART will use full buffer that it has built-in to buffer the samples, but it will send an IRQ signal to the processor sooner if you specify a lower buffer. This, combined with hardware handshaking (which you have already mentioned) should enable you to communicate with the instrument.
    As crossrulz said, you could also try to lower the baud rate so that the buffer won't get filled as fast, in case this old UART can buffer low amount of bytes.
    You can also try to send commands using the VISA Test Panel or HyperTerminal.
    So basically all of the suggestions you have should work. Have you tried them all and still get this error? If this doesn't work, I'd seriously begin to wonder what the performance of your computer is and try out another UART (a USB to serial converter, maybe?)
    Also, what is the device you are talking to?
    Regards,
    Daniel REDS
    RF Systems Engineer
    Help us grow.
    If a post solves your question, mark it as The Solution.
    If a post helps, give Kudos to it.

  • ASA-SSM-10 Signature Update Errors Messages

    Hello,
    I am getting error messages on ASA-SSM-10 IPS. It has following configuration:
    Model:   ASA-SSM-10
    Hardware version:   1.0
    Firmware version:   1.0(11)5
    Software version:   7.0(7)E4
    App. version:       7.0(7)E4
    Here are error messages:
    evError: eventId=1334244240891143986  vendor=Cisco  severity=error  
      originator:  
        hostId: sensor 
        appName: mainApp 
        appInstanceId: 357 
      errorMessage: No installable auto update package found on server  name=errSystemError 
    evError: eventId=1334244240891141857  vendor=Cisco  severity=error 
      originator:  
        hostId: sensor 
        appName: mainApp 
        appInstanceId: 357 
      errorMessage: could not parse cisco-locator-server response  name=errSystemError 
    evError: eventId=1334244240891142089  vendor=Cisco  severity=error 
      originator:  
        hostId: sensor 
        appName: collaborationApp 
        appInstanceId: 489 
      errorMessage: A global correlation update failed: Receive HTTP response failed [3,212]
    Messages, like this one, in the category - Reputation update failure - were logged 1 times in the last 105245 seconds.  name=errUnclassified 
    evError: eventId=1334244240891141325  vendor=Cisco  severity=error 
      originator:  
        hostId: sensor 
        appName: mainApp 
        appInstanceId: 357 
      errorMessage: could not parse cisco-locator-server response  name=errSystemError 
    Actually IPS is doing signature and Global Correlation updates, but form time to time I see  these error messages. Do you have any information what could it indicate.

    Hello Giorgi,
    Sometimes it may be server saturation, other connection problems proxy and so on. I recommend you to not put the hour for auto update to an exact time ie 2:00 PM or 1:00 AM try putting not even numbers like 9:17 or 10:41, and see if you continue getting these errors.
    Mike

  • Failed auto update on ASA-SSM-20 The host is not trusted. Add the host to the system's trusted TLS certificates.

    Failed auto update on ASA-SSM-20 The host is not trusted. Add the host to the system's trusted TLS certificates.
      errorMessage: WebSession::sessionTask TLS connection exception: handshake incomplete.
    Messages, like this one, in the category - TLS connection failure - were logged 1464 times in the last 21461 seconds.  name=errTransport  

    Sam,
    See the other post in the list talking about your problem, "host not trusted".
    I had the same problem and the fix was to upgrade the IPS to 7.1(9)E4 . 
    Mike

  • I have an iPhone 4. I tried updating it tonight to iOS7 through my just updated iTunes. I received an error message telling me the update couldn't be completed. My phone then went to the screen asking me to connect to iTunes which can't see my phone. Help

    I have an iPhone 4. I tried updating it tonight to iOS7 through my just updated iTunes. I received an error message telling me the update couldn't be completed. My phone then went to the screen asking me to connect to iTunes which can't see my phone. Help!!

    micron12
    Hi I had a simular problem with my iPhone 4 and iPad 3 and found that the USB connection on the computer was at fault so I moved the connection to a USB port on the Mother board.This curred my problem,see if ti works for you.
    Windows 7 and windows XP

  • I see error: 3624, Severity: 20, State: 1.in the sql server error logs on secondary host

    I see this error: Error: 3624, Severity: 20, State: 1
    Complete error in the error log is:
    SQL Server Assertion: File: <loglock.cpp>, line=807 Failed Assertion = 'result == LCK_OK'. This error may be timing-related. If the error persists after rerunning the statement, use DBCC CHECKDB to check the database for structural integrity, or restart
    the server to ensure in-memory data structures are not corrupted.
    SQL Server 2008 R2 with Service pack 2 installed and mirrored.
    I see this error in the sql server dump file:
    0:000> .ecxr
    rax=00000000676a7a6a rbx=0000000003fd3250 rcx=000000001048aaa0
    rdx=0000000000000000 rsi=0000000003bbef3c rdi=0000000000000440
    rip=000007fefd10940d rsp=000000001048b0b0 rbp=000000001048ca50
     r8=0000000000000000  r9=0000000000000000 r10=00000000c000007c
    r11=00000000012e98d0 r12=00000000000007c0 r13=0000000000000000
    r14=0000000000000000 r15=00000000000007c0
    iopl=0         nv up ei pl nz na po nc
    cs=0033  ss=002b  ds=002b  es=002b  fs=0053  gs=002b             efl=00000206
    KERNELBASE!RaiseException+0x39:
    000007fe`fd10940d 4881c4c8000000  add     rsp,0C8h
    0:000> kC  1000
    Call Site
    KERNELBASE!RaiseException
    sqlservr!CDmpDump::Dump
    sqlservr!SQLDumperLibraryInvoke
    sqlservr!CImageHelper::DoMiniDump
    sqlservr!stackTrace
    sqlservr!utassert_fail
    sqlservr!LogLockCollectionAcquire::Callback
    sqlservr!LogLockCollection::ApplyLocks
    sqlservr!LogLockCollection::Acquire
    sqlservr!DBMRedoManager::AnalyzeLogRecord
    sqlservr!DBMRedoManager::RunAnalysis
    sqlservr!DBMRedoManager::ApplyLogSegment
    sqlservr!DBMRedoManager::Execute
    sqlservr!SubprocEntrypoint
    sqlservr!SOS_Task::Param::Execute
    sqlservr!SOS_Scheduler::RunTask
    sqlservr!SOS_Scheduler::ProcessTasks
    sqlservr!SchedulerManager::WorkerEntryPoint
    sqlservr!SystemThread::RunWorker
    sqlservr!SystemThreadDispatcher::ProcessWorker
    sqlservr!SchedulerManager::ThreadEntryPoint
    msvcr80!endthreadex
    msvcr80!endthreadex
    kernel32!BaseThreadInitThunk
    ntdll!RtlUserThreadStart
    Not sure what to infer from this. Any help would be appreciated.
    Let me know if more info. is needed.
    Thanks !!!

    I did not have a chance to run that at the time the error happened, now everything is normal. Do you have any idea on what this means?
    sqlservr!LogLockCollectionAcquire::Callback
    I suggest you to run full DBCC CHECKDB , like I said assertion errors are basically related to Internal SQL Server problem
    Please mark this reply as answer if it solved your issue or vote as helpful if it helped so that other forum members can benefit from it
    My Technet Wiki Article
    MVP

  • Suddenly, I am seeing an error message that reads: "The iTunes Library cannot be saved. An unknown error occurred (-54)".  Can anyone tell me what that means?

    Suddenly, I am seeing an error message that reads: "The iTunes Library cannot be saved. An unknown error occurred (-54)".  Can anyone tell me what that means? Am I in danger of my iTunes library being lost?

    == Error -54 ==
    From an OS9 reference, error -54 is a software lock on a file or a permissions error. (Some of the old codes still apply to OSX although there is no formal list of OSX error codes.)
    First, try simply restarting your computer.
    iTunes Library cannot be saved (Error -54) - https://discussions.apple.com/thread/1912814
    Unknown error (-54) while syncing ipod - https://discussions.apple.com/thread/1082953 - problem was locked files
    Why does iTunes keep showing a -54 error when I sync my iPad? - https://discussions.apple.com/thread/3727114
    Error -54 possibly related to Touch Copy - https://discussions.apple.com/thread/3727114 - cleared by deleting preferences on iPad.

  • Upgrading to osx 10.6.8 fails. I see errors in the /var/log/install.log of "An unexpected error occurred while moving files to the final destination." Underlying Error=(Error Domain=NSPOSIXErrorDomain Code=5 "The operation couldn't be completed. Input/out

    upgrading to osx 10.6.8 fails. I see errors in the /var/log/install.log of "An unexpected error occurred while moving files to the final destination." Underlying Error=(Error Domain=NSPOSIXErrorDomain Code=5 "The operation couldn’t be completed. Input/out. Any thoughts on what is causing these errors and the upgrade failure?
    Thanks

    I have no idea what the specific error code means but input/output errors can sometimes mean a disk is failing. Make a couple of backups of all important data before doing anything else.
    Verify your startup disk using the First Aid tab in Disk Utility. If the disk needs repair boot from your Leopard DVD and repair your disk from Disk Utility under Utilities on the screen after you choose your language. Repeat the repair process until Disk Utility reports all is well.
    If Disk Utility doesn't find any errors you might want to try a new download of the update and keep a sharp eye on your HD for anything else that might indicate all is not well. Take special care to back up important data.
    If Disk Utility finds errors it would probably be a good idea to pay a visit to the Apple Store to have them check out your hard drive even if Disk Utility is able to repair the errors.

  • Will reloading an ASA-SSM effect the Firewall itself?

    We've lost the login info for the IPS-SSM on our ASA 5520. It looks like we will need to re image the module with a newer software version. It currently is not in use i.e. no rules for it on the the firewall. Will this process take the firewall off line at all?
    Output from sh command:
    Firewall03# show module 1
    Mod Card Type Model Serial No.
    1 ASA 5500 Series Security Services Module-20 ASA-SSM-20 xxxxxxx
    Mod MAC Address Range Hw Version Fw Version Sw Version
    1 001b.0ce2.xxxx to 001b.0ce2.xxxx 1.0 1.0(11)2 5.1(5)E1
    Mod SSM Application Name Status SSM Application Version
    1 IPS Up 5.1(5)E1
    Mod Status Data Plane Status Compatibility
    1 Up Up
    Firewall03# show module 1 recover
    Module 1 recover parameters...
    Boot Recovery Image: No
    Image URL: tftp://0.0.0.0/
    Port IP Address: 0.0.0.0
    Gateway IP Address: 0.0.0.0
    VLAN ID: 0

    So it will have an effect on the firewall, causing it to fail over?
    Also I am having a hard time understanding the recovery process as it seems the device needs to be configured to allow the recovery image to be used. I have no idea how if at all the device is configured, we have zero access to the device as we have none of the passwords for it and no idea how it's configured.
    from looking at the above (1st post) you can there is no recovery location set. How do I recover with no info on the device?
    Firewall03# sh module 1 details
    Getting details from the Service Module, please wait...
    ASA 5500 Series Security Services Module-20
    Model: ASA-SSM-20
    Hardware version: 1.0
    Serial Number: JAF111XXXXX
    Firmware version: 1.0(11)2
    Software version: 5.1(5)E1
    MAC Address Range: 001b.0ce2.XXXX to 001b.0ce2.XXXX
    App. name: IPS
    App. Status: Up
    App. Status Desc:
    App. version: 5.1(5)E1
    Data plane Status: Up
    Status: Up
    Mgmt IP addr: 10.1.9.201
    Mgmt web ports: 443
    Mgmt TLS enabled: true
    Firewall03# sh module 1 recover
    Module 1 recover parameters...
    Boot Recovery Image: No
    Image URL: tftp://0.0.0.0/
    Port IP Address: 0.0.0.0
    Gateway IP Address: 0.0.0.0
    VLAN ID: 0
    Firewall03#

Maybe you are looking for

  • Unable to extract data from an AS/400 system.

    Hello experts. We are trying to extract data from an AS/400 system but not having any success until now. I´ll write down you the stepts that we have followed until now: 1.- Create a DB Connect between both systems 2.- Create a Source System from AS40

  • Can I have two iCloud accounts on my iPad ?

    I have damaged my iPhone and wondered if I can access my emails and iCloud account from my husbands iPad until I have a new phone ? It does not seem obvious how to access another iCloud account from his iPad , any help appreciated !

  • Using parameters in a select query sometimes not working

    I use parameters throughout my code - usually without problem, but for some reason in one case it does not return a result. When I modify the querystring to contain the value instead of using parameters it works. Is it because I'm secting a clob? or

  • Asset description change

    gurus, In as02 transaction description field is having length of char50 .which will appear in f4 help of as02 asset field. here this value come from mcoa1 field having length of char30 only. so what ever i enter in this description filed is not commi

  • Saving address book

    using tb 31.2, ow to save address book or is it saved in profile? also, how to make contact groups?