Cisco Bug: CSCvs43154 - Secondary ASA is unable to join the failover due to aggressive warning messages.
Apr 17, 2020
- Cisco ASA 5500-X Series Firewalls
Known Affected Releases
Symptom: Configured access-lists for PBR, where you define one ACL with the destination as any then add another ACL with the specified destination, the system will throw warning messages, which won't let the configuration Replication from Active to standby to complete, due to which the secondary device keeps on rebooting. WARNING: If access-list <ACL-name> having destination "any\any4\any6" is used as match criteria for a route map, and applied to any routing protocol it will not have any effect. Instead, use standard ACL or extended ACL without any\any4\any6 in destination. Conditions: Configured access-lists for PBR, where you define one ACL with destination any and another ACL with the specified destination,
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.
Bug Details Include
- Full Description (including symptoms, conditions and workarounds)
- Known Fixed Releases
- Related Community Discussions
- Number of Related Support Cases