Guest

Preview Tool

Cisco Bug: CSCvs43154 - Secondary ASA is unable to join the failover due to aggressive warning messages.

Last Modified

Apr 17, 2020

Products (1)

  • Cisco ASA 5500-X Series Firewalls

Known Affected Releases

9.4(4.8) 9.8(2.35)

Description (partial)

Symptom:
Configured access-lists for PBR, where you define one ACL with the destination as any then add another ACL with the specified destination, the system will throw warning messages, which won't let the configuration Replication from Active to standby to complete, due to which the secondary device keeps on rebooting.


WARNING: If access-list <ACL-name> having destination "any\any4\any6" is used as match criteria for a route map, and applied to any routing protocol it will not have any effect. Instead, use standard ACL or extended ACL without any\any4\any6 in destination.

Conditions:
Configured access-lists for PBR, where you define one ACL with destination any and another ACL with the specified destination,
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.