1-17
Cisco ASA Series CLI Configuration Guide
Chapter 1 Configuring Active/Standby Failover
Controlling Failover
Restoring a Failed Unit
To restore a failed unit to an unfailed state, enter the following command:
Testing the Failover Functionality
To test failover functionality, perform the following steps:
Step 1
Test that your active unit is passing traffic as expected by using FTP (for example) to send a file between
hosts on different interfaces.
Step 2
Force a failover by entering the following command on the active unit:
hostname(config)#
no failover active
Step 3
Use FTP to send another file between the same two hosts.
Step 4
If the test was not successful, enter the
show failover
command to check the failover status.
Step 5
When you are finished, you can restore the unit to active status by enter the following command on the
newly active unit:
hostname(config)#
no failover active
Note
When an ASA interface goes down, for failover it is still considered to be a unit issue. If the ASA detects
that an interface is down, failover occurs immediately, without waiting for the interface holdtime. The
interface holdtime is only useful when the ASA considers its status to be OK, although it is not receiving
hello packets from the peer. To simulate interface holdtime, shut down the VLAN on the switch to
prevent peers from receiving hello packets from each other.
Command
Purpose
no failover
Example:
hostname(config)#
no failover
Disables failover. Disabling failover on an Active/Standby pair causes the
active and standby state of each unit to be maintained until you restart. For
example, the standby unit remains in standby mode so that both units do
not start passing traffic. To make the standby unit active (even with failover
disabled), see the
“Forcing Failover” section on page 1-16
.
Command
Purpose
failover reset
Example:
hostname(config)#
failover reset
Restores a failed unit to an unfailed state. Restoring a failed unit to an
unfailed state does not automatically make it active; restored units remain
in the standby state until made active by failover (forced or natural).
Summary of Contents for 5505 - ASA Firewall Edition Bundle
Page 28: ...Glossary GL 24 Cisco ASA Series CLI Configuration Guide ...
Page 61: ...P A R T 1 Getting Started with the ASA ...
Page 62: ......
Page 219: ...P A R T 2 Configuring High Availability and Scalability ...
Page 220: ......
Page 403: ...P A R T 2 Configuring Interfaces ...
Page 404: ......
Page 499: ...P A R T 2 Configuring Basic Settings ...
Page 500: ......
Page 533: ...P A R T 2 Configuring Objects and Access Lists ...
Page 534: ......
Page 601: ...P A R T 2 Configuring IP Routing ...
Page 602: ......
Page 745: ...P A R T 2 Configuring Network Address Translation ...
Page 746: ......
Page 845: ...P A R T 2 Configuring AAA Servers and the Local Database ...
Page 846: ......
Page 981: ...P A R T 2 Configuring Access Control ...
Page 982: ......
Page 1061: ...P A R T 2 Configuring Service Policies Using the Modular Policy Framework ...
Page 1062: ......
Page 1093: ...P A R T 2 Configuring Application Inspection ...
Page 1094: ......
Page 1191: ...P A R T 2 Configuring Unified Communications ...
Page 1192: ......
Page 1333: ...P A R T 2 Configuring Connection Settings and QoS ...
Page 1334: ......
Page 1379: ...P A R T 2 Configuring Advanced Network Protection ...
Page 1380: ......
Page 1475: ...P A R T 2 Configuring Modules ...
Page 1476: ......
Page 1549: ...P A R T 2 Configuring VPN ...
Page 1550: ......
Page 1965: ...P A R T 2 Configuring Logging SNMP and Smart Call Home ...
Page 1966: ......
Page 2059: ...P A R T 2 System Administration ...
Page 2060: ......
Page 2098: ...1 8 Cisco ASA Series CLI Configuration Guide Chapter 1 Troubleshooting Viewing the Coredump ...
Page 2099: ...P A R T 2 Reference ...
Page 2100: ......