...
This is a documentation defect to cover the following details about the fail-safe mode in these locations: - "Cisco FXOS Troubleshooting Guide for the Firepower 1000/2100 with Firepower Threat Defense", chapter "FXOS CLI Troubleshooting Commands", section "FXOS CLI Security Services Mode Troubleshooting Commands". - "Cisco FXOS Troubleshooting for the Firepower 1000/2100 with ASA", chapter "FXOS Troubleshooting Commands", section "Security Services Mode Troubleshooting Commands". The fail-safe mode for an ASA/FTD application on Firepower 1000/2100 is activated due to continuous boot loop, traceback, etc. These parameters control the activation of the fail-safe mode: 1. Max Restart - maximum number of times that an application should restart in order to activate the fail-safe mode. 2. Current Reboot Count - number of times the application continuously restarted. 3. Restart Time Interval(secs) - the amount of time in seconds, during which the Max Restart counter should be reached in order to trigger the fail-safe mode. If the application restarts 'Max Restart' or more times within this interval, the fail-safe mode is enabled. To verify the fail-safe parameters, use the "show failsafe-params" command in the local-mgmt command shell: firepower-2120-failed(local-mgmt)# show failsafe-params Max Restart: 8 Current Reboot Count: 0 Restart Time Interval(secs): 3600 When the system is in the fail-safe mode: 1. The system name is appended with the "-failed" string: firepower-2120-failed /ssa # <=== 2. The output of the "show failsafe-params" command in the local-mgmt command shell contains a warning message: firepower-2120-failed(local-mgmt)# show failsafe-params Max Restart: 1 Current Reboot Count: 1 Restart Time Interval(secs): 3600 WARNING: System in Failsafe mode. Applications are not running! <======== 3. Operation State of the application is Offline: firepower-2120-failed /ssa # show app-instance Application Name Slot ID Admin State Operational State Running Version Startup Version Cluster Oper State Cluster Role -------------------- ---------- --------------- -------------------- --------------- --------------- -------------------- ------------ asa 1 Enabled Offline <===== 9.16.2.3 9.16.2.3 Not Applicable None
None.
None.
Click on a version to see all relevant bugs
Cisco Integration
Learn more about where this data comes from
Bug Scrub Advisor
Streamline upgrades with automated vendor bug scrubs
BugZero Enterprise
Wish you caught this bug sooner? Get proactive today.