Cisco FirePOWER ASA 5500 series Configuration Manual page 833

Security appliance command line
Hide thumbs Also See for FirePOWER ASA 5500 series:
Table of Contents

Advertisement

Chapter 43
Troubleshooting the Security Appliance
Symptom
Possible Cause
configuring contexts at the command line, you did not save the context before you changed to the
next context.
Recommended Action
command. You cannot save contexts from the system execution space.
Symptom
Possible Cause
Recommended Action
Telnet Access" section on page 40-1
Symptom
Possible Cause
Recommended Action
command.
Symptom
Possible Cause
ingress and egress interfaces.
Recommended Action
automatically allow returning traffic through. In addition to an access list on the ingress interface,
you either need to apply an access list to egress interface to allow replying traffic, or enable the
ICMP inspection engine, which treats ICMP connections as stateful connections.
Symptom
Possible Cause
same security level.
Recommended Action
Interfaces on the Same Security Level" section on page
OL-10088-01
The context configuration was not saved, and was lost when you reloaded.
You did not save each context within the context execution space. If you are
Save each context within the context execution space using the copy run start
You cannot make a Telnet connection or SSH to the security appliance interface.
You did not enable Telnet or SSH to the security appliance.
Enable Telnet or SSH to the security appliance according to the
You cannot ping the security appliance interface.
You disabled ICMP to the security appliance.
Enable ICMP to the security appliance for your IP address using the icmp
You cannot ping through the security appliance, even though the access list allows it.
You did not enable the ICMP inspection engine or apply access lists on both the
Because ICMP is a connectionless protocol, the security appliance does not
Traffic does not pass between two interfaces on the same security level.
You did not enable the feature that allows traffic to pass between interfaces on the
Enable this feature according to the
or the
"Allowing SSH Access" section on page
"Allowing Communication Between
7-6.
Cisco Security Appliance Command Line Configuration Guide
Common Problems
"Allowing
40-2.
43-11

Advertisement

Table of Contents
loading

This manual is also suitable for:

Pix 500 seriesCisco asa 5500 series

Table of Contents