Re: OT: Access to ASA via SSH and ASDM

From: Anthony Bonilla <anthonybonilla.ccie_at_gmail.com>
Date: Tue, 17 Sep 2013 12:17:48 -0400

Thanks for trying to help Tony. Basically, I am running 9.x version on
these devices but even now, have about 3 of them that are not reachable via
SSH and/or ASDM. When I try to connect to these via ASDM, it can't connect
and gives me an error message. SSH just times out without a response.
 Problem is that I don't telnet enabled on these for obvious reasons and
don't have a remote console either - last time we had someone remotely
console in with TAC on the line and TAC engineer asked us for some outputs
but has not been able to find any issues (we were told that this was a
problem with sshd and only way around is to remove and add back ssh
commands:(

On Mon, Sep 16, 2013 at 5:28 PM, Tony Singh <mothafungla_at_gmail.com> wrote:

>
> Hi Anthony
>
> Not sure how you got on? I didn't catch the code you were running?
>
> I have a simple 5505 at home which regularly used to lock up till I
> upgraded to 8.4.1 I run ssh ok to it not many reloads since
>
> I take it when you have no management to it that it also prevents that
> particular branches traffic passing from inbound to out? I found in the
> previous code I was running that re-applying the dhcp wan modem facing
> config worked rather then reloading the device, like a lot of things I'm
> sure tac have root level for these devices and understand the bugs prior to
> us reporting them in, hence the documentation release notes being so good.
>
> Good luck.
>
> --
> BR
>
> Tony
>
> Sent from my iPad
>
> On 4 Sep 2013, at 21:42, Anthony Bonilla <anthonybonilla.ccie_at_gmail.com>
> wrote:
>
> > Team,
> >
> > We have a whole bunch of Cisco ASA 5500 firewalls being used at head end
> > and at branches and at times, I have noticed that I am unable to connect
> to
> > one of the remote devices via SSH and/or ASDM (it can't connect).
> > Apparently, rebooting the device does not help either. I was wondering
> if
> > anyone else has experienced this issue and if so, what is the best way to
> > resolve it? BTW, I don't have any remote console solutions for these
> > devices and have to get someone to console in to fix it but wondering if
> > there is a better way for me to take care of issue remotely or avoid
> > all together? Please let me know if possible. TIA.
> >
> > Tony
> >
> >
> > Blogs and organic groups at http://www.ccie.net
> >
> > _______________________________________________________________________
> > Subscription information may be found at:
> > http://www.groupstudy.com/list/CCIELab.html

Blogs and organic groups at http://www.ccie.net
Received on Tue Sep 17 2013 - 12:17:48 ART

This archive was generated by hypermail 2.2.0 : Tue Oct 01 2013 - 06:36:35 ART