Link to home
Start Free TrialLog in
Avatar of knfitz
knfitzFlag for United States of America

asked on

cisco asa firewall keeps having to be rebooted

I have a cisco asa 5505 firewall and my internet browsing keeps going down until I reboot the firewall. sometimes I have to reboot it a couple of times for the internet to start working again. What could be the problem here? I'm not sure where to start looking in my firewall.
Avatar of Istvan Kalmar
Istvan Kalmar
Flag of Hungary image

Hi,

I have same problem... If the environment temperature over than 26 Degree the ASA reboot or hang!

You need cooling or ventilator!

Best regards,
Istvan
Avatar of van_man
van_man

How many user license do you have? And how many users?   Does it stop letting everyone access the Internet, or just some people?
Avatar of knfitz

ASKER

26 degrees fahrenheit? everyone looses internet. I didn't think there was a license issue with a firewall?
Avatar of knfitz

ASKER

is there a place to look up the temp in the fireall?
I have 10 user license, but it happened with other device also.... if this happening all users dropped!
Avatar of knfitz

ASKER

I have never heard of a per user license with a lan firewall. are we talking about the same thing?
I measured with a digital thermometer, if I open the box when the environment temperature close to 26 degree the CPU temperature is 38-40 degree!
knfitz:

The 5505 can have a 10 user license, or 25 or 50, or unlimited.   The issue can be that when the license limit is hit, (aka the firewall sees 10 mac addresses, (if the license is for 10) of machines that are going to the Internet, and machines after that do not get past the firewall period.    

I am just saying that this could be the issue.   Can you do a show ver and see what the license count is?
Avatar of knfitz

ASKER

are you talking about celcius or fahrenheit?
celsius
but how many computer want to use this internet via ASA?
Avatar of knfitz

ASKER

around 150, but I don't believe there's licensing you buy with an asa firewall?
please provide us the ' sh ver' command output...
Avatar of knfitz

ASKER

can you tell me how to get that?
telnet or ssh into the ASA and type sh ver
Avatar of knfitz

ASKER

it wouldn't let me telnet. is there a way to get it from the GUI? that's how I usually get in.
Device dashboard --> License
Avatar of knfitz

ASKER

ok, which value are you looking for? inside hosts = 50. I've had this firewall for about a year and this has just started happening?
ASKER CERTIFIED SOLUTION
Avatar of Istvan Kalmar
Istvan Kalmar
Flag of Hungary image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of knfitz

ASKER

is that a simultaneaous connection to the internet? Are there any logs that would tell me if we had 50 on at the same time?
That is why it sometimes works and sometimes doesn't,  the first 50 hosts get internet access, and any others do not.
Avatar of knfitz

ASKER

are there any logs that would tell me for sure that we hit 50?
yep

something syslog message which contains "exceeded" in red
Avatar of knfitz

ASKER

where is that at in the GUI interface?
The log is at the bottom of the first page that comes up when you start the GUI
Monitoring --> Logging --> View
Hi,

I advise to reopen the question, and give some points to van_man: