Forum Discussion
ASM policy sync issue
Hi,
i have configured ASM in HA. everything was working fine as far as concern with LTM and ASM.i logged in box after some days and found that in active box ASM policies were in transparent mode but in standby box all polices were in block mode. i am shocked to see this. how it is possible.
- gsharri
Altostratus
Have you enabled ASM sync? Security>Options>Application Security>Synchronization. If this is not enabled I believe the policy names will sync but their configuration does not.
- Hannes_Rapp
Nimbostratus
Check G.Scott's recommendation 1st. That's the obvious one, most likely.
If that doesn't apply, consider flushing ASM's DB on the Standby unit. Don't forget to take a UCS backup for safety reasons: https://support.f5.com/csp/article/K6992
- When DB has been reset on Standby unit, manually enable ASM sync (the same as in 1st recommendation), and initiate a sync from Active to Standby. This initial sync could take up to 5 minutes if you have a hundred policies. After initial sync, all is back to normal.
This will eliminate blocking conflicts in ASM's MySQL DB and a seamless sync can take place. Those issues are rare, caused by very circumstantial bugs. Last time I did this procedure with BigIP v12.1 half a year ago. When you're not in a rush to restore sync, consider contacting F5 support so they can have a look and see if there are any un-addressed bugs.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com