ASA Rommon boot guard!

Hello

I recently had to re - format, add a new activation key and add the asdm504.bin and the asa704 - k8.bin in my ASA 5520 (I accidentally erased memory on the machine). Now, whenever I use the command "reload" it just directly load in Rommon #... when I get to the Rommon prompt # all what I have to do is type currently... 'start-up' and it loads my file asa704 - k8.bin and load to the top of my config and good mine. I just wonder, is it possible that I would be able to put it easily so it loads the image automatically?

asa2 (config) #show boot

Variable BOOT = disk0: / asa704 - k8.bin

Current BOOT variable = disk0: / asa704 - k8.bin

Variable CONFIG_FILE = disk0: / startup-config

Current CONFIG_FILE variable = disk0: / startup-config

asa2 (config) # disk0 see the:

The boot disk0: caching, please wait... Fact.

-# - length - time - path

8 2995 June 7, 2006 06:30:02 startup-config

9 5437440 June 7, 2006 06:18:04 asa704 - k8.bin

10 5958324 June 7, 2006 06:24:08 asdm504.bin

51515392 bytes available (11431936 bytes used)

Thank you

Chris

Hi Chris,

0 x 00112002-> which means start the TFTP server, runs aground, go to rommon.

The ' config-register 0 x 1 ' is ok, that it will ask the ASA to load from default image.»

As precaution (ditto for me), pls save the config (evem but will not delete the config file).

Rgds,

AK

Tags: Cisco Security

Similar Questions

  • MacBook pro doesn't boot/guard chrasing (end 2011-17 ")

    Dear community,

    I have a problem with my laptop as expensive. All started a few months ago. Guard just by chance my business, when all of a sudden my screen blink, turning blue, split in two. Hmmm weird, never had this before. Was not any substance is heavy on the machine in time.

    For troubleshooting begins: Reboot, = > boots ok. Yes it works! After 10-15 minutes, the same question. Woohoo!

    Reboot again, this time without success. It gets stuck at the loading screen grey and begins fanning upward. After becoming as hot as Mordor, it stops. Tried a few reboots, but all with the same result.

    Occasionally, it starts successfully and I can work perfect for about 10 to 30 minutes. (After restarting 5ish, at this point I did a backup on an external).

    My first assumption is therefore a bit my HARD drive stopped working. (Had the same problem a few years ago, swap HARD drive fixed)

    So I start with basic stuff. Check if everything is always in place. Swap the RAM, see if everything is still ok.

    Restart the macbook, without success. Same screen.

    Cannot access disk utility, startup does not work either. Memory NVRAM and SMC reset does not work.

    Single user mode is the only thing that seems to work all the time. (Note: I was looking for similar problems a little on the net.)

    I came across a forum a clever solution:

    /sbin/fsck -fy

    /sbin/mount -uw /

    rm /var/db/.AppleSetupDone

    reset

    TADAA! I can create a new account. Everything seems fine! First thing we do is to check my HARD drive. No problems found. But after 30 minutes ish it crashes again

    Only the same deal in single user mode but this time without success.

    So no start working at this point.

    For some reason any (after 1000000 tries), I went into disk util. So clean it up the installation of the operating system. Installation is made but same problem starting.

    With a friend we swap HDD and my HARD drive (SSD) starts fine on his machine. His HARD drive (windows OS) starts immediately on my macbook.

    But the fun doesn't last long, after 30 minutes of use ish, the macbook crashes again and the startup problem starts again.

    At this point im guessing a hardware problem somewhere. Maybe someone has or has had the same problem or can help with this problem.

    Sorry for the long reading and occasional grammar mistakes.

    Any suggestion or help is gladly appreciated!

    PS: The only thing that had changed was that I bought a new magsafe power adapter but it loads fine.

    Greetings Fernando.

    Your MBP falls into this category:

    https://www.Apple.com/support/MacBookPro-videoissues/

    Visit an Apple store and tested it.

    Ciao.

  • ASA 5520 Boot Error: Boot Image too large

    Hello

    I had 2 ASAs in an Active/Active configuration, but when I deleted the current config and passed back to the simple mode I get an error message at startup ' error: Boot Image too wide. " I've not seen any discussions or discussions on this matter. I am not sure, but I think the best way to solve this problem would be to take the configuration of starting of my still working ASA... send it to a tftp server and put it back on my ASA that will not start. If anyone has experience this problem or can give me a definitive answer regarding a possible solution please post a reply.

    Thank you

    Chris Bailey

    You can download the file from the following url. But you must log in using your ID EAC:

    http://www.Cisco.com/cgi-bin/tablebuild.pl/ASA

    The two download asa and asdm.

    Once you've got the file asa, load everything first to your ASA. Restart, and then go to the CLI. Load the asdm by using this command:

    copy the flashftp://your-server-IP/pathtofile t: / asdm - 511.bin

    http://www.Cisco.com/en/us/partner/products/ps6121/prod_release_note09186a00805b8543.html#wp37943

    http://www.Cisco.com/en/us/partner/products/ps6120/products_field_notice09186a0080655b8b.shtml

    http://www.Cisco.com/en/us/partner/products/HW/vpndevc/ps2030/products_tech_note09186a00804708d8.shtml

    Good luck.

    Rgds,

    AK

  • 3745 rommon boot

    Hi all

    I have a 3745 with a pb at startup:

    VERSION of the SOFTWARE system Bootstrap, Version 12.2 (8r) T2, (fc1)

    TAC support: http://www.cisco.com/tac

    Copyright (c) 2002 by cisco Systems, Inc.

    C3745 processor 262144 KB of main memory

    Main memory is configured for 64-bit with disabled parity

    ReadOnly initialized ROMMON

    load complete, point of entry to the program: 0 x 80008000, size: 0xca00

    init: cannot determine the first file on the device name "flash:

    The only command I have are below, and no way to download an IOS valid in the flash memory:

    ROMMON 1 >?

    alias set and display the alias command

    start to start an external process

    break set/show/clear breakpoint

    the confreg registry configuration utility

    Suite continues to run an uploaded image

    the context of a loaded image to display

    content display cookie from the cookie card mother PROM in hexadecimal

    the devices table dev list

    List of dir files in file system

    tell disassemble the instruction stream

    Download series DNLD one module of program

    frame print on a selected stack frame

    help monitor builtin command

    order history instructor history

    iomemdef IO the default 25% mem

    information about memory main meminfo

    REPEAT repeat a command monitor

    Reset system reset

    ROMMON-pref select ROMMON

    set display monitor variables

    showmon display selected ROM monitor

    battery to produce a stack of stack memory

    Sync write monitor environment in NVRAM

    sysret print news of last return system

    unalias unset alias

    undefined undefined variable monitor

    X XMODEM / ymodem image download

    ROMMON 2 >

    Any ideas?

    Thank you very much

    The only way you can transfer the image is using xmodem.

    http://www.Cisco.com/en/us/products/HW/routers/ps259/products_tech_note09186a008015bfac.shtml#download_2620

    HTH,

    -amit singh

  • VPN from Site to Site ASA 5505 booting do not

    I have two ASA 5505 running 8.4 and I tried using the VPN Wizard and the CLI, but I'm not able to get peers to initialze.  I watched other configs do not see what is missing. I tried followed the package through the ASDM and its not even seen the VPN tunnel and continues to try to go to the internet.  I have attached two configs for assistance.

    I'm glad you thought the problem and it's gotten the tunnel to initialize. Thanks for posting to the forum and stating what you have found the problem and how you fixed it. It is a good reminder of the importance of ensuring that encryption card corresponds to both ends. Maybe now, you can mark this as resolved issue and this would leave other readers know that there is a solution to this problem here.

    HTH

    Rick

  • ASA 5545 firepower question X

    Hi all

    I have an urgent matter, I bougth 2 ASAs 5545 x with firepower, both ASAs Sourcefire inside of the Flash, but only has the State upwards.

    When I run the show module command,

    ASA1

    ==========================================================================================

    ciscoasa # sh module

    Model serial number of map mod
    ---- -------------------------------------------- ------------------ -----------
    0 ASA 5545 - X with SW, GE 8 data, 1 GE Mgmt ASA5545 FCH19207Y7G
    IPS unknown n/a FCH19207Y7G
    cxsc unknown n/a FCH19207Y7G
    SFR unknown n/a FCH19207Y7G

    MAC mod Fw Sw Version Version Version Hw address range
    ---- --------------------------------- ------------ ------------ ---------------
    d8b1.9040.ba11 0 to d8b1.9040.ba1a 1.0 9,0000 8 2,0000 4
    IPS d8b1.9040.ba0f to d8b1.9040.ba0f / o
    cxsc d8b1.9040.ba0f to d8b1.9040.ba0f / o
    SFR d8b1.9040.ba0f to d8b1.9040.ba0f / o

    The Application name of the SSM status Version of the Application of SSM mod
    ---- ------------------------------ ---------------- --------------------------
    IPS unknown current Image number does not apply
    cxsc unknown No. current Image does not apply

    Data on the State of mod aircraft compatibility status
    ---- ------------------ --------------------- -------------
    0 to Sys does not apply
    IPS does not is not Applicable
    cxsc does not not Applicable
    SFR does not not Applicable

    Mod name license status time remaining license
    ---- -------------- --------------- ---------------
    IPS IPS Module perpetual mobility

    =================================================================================

    ASA2

    ==========================================================================================

    ciscoasa # sh module

    Model serial number of map mod
    ---- -------------------------------------------- ------------------ -----------
    0 ASA 5545 - X with SW, GE 8 data, 1 GE Mgmt ASA5545 FCH19207Y7G
    IPS unknown n/a FCH19207Y7G
    cxsc unknown n/a FCH19207Y7G
    SFR FirePOWER Services Software Module ASA5545 FCH19207Y7G

    MAC mod Fw Sw Version Version Version Hw address range
    ---- --------------------------------- ------------ ------------ ---------------
    d8b1.9040.ba11 0 to d8b1.9040.ba1a 1.0 9,0000 8 2,0000 4
    IPS d8b1.9040.ba0f to d8b1.9040.ba0f / o
    cxsc d8b1.9040.ba0f to d8b1.9040.ba0f / o
    SFR d8b1.9040.ba0f at d8b1.9040.ba0f s/o s/o 5.3.1 - 152

    The Application name of the SSM status Version of the Application of SSM mod
    ---- ------------------------------ ---------------- --------------------------
    IPS unknown current Image number does not apply
    cxsc unknown No. current Image does not apply
     SFR ASA FirePOWER Up 5.3.1 - 152

    Data on the State of mod aircraft compatibility status
    ---- ------------------ --------------------- -------------
    0 to Sys does not apply
    IPS does not is not Applicable
    cxsc does not not Applicable
    SFR Up Up

    Mod name license status time remaining license
    ---- -------------- --------------- ---------------
    IPS IPS Module perpetual mobility

    =================================================================================

    I tried these commands to retrieve the firewall

    SW-module module sfr recover configure image disk0:asasfr - 5500 x-boot - 5.3.1 - 152.img
    SW-module module sfr recover boot

    The threshold of State the same thing, but I can connect to the module of firepower through console session sfr.

    Please can you help me?

    If you started the recovery image, you have a partial installation. You need to go in the module with the command of session and launch the installation. Once you have a Setup "bootstrap" in place, you can complete the recovery process by installing the full image.

    Something like this:

     ciscoasa# session sfr console Opening console session with module sfr. Connected to module sfr. Escape sequence is 'CTRL-^X'. Cisco ASA SFR Boot Image 5.3.1 asasfr login: admin Password: Admin123

    Then run the installation program, followed by 'system install' to load the full image (pkg) package as follows:

     asasfr-boot> system install ftp://@/asasfr-sys-5.3.1-152.pkg Verifying Downloading Extracting Package Detail Description: Cisco ASA-SFR 5.3.1-152 System Install Requires reboot: Yes Do you want to continue with upgrade? [y]: Y Warning: Please do not interrupt the process or turn off the system. Doing so might leave system in unusable state. Upgrading Starting upgrade process... Populating new system image Reboot is required

    Once you reboot, the module of sfr should show that up to. You can then connect back (using admin / Sourcefire), accept the EULA, and end with the re-definition of addressing, and then adding the definition of a Manager.

  • E2 engine issue

    Dear Sir/Madam,

    I got four probes of Cisco IPS SSM-20. I'm running 6.0 (3) E1 and did not particularly want to spend 6.0 (4) due to the following:

    CSCsm60273 AIP - SSM rest in State does not respond after the start of ASA5500

    I have a number of downs to this year but he should continue to install updates of the signature, but cannot if I do not upgrade to 6.0 (4) E2 according to your comment below.

    WARNING: After releasing the E2, your sensors must be running release 7,0000 E2 or 4,0000 E2 in order to continue the installation of the updates of the signature.

    I'd rather stay on 6.0 (3) and upgrade to E2 (as this version is eligibale for upgrade of the engine) and wait for the caveat CSCsm60273 is resolved - hopefully in 5,0000 but I then won't be able to apply the signature updates.

    Please can you help me?

    Thanks in advance for your time.

    Rich,

    Understand that CSCsm60273 is not specific to 6.0 (4). It can also happen with the 6.0 (3) that you are already running and likely earlier versions as well.

    It will be also not fixed in 6.0 (5).

    Instead, it was determined to be a bug in the ASA/Rommon and not in the image of the IPS.

    It can be fixed in 6.0 (5) and instead needs a new ASA and/or Rommon to obtain the fix.

    If this bug does not affect your decision whether to move to 6.0 (4).

    Regarding E2 understand than 6.0 (3) is NOT eligible for upgrade to E2. E2 will be created only for 6.0 (4).

    6.0 eligibility (3) for E2 was missing at the end of April.

    Signature policy States "(b) Signature update support for service packs of software currently supported major and minor releases will be supported for at least sixty 60 days after the introduction of a new service pack."

    That's why 6.0 (3) has been fully supported the signature updates (and so engine updates) 60 days after 6.0 (4) published.

    6.0 (4) published at the end of February, so 6.0 (3) support was only guaranteed for 60 days and that was the end of April.

    Now in May is no longer a guarantee of support for signature (or updates to the engine) to 6.0 (3).

    As the E2 does not come you can always install updates of the E1 signature on any sensor E1 (including the 6.0 (3) E1). But when E2 is released it only supports 6.0 (4). It will not support 6.0 (3) because when E2 break it will have been more than 60 days since 6.0 (4) has been released.

    NOTE: E2 will also support the latest service pack on the train 5.1 which is 5.1 7.

  • Issue of dual-boot on Satellite A200 - xp guard freezing or crashing

    Being well try to install xp along side my installation Win7 (dual boot), but xp guard freezing or crashing.
    Ive done a few discs to slipstream the sata drivers with xp.
    Still will not install clean.

    So I tried to install win7 on the second partition and who will install, but is very slow and crashes for centuries.
    Im sure, I got right sata drivers. (Storage Manager intel matrix of toshiba).

    Anyone can shed some light?

    I have toshiba Satellite a200
    Intel duo t5550
    3 GB ram

    Hello

    If you use SATA drivers then the SATA in the BIOS mode option must be on AHCI.
    If you n t use drivers SATA you will need to set compatible mode.

    Here's a great description how to add SATA drivers

    + How to integrate a SATA AHCI driver into a Windows XP Setup CD.
    http://APS2.toshiba-tro.de/KB0/TSB85017Z0000R01.htm

    Good luck

  • C50-30 guard reset of the UEFI boot sequence

    Fedora 22 works fine on the C50-30 and starts fine with Secure Boot. However I still have to press F12 and select manually the Fedora shim on each (re) start, because for some reason any firmware guard reset the boot order to put Windows first.

    No matter if I move Fedora over Windows boot manager in the configuration utility, or efibootmgr allows you to change the order. After leaving the installation utility, the command is immediately reset to zero.

    I missed another adjustment here, or is this a bug in the firmware? BIOS version is O1XKT06AUS.

    It's a bug in the firmware. No problem if I rename \EFI\Microsoft to something else and make a new entry EFI (and adjust the GRUB configuration).

  • I can't boot on my Cisco ASA 5505

    Hello;

    I am facing a problem with my cisco ASA 5505 firewall. When I connect my cable to console the firewall to start setting firewall load and stop until the copyright. ICN can't access to the firewall to view the configuration. I start also with Rommon but I am facing the same problem. Does anyone have an idea of this problem and can help me?

    Please, it's so urgencly!

    Hello

    What version of software is on the asa and the amount of memory is on the device?

    Thank you

    John

  • VPN does not boot... ASA 5505

    Hi all

    I encountered a problem and hopefully one (or more!) of you have seen this before.

    I configured an ASA5505 to be endpoint tunnel VPN Lan to Lan, peering with a Linux links.  The SAA is full licensed so that side is not a problem.

    PROBLEM:

    When the tunnel is initialized from the linux box everything is happening very well except the ASA is not encapsulation of packages.  They are decrypted packets from the Linux box agreement, but not return traffic are encryption.

    When the tunnel is initialized to the ASA, nothing happens.

    After some troubleshooting I found that the ACL defines interesting traffic or the ACL setting NO_NAT will are not affected at all.

    ACL for NO_NAT:

    access-list NO_NAT line 1 Note USED ACL TO DEFINE WHAT TRAFFIC NOT NAT ON THE VPN

    permit for line NO_NAT of access list lengthened 2 ip host LINUX-AREAS of PAMS_SERVER object-group 0xc736d5fb

    allowed to Access - list NO_NAT line 2 extended host ip PAMS_SERVER 10.11.228.0 255.255.255.0 (hitcnt = 0)

    ACL for interesting traffic

    LNX_IPSEC list of access; 2 elements; hash name: 0xda433bf

    Line note 1 LNX_IPSEC to access list ACL USED TO DEFINE WHAT TRAFFIC to ENCRYPT

    permit for line LNX_IPSEC of access list lengthened 2 ip host LINUX-AREAS of PAMS_SERVER object-group 0x49989fbd

    allowed to Access - list LNX_IPSEC line 2 extended host ip PAMS_SERVER 10.11.228.0 255.255.255.0 (hitcnt = 0) 0x6f1aad85

    permits for Access - list extended LNX_IPSEC line of 3 ip host 10.1.85.156 LINUX-AREAS of 0x034eece3 object-group

    allowed for extended access list of 3 ip host 10.1.85.156 LNX_IPSEC line 10.11.228.0 255.255.255.0 (hitcnt = 0) 0xc3b2fc0b

    I checked with the administrator of the linux machine and the definition of interesting traffic is exactly the same (except in reverse, that should be the case).

    The firewall is doing other things such as NATs and as too but the NATs have nothing to do with this VPN.  The configuration is a LAN connection to LAN with no natting between the two.

    The main parts of the config are attached, I deleted that should have an impact on this, but if you think it is necessary I can clean up the config and re-post.  I think it will work very well as long as the traffic hitting these ACLs, but they are not and I'm not sure why.

    Right now I don't see anything when doing a Cree debugging ipsec or debug cry ISA.  The ACL are not being touched so I think he's trying to not even form the VPN as it can not see all traffic which is being 'interesting '.

    Has anyone seen this problem before or someone has any advice that I might be able to use to make it work?

    Thanks in advance for any help

    Brad

    How are those that hosts (PAMS_Server and 10.1.85.156) which is routed? You did not include the routing within the clinical setting and wondered if the routing is correct.

  • laptop used to boot after update bios from hp site guard goes blue screen

    Hi I have a compaq mini 110 (model 110 c-1110sa) I've updated the bios on your website and now it won't start on XP don't know what to do to get another work please can you help me to get this working again and it is not provided necessary to Flash the bios in dos recovery so that he can work Meany thanks Chris

    still no luck with it can someone help me to make it work again

  • Computer guard boot in safe mode, following a bad virus

    Hello world.
    My laptop was recently infected by a rather nasty virus that stopped me being able to open my anti-virus (avast) software in order to get rid of it. There was a lot of other programs I could not open the internet including Explorer. I left my computer for a few days and decided to buy a system restore software to completely erase my hard drive. I was quoted £50 so I decided to have a last date. I started windows in safe mode and miraculouly managed to open avast this time, I did a full scan and 9 infected files deleted.
    All the virus seems to have disappeared, but there are a few remaining problems. Now, whenever I turn on my computer windows starts in safe mode (even when I select the option to start windows normally). Windows Explorer keeps not working and closure (for example, when I try to go to the control panel) and my laptop will not connect to internet broadband in my house.
    Is it possible that I deleted some important system files while getting rid of the virus, or everyone recognizes it as something else? I'm scared, I'm just a normal user, and I don't know too much about computers so please go easy on me.
    I'd appreciate any help anyone can offer.

    My operating system is windows vista.

    see you soon

    Hello

    No one program cannot be used to detect and remove any malware. Added that often easy to
    detect malware is often accompanied by a much more difficult to detect and remove the payload. If it is better
    to be too full now than paying the price much later. Check with them to an extreme overdose
    point and then run the cleaning only when you are sure that the system is clean.

    It can be made repeatedly in Mode safe - F8 tap that you start, however you must also run them
    the Windows when you can.

    Download malwarebytes and scan with it, run MRT and add Prevx to be sure that he is gone. (If Rootkits
    UnHackMe execution)

    Download - SAVE - go to where you put it-right on - click RUN AS ADMIN

    Malwarebytes - free
    http://www.Malwarebytes.org/

    Run the malware removal tool from Microsoft

    Start - type in the search box-> find MRT top - right on - click RUN AS ADMIN.

    You should get this tool and its updates via Windows updates - if necessary, you can download it here.

    Download - SAVE - go to where you put it-right on - click RUN AS ADMIN
    (Then run MRT as shown above.)

    Microsoft Malicious - 32-bit removal tool
    http://www.Microsoft.com/downloads/details.aspx?FamilyId=AD724AE0-E72D-4F54-9AB3-75B8EB148356&displaylang=en

    Microsoft Malicious removal tool - 64 bit
    http://www.Microsoft.com/downloads/details.aspx?FamilyId=585D2BDE-367F-495e-94E7-6349F4EFFC74&displaylang=en

    also install Prevx to be sure that it is all gone.

    Download - SAVE - go to where you put it-right on - click RUN AS ADMIN

    Prevx - Home - free - small, fast, exceptional CLOUD protection, working with other security programs.
    It is a single scanner, VERY EFFICIENT, if it finds something to come back here or use Google to see
    How to remove.
    http://www.prevx.com/   <-->
    http://info.prevx.com/downloadcsi.asp  <-->

    Choice of PCmag editor - Prevx-
    http://www.PCMag.com/Article2/0, 2817,2346862,00.asp

    Try the demo version of Hitman Pro:

    Hitman Pro is a second scanner reviews, designed to save your computer from malicious software (viruses,
    Trojan horses, rootkits, etc.). that has infected your computer despite all security measures that you have
    taken (such as the anti-virus software, firewall, etc.).
    http://www.SurfRight.nl/en/hitmanpro

    --------------------------------------------------------

    If necessary here are some free online scanners to help the

    http://www.eset.com/onlinescan/

    http://OneCare.live.com/site/en-us/default.htm

    http://www.Kaspersky.com/virusscanner

    Other tests free online
    http://www.Google.com/search?hl=en&source=HP&q=antivirus+free+online+scan&AQ=f&OQ=&AQI=G1

    --------------------------------------------------------

    Also do to the General corruption of cleaning and repair/replace damaged/missing system files.

    Run DiskCleanup - start - all programs - Accessories - System Tools - Disk Cleanup

    Start - type this in the search box-> find COMMAND at the top and RIGHT CLICK – RUN AS ADMIN

    Enter this at the command prompt - sfc/scannow

    How to analyze the log file entries that the Microsoft Windows Resource Checker (SFC.exe) program
    generates in Windows Vista cbs.log
    http://support.Microsoft.com/kb/928228

    Run checkdisk - schedule it to run at the next startup, then apply OK then restart your way.

    How to run the check disk at startup in Vista
    http://www.Vistax64.com/tutorials/67612-check-disk-Chkdsk.html

    -----------------------------------------------------------------------

    If we find Rootkits use this thread and other suggestions. (Run UnHackMe)

    http://social.answers.Microsoft.com/forums/en-us/InternetExplorer/thread/a8f665f0-C793-441A-a5b9-54b7e1e7a5a4/

    I hope this helps.

    Rob - bicycle - Mark Twain said it is good.

  • BlackBerry 8310 Curve guard re-booting smartphones

    Keeps constantly rebooting my phone, I got the same problem with my previous phone, so my ISP replaced by another NEW one. But the problem has not stopped. The only things that are the same are the micro sd card and my sim card. The new phone is returned to zero + - all two minutes.

    Can anyone help?

    Thank you.

    She has been reset the first time I lit. I got it back to my service provider and will have to wait 4 weeks for a replacement.

    Thanks for the help

  • Cisco ASA 5510 - IOS upgrade 7.0 failing. Not found Flash BIOS

    Hello everyone

    I have a Cisco ASA 5510 in a lab with none of the configurations environment what so ever.

    Objective: upgrade the IOS current version 7.0 (8) to 7.1.1 (possibly go to 8.2 until memory upgrade on the SAA: 256 MB to 1 GB and then move to the latest version of 8.2 IOS).

    Output to see the attached Version.

    Output Flash attached show.

    asa711 - k8.bin is the file that has been copied from a TFTP server to flash.

    The following commands have been executed in order to update the IOS

    ciscoasa (config) # boot flash system: / asa711 - k8.bin
    INFO: Conversion of flash: / asa711 - k8.bin to disk0: / asa711 - k8.bin
    ciscoasa (config) #.
    ciscoasa (config) # end
    ciscoasa # write memory
    Cryptochecksum: aaaa08ce ccde38f2 19c42e08 dea24cbd
    2713 bytes copied in 1,450 dry (2713 bytes/s)
    [OK]
    ciscoasa # reload

    PROBLEM: the device ASA goes in an infinite loop (guard restart). This is the message on the console:

    The system boot, please wait...

    CISCO SYSTEMS
    Embedded BIOS Version 1.0 (11) 15:11:51.82 5 08/28/08
    Memory: 631ko
    Memory: 256 MB
    PCI device table.
    Bus Dev Func VendID DevID class Irq
    00 00 00 8086 2578 host Bridge
    00 01 00 8086 2579 PCI to PCI bridge
    00 03 00 8086 PCI bridge to PCI 257 b
    00 1 00 8086 PCI bridge to PCI 25AE
    1 d 00 00 8086 25A 9 Serial Bus 11
    1 00 01 8086 25AA Bus series 10 d
    1 d 00 04 8086 25AB system
    1 d 00 05 8086 25AC IRQ controller
    1 d 00 07 8086 25AD Bus series 9
    1E 00 00 8086 PCI bridge to 244th PCI
    1F 00 00 8086 25A 1 ISA Bridge
    1F 00 02 8086 25 IDE controller has 3 11
    1F 00 03 8086 25A 4 Bus series 5
    1F 00 05 8086 25A 6 Audio 5
    02 01 00 8086 1075 Ethernet 11
    03 01 00 177 D 0003 encrypt/decrypt 9
    03 02 00 8086 1079 Ethernet 9
    03 02 01 8086 1079 Ethernet 9
    03 03 00 8086 1079 Ethernet 9
    03 03 01 8086 1079 Ethernet 9
    04 02 00 8086 1209 Ethernet 11
    04 03 00 8086 1209 Ethernet 5
    Evaluate the BIOS Options...
    Launch of the BIOS Extension installation ROMMON
    Cisco Systems ROMMON Version (1.0 (11) 5) #0: Thu Aug 28 15:23:50 CDT 2008
    Platform ASA5510
    Use BREAK or ESC to interrupt the boot.
    Use the SPACE to start boot immediately.
    Start the program boot...
    Startup configuration file contains 1 entry.

    Load disk0: / asa711 - k8.bin... The starting...

    256 MB OF RAM
    Total of SSMs found: 0
    Total cards network found: 7
    mcwa i82557 Ethernet to irq 11 MAC: 0024.974a.65af
    mcwa i82557 Ethernet to the irq 5 MAC: 0000.0001.0001
    Not found BIOS flash.
    Reset...

    The only way for me to do things to normal is if I BREAK the sequence starting with ESC and go into ROMMON mode. I then issue a start command for the SAA to start with 7.0 (8) default IOS Image.

    Please can someone explain what is the problem here?

    Apologies if I'm missing something obvious that I'm not an expert of the SAA.

    Looks like that the ASA is hitting a field notice: fn62378. The FN, it's because of the incompatible version of hardware and software. Please upgrade to version 7.1.2 instead of 7.1.1. If you plan to spend in 8.2. So instead of going 7.1.2 you could go to 7.2.5 (recommanded), then 8.2.5

    http://www.Cisco.com/c/en/us/support/docs/field-notices/620/fn62378.html

    It will be useful.

    Kind regards

    Akshay Rouanet

    Remember messages useful rate.

Maybe you are looking for

  • My iPhone 6 s write always full memory

    I have iPhone 6s and Hi write memory is full. I probe some clearing, memory... Soft, restart...  Nothing help. What s wrong?

  • Qosmio G30-194 - problems with sound in Vista

    I have trouble with the sound after instalation of Vista. Can someone help me?

  • method to set the station process model

    Hi ppl... I am building a custom in LabVIEW operator interface. I want to know the method to set the station process model. Thank you

  • correct settings for two networks?

    I have a desk that has a building at each end of the city.  I have a wireless bridge that connects the buildings.  Each building is on its own ip configuration and has its own internet connection.  I have a server for A construction program.  I want

  • Assistant password error

    I lost my admin password and can't do something that I do and when I use the wizard type in a new password and click Finish it error to say that has happened and I need to fix it should answer NOW