Cisco ASA Audit Event: 105021

105021: Standby unit failed to sync due to a locked configuration

Cisco ASA is a security device that provides the combined capabilities of a firewall, an antivirus, and an intrusion prevention system. It also facilitates virtual private network (VPN) connections. It helps to detect threats and stop attacks before they spread through the network.

Message: %ASA-1-105021: (failover_unit ) Standby unit failed to sync due to a locked context_name config. Lock held by lock_owner_name.

During configuration synchronization, a Standby unit will reload itself if some other process locks the configuration for more than five minutes. This will prevent the failover process from applying the new configuration. The failure to sync generates the event 105021. The failover unit and name of the lock owner are specified in the message.

How could you resolve this situation?

Avoid viewing or modifying the configuration on the Standby unit when it first boots up and is in the process of establishing a failover connection with the Active unit.

Cisco ASA Auditing Tool

EventLog Analyzer is a comprehensive log management software with which you can centrally collect, analyze, and manage logs from all the different log sources in your network. You also get reports and alerts on your network security, making it a power-packed IT security tool.