USD ($)
$
United States Dollar
India Rupee

Palo Alto Networks SD-WAN & CloudGenix

Created by Thrilok Thallapelly in Articles 9 Aug 2024
Share
«Why Palo Alto Firewall? Distinct ...

The zone set cannot be activated and zoning cannot be configured in enhanced zoning mode.

The error message “Zoning database update in progress, command rejected” might be received.

Possible Cause

Another user on the same switch or on a different switch is holding the enhanced zoning configuration lock.

Solution

Release the zoning lock with the following:

Step 1 Determine which switch (domain/ip address) has the lock.

Step 2 Determine which user has the lock on that switch.

Step 3 Clear the lock for that user on that switch.

On the same switch, enter the show zone status vsan command to determine which user holds the lock.

Example:

switch1# show zone status vsan 200

VSAN: 200 default-zone: deny distribute: active only Interop: default

mode: enhanced merge-control: allow

session: remote [dom: 121][ip: 171.165.98.20] <<== In this example the remote switch with the IP address of 171.165.98.20 has the lock. Connect to the remote switch and enter the show zone status vsan command. Example: switch2# show zone status vsan 200 VSAN: 200 default-zone: deny distribute: active only Interop: default mode: enhanced merge-control: allow session: cli [remi] <<== In the example, user Remi is holding the enhanced zoning lock. On the remote switch (N5K2 in the example), release the lock with the no zone commit vsan command.

To confirm that the lock had been cleared, enter the show zone status vsan command.

At this point, the session parameter should appear as none.

If the lock still persists, remove the lock from the switch that holds the lock with the clear zone lock command.

If the lock continues to persist, use the following commands to collect information to aid further analysis:



show zone internal vsan

show zone status vsan

show fcdomain domain-list vsan

show users

show tech-support zone

show tech-support device-alias

show logging




Palo Alto Networks SD-WAN & CloudGenix»
Thrilok Thallapelly

Thrilok Thallapelly is a senior network consultant who has dedicated his career to the field of networking. He completed Bachelor's degree in Technology in Computer Science from a reputed university in the country. He has always been fascinated by the world of networking and pursued his passion by learning everything he could about routing and ...

More... | Author`s Bog | Book a Meeting

Related Articles

#Explore latest news and articles

Palo Alto Networks Certifications List 30 Oct 2024

Palo Alto Networks Certifications List

Drive Palo Alto Cyber Security and enhance your expertise with certifications. Discover the array of Palo Alto cyber security certification available. Read More
How Palo Alto Networks Improves Security 6 Nov 2024

How Palo Alto Networks Improves Security

Palo Alto Networks excels in providing network security solutions - Explore how Palo Alto network protection.ReadMore palo alto network benefits.
TLOC Extension: Explore Cisco SD-WAN 8 Nov 2024

TLOC Extension: Explore Cisco SD-WAN

Learn how TLOC extension in Cisco SD-WAN works with its configuration steps on Cisco SD-WAN routers.

Comments (0)

Share

Share this post with others

Contact learning advisor

Captcha image