Link to home
Start Free TrialLog in
Avatar of NWSBexch
NWSBexch

asked on

I have an ASA with the following: What does the following mean? "Deny TCP (no connection) from/to flags FIN ACK on interface inside"

I keep getting the above error.  It is not explicitly denying the packet, but was wondering what the error means.
Avatar of Istvan Kalmar
Istvan Kalmar
Flag of Hungary image

It means basically the TCP packet was sent with something other than the syn flag sent. Therefore the ASAwould check its connection table, no previous connection existed and the packet gets denied.
But I seen this messege when I used 8.0.4 on 5505 with Oracle communication, after that I downgraded the ASA the problem is discontinued!

Do you have a problem on qour network, or you inquiring?
ASKER CERTIFIED SOLUTION
Avatar of Voltz-dk
Voltz-dk
Flag of Denmark image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of NWSBexch
NWSBexch

ASKER

So this is not necessarily a bad thing, but just part of the "tear down" process?