Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

Cisco ASA Routing Issues

Posted on 2012-03-28
1
1,669 Views
Last Modified: 2012-06-21
Hi,

I have a Cisco ASA device which I am using for webvpn.

Anyconnect works OK. Clients connect in and get an IP address of 172.28.15.10-172.28.15.100. When the router tries to ping anything outside of this network i.e. 172.28.1.1 I get the followign error:

6      Mar 28 2012      13:23:35      302021      172.28.15.10      1024      172.28.1.1      0      Teardown ICMP connection for faddr 172.28.15.10/1024 gaddr 172.28.1.1/0 laddr 172.28.1.1/0 (uk000296)

The explaination states: An ICMP session was established in the fast-path when stateful ICMP was enabled using the inspect icmp command.

I have ran route print, and the PC has a route of 172.28.10 to the interface of the VPN connection (172.28.15.10).

I believe my problem maybe my NAT rules. These have been setup as:

nat (Live,Live) source static 172.28.15.0 172.16.0.0
nat (Live,Live) source static 172.16.0.0 172.28.15.0

Any ideas why routing isn't working ?

Thanks,
0
Comment
Question by:AnritsuLTD
1 Comment
 

Accepted Solution

by:
AnritsuLTD earned 0 total points
ID: 37777063
Problem solved

My ASA device obtains it's routing information from another core Cisco device which needed a static ip route placing on it in order for traffic to be replying back to the device.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

If you use NetMotion Mobility on your PC and plan to upgrade to Windows 10, it may not work unless you take these steps.
I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …

839 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question