Solved

VPN Client stops communicating frequently

Posted on 2014-01-27
7
457 Views
Last Modified: 2014-02-12
Dear Experts,

I have an Cisco ASA 5540 Firewall and its configured with Remote Access VPN. Remote client uses Cisco VPN client

I am facing an weird issue.

One of the client have an access to specific server and I have lock down with ACL to access only this server.

The VPN client suddenly stops communicating with server. I cannot ping.

After my troubleshooting I have discovered, when the VPN client receives the same IP address from ASA such as 192.168.1.1..it will not work

When I changed to 192.168.1.2..it will for sometime then stops. Again I need to change the IP to 192.168.1.3 and so.

Having said that, I can ping to other servers ( by changing the ACL) but cannot ping to this server.

The server Oracle Linux

I would highly appreciate any help.

Thanks
0
Comment
Question by:cciedreamer
  • 4
  • 3
7 Comments
 
LVL 17

Expert Comment

by:MAG03
ID: 39816359
I have seen something similar when the VPN pool was used up, then random VPN clients would have connectivity one minute and the next they would be kicked out.

Does this only happen with the one server? or can you reproduce the issue with other servers? Is it just from the one client or is it all clients that connect to that one server?  How long do you have connectivity before you lose it? is it the same length of time each time?

Also, if possible, could you post a full sanitised running configuration? there might be a configuration issue with the ASA also.
0
 
LVL 3

Author Comment

by:cciedreamer
ID: 39816939
Thanks.

Its happening only with this server and the time varies for disconnection may 10-15,1 hour, 2 hour or 1 day.
0
 
LVL 3

Author Comment

by:cciedreamer
ID: 39816951
The VPN client doesn't get disconnect it just pinging to the server and eventually no access.

Thanks
0
How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

 
LVL 17

Expert Comment

by:MAG03
ID: 39817556
Is it just from the one client or is it all clients that connect to that one server?
0
 
LVL 3

Author Comment

by:cciedreamer
ID: 39817584
Its happening with all clients connecting to this server.

Thanks
0
 
LVL 17

Accepted Solution

by:
MAG03 earned 500 total points
ID: 39817586
If it is just that one server and all clients have the same issue but not with other servers, then (without seeing your ASA configuration) I would say there is an issue with that particular server.
0
 
LVL 3

Author Closing Comment

by:cciedreamer
ID: 39855381
The issue was with the server configuration.

Thanks for the help
0

Featured Post

How your wiki can always stay up-to-date

Quip doubles as a “living” wiki and a project management tool that evolves with your organization. As you finish projects in Quip, the work remains, easily accessible to all team members, new and old.
- Increase transparency
- Onboard new hires faster
- Access from mobile/offline

Join & Write a Comment

This article is a step by step guide on how to create a basic PTP link using Ubiquiti airOS devices. This guide can be used on the following Ubiquiti AirMAX devices. Nanostation, Bullets, AirBridge, Nanobeam, NanoBridge to name a few. Please review …
Introduction This article explores the design of a cache system that can improve the performance of a web site or web application.  The assumption is that the web site has many more “read” operations than “write” operations (this is commonly the ca…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

744 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now