<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA5510 VPN/NAT in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa5510-vpn-nat/m-p/614261#M1027430</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What is the device at your site and the remote dite?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When using a 7600series router with a VAC card you can create a loopback with the IP configured in the encrytion domain and try to ping the destination host.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ping &lt;DESTINATION ip=""&gt; source loopback &lt;LOOPBACK id=""&gt;&lt;/LOOPBACK&gt;&lt;/DESTINATION&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 01 Feb 2007 07:01:39 GMT</pubDate>
    <dc:creator>talisman1310</dc:creator>
    <dc:date>2007-02-01T07:01:39Z</dc:date>
    <item>
      <title>ASA5510 VPN/NAT</title>
      <link>https://community.cisco.com/t5/network-security/asa5510-vpn-nat/m-p/614260#M1027429</link>
      <description>&lt;P&gt;Hello all, &lt;/P&gt;&lt;P&gt;I am having an issue with one of our VPN's that was recently setup and I am seeing ICMP errors. When I send a simple ping test to the destination IP, I am seeing the following messages while running the debug log-viewer:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;208.x.x.x|Built ICMP connection for faddr 172.x.x.x/0 gaddr 208.x.x.x/512 laddr 208.x.x.x/512&lt;/P&gt;&lt;P&gt;6|Jan 31 2007|17:37:27|302020|172.x.x.x|10.x.x.x|Built ICMP connection for faddr 172.x.x.x/0 gaddr 208.x.x.x/512 laddr 10.x.x.x Jan 31 2007|17:37:27|609001|172.x.x.x||Built local-host internet:172.x.x.x&lt;/P&gt;&lt;P&gt;Denied ICMP type=0, code=0 from 172.x.x.x on interface internet&lt;/P&gt;&lt;P&gt;4|Jan 31 2007|17:37:27|313004|||Denied ICMP type=0, from laddr 172.x.x.x on interface internet to 208.x.x.x: no matching session  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I do not have access to the firewall at the other end of the VPN, however I did contact the admin and he verified that the packets successfully came in and out. So I am not sure why I am getting the Denied ICMP and No Matching session error. Any help would be appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;JD &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 09:26:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5510-vpn-nat/m-p/614260#M1027429</guid>
      <dc:creator>jadeagro</dc:creator>
      <dc:date>2019-03-11T09:26:50Z</dc:date>
    </item>
    <item>
      <title>Re: ASA5510 VPN/NAT</title>
      <link>https://community.cisco.com/t5/network-security/asa5510-vpn-nat/m-p/614261#M1027430</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What is the device at your site and the remote dite?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When using a 7600series router with a VAC card you can create a loopback with the IP configured in the encrytion domain and try to ping the destination host.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ping &lt;DESTINATION ip=""&gt; source loopback &lt;LOOPBACK id=""&gt;&lt;/LOOPBACK&gt;&lt;/DESTINATION&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 01 Feb 2007 07:01:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa5510-vpn-nat/m-p/614261#M1027430</guid>
      <dc:creator>talisman1310</dc:creator>
      <dc:date>2007-02-01T07:01:39Z</dc:date>
    </item>
  </channel>
</rss>

