<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi Kevin,I have managed to in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489044#M238825</link>
    <description>&lt;P&gt;Hi Kevin,&lt;/P&gt;&lt;P&gt;I have managed to sort it out. it was asymmetric routing, that was the issue. after doing TCP inspect bypass, it has all worked fine&lt;/P&gt;</description>
    <pubDate>Fri, 02 May 2014 13:58:28 GMT</pubDate>
    <dc:creator>pcromwell</dc:creator>
    <dc:date>2014-05-02T13:58:28Z</dc:date>
    <item>
      <title>Anyconnect on ASA cannot reach Servers on Lan</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489039#M238817</link>
      <description>&lt;P&gt;I have an ASA 5510&amp;nbsp; I can successfully create a&amp;nbsp; anyconnect ssl client VPN tunnel and can succesfully ping a server on the Voice vlan. However I need to make connections to the voice servers, but they just timeout. On the ASA logging, is says "connection denied as there is no syn in the packet"&lt;/P&gt;&lt;P&gt;from looking around the web People are suggesting this error means an asymmetric route. I don't believe I have this. My setup is&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;VPN -&amp;gt; ASA -&amp;gt; Router (192.168.8.0,network doing all the routing) -&amp;gt; Vlans 5 and 6 created on switches.&lt;/P&gt;&lt;P&gt;I have attached my running config, they are not the actual ip addresses but representations.&lt;/P&gt;&lt;P&gt;I am hoping it is something obvious that I have overlooked.&lt;/P&gt;&lt;P&gt;ASA version is 9.1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:08:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489039#M238817</guid>
      <dc:creator>pcromwell</dc:creator>
      <dc:date>2019-03-12T04:08:41Z</dc:date>
    </item>
    <item>
      <title>Can you do me a favor and get</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489040#M238818</link>
      <description>&lt;P&gt;Can you do me a favor and get me if possible logs from the ASA when you try to establish communication. On ASDM need to enable logging at debugging level and then go to monitoring &amp;gt; logging &amp;gt; Real time log viewer and filter out the anyconnect address.&lt;/P&gt;&lt;P&gt;You can also setup capture through capture wizard, just select the local interface and specify anyconnect client address and destination IP.&lt;/P&gt;</description>
      <pubDate>Wed, 30 Apr 2014 21:19:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489040#M238818</guid>
      <dc:creator>jumora</dc:creator>
      <dc:date>2014-04-30T21:19:48Z</dc:date>
    </item>
    <item>
      <title>Upon taking a quick look it</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489041#M238819</link>
      <description>&lt;P&gt;Upon taking a quick look it looks like you are missing your twice NAT entries.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ex.&lt;/P&gt;&lt;P&gt;object network 192.168.3.0-24&lt;/P&gt;&lt;P&gt;subnet 192.168.3.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;object network 2.2.2.0-24&lt;/P&gt;&lt;P&gt;subnet 2.2.2.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;nat (voice,outside) source static 192.168.3.0-24 192.168.3.0-24 destination static 2.2.2.0-24&amp;nbsp; 2.2.2.0-24 no-proxy-arp route-lookup&lt;/P&gt;</description>
      <pubDate>Wed, 30 Apr 2014 22:09:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489041#M238819</guid>
      <dc:creator>kevin_giusti</dc:creator>
      <dc:date>2014-04-30T22:09:24Z</dc:date>
    </item>
    <item>
      <title>I had neglected to mention, I</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489042#M238822</link>
      <description>&lt;P&gt;I had neglected to mention, I am not using Nat, The ASA is for VPN's only&lt;/P&gt;</description>
      <pubDate>Thu, 01 May 2014 05:35:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489042#M238822</guid>
      <dc:creator>pcromwell</dc:creator>
      <dc:date>2014-05-01T05:35:40Z</dc:date>
    </item>
    <item>
      <title>Ok, am I understanding this</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489043#M238824</link>
      <description>&lt;P&gt;Ok, am I understanding this correctly that when you connect you can ping the voice servers no problem however for example you cannot create a http or some other service connection to them?&lt;/P&gt;</description>
      <pubDate>Fri, 02 May 2014 13:32:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489043#M238824</guid>
      <dc:creator>kevin_giusti</dc:creator>
      <dc:date>2014-05-02T13:32:32Z</dc:date>
    </item>
    <item>
      <title>Hi Kevin,I have managed to</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489044#M238825</link>
      <description>&lt;P&gt;Hi Kevin,&lt;/P&gt;&lt;P&gt;I have managed to sort it out. it was asymmetric routing, that was the issue. after doing TCP inspect bypass, it has all worked fine&lt;/P&gt;</description>
      <pubDate>Fri, 02 May 2014 13:58:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489044#M238825</guid>
      <dc:creator>pcromwell</dc:creator>
      <dc:date>2014-05-02T13:58:28Z</dc:date>
    </item>
    <item>
      <title>Please mark your ticket as</title>
      <link>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489045#M238828</link>
      <description>&lt;P&gt;Please mark your ticket as answered so that it does not show as active.&lt;/P&gt;</description>
      <pubDate>Wed, 14 May 2014 21:24:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/anyconnect-on-asa-cannot-reach-servers-on-lan/m-p/2489045#M238828</guid>
      <dc:creator>jumora</dc:creator>
      <dc:date>2014-05-14T21:24:22Z</dc:date>
    </item>
  </channel>
</rss>

