<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco ASA5505 SNMP Polling Fails in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009286#M435107</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Did you ever resolve this?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have exactly the same issue with SNMP polling randomly stopping.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Solarwinds tech support pointed me a the stateful firewall but before I break out wire shark I was wondering if there was a known answer!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 12 Jul 2012 21:56:18 GMT</pubDate>
    <dc:creator>alex</dc:creator>
    <dc:date>2012-07-12T21:56:18Z</dc:date>
    <item>
      <title>Cisco ASA5505 SNMP Polling Fails</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009281#M435102</link>
      <description>&lt;P&gt;I am having issues with monitoring our Cisco ASA5505 devices with "SolarWinds Orion NPM 10.2" through the use of SNMPv2. On some devices we see that SNMP polling stops and that the ASA's interfaces would show up as unknown - usually when the link to the device goes down/up or after a random ammount of time. At that point SNMP polling data is no longer updated and all we can rely on is ICMP for device status. I can resolve the issue by restarting the remote ASA &lt;SPAN style="text-decoration: underline;"&gt;OR &lt;/SPAN&gt;restarting the SolarWinds server after which polling resumes. We are only seeing this behaviour with our remote ASA's.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Our setup is as follows:&lt;/P&gt;&lt;P&gt;Head End:&lt;/P&gt;&lt;P&gt;Cisco ASA 5520 [ASA 8.3(2)]&lt;/P&gt;&lt;P&gt;Remote:&lt;/P&gt;&lt;P&gt;Cisco ASA 5505 [ASA 8.3(2)]&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have found a SolarWinds article listed below that possibly identifies the issue that we are having but am not sure where to start.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;SolarWinds Article: &lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://knowledgebase.solarwinds.com/kb/questions/1193/Why+are+my+interfaces+changing+to+%22unknown%22+status%2C+even+when+I+know+they+are+active%3F" target="_blank"&gt;http://knowledgebase.solarwinds.com/kb/questions/1193/Why+are+my+interfaces+changing+to+%22unknown%22+status%2C+even+when+I+know+they+are+active%3F&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 23:14:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009281#M435102</guid>
      <dc:creator>Mirko Jelic</dc:creator>
      <dc:date>2019-03-11T23:14:41Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA5505 SNMP Polling Fails</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009282#M435103</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are you polling through VPN tunnel? if you are, maybe your VPN tunnel is down, hence you are not able to poll the remote ASA, and once your VPN tunnel is up and running again, then the polling starts to work.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 02 Jun 2012 03:29:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009282#M435103</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2012-06-02T03:29:21Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA5505 SNMP Polling Fails</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009283#M435104</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes it is polling from within the VPN tunnel (inside interface), and we have confirmed that the VPN tunnel remains up. We have approx 10 ASA5505's deployed and all of them exhibit this behaviour.&amp;nbsp; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 02 Jun 2012 14:04:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009283#M435104</guid>
      <dc:creator>Mirko Jelic</dc:creator>
      <dc:date>2012-06-02T14:04:23Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA5505 SNMP Polling Fails</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009284#M435105</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Base on that article from Solar Winds, it might not work properly through stateful firewall, and ASA is indeed a stateful firewall.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you please share the output of "show asp drop" from both ASAs.&lt;/P&gt;&lt;P&gt;I doubt that there is anything to tweak within the ASA with the snmp request id, as ASA does not perform any deep packet inspection for snmp packet. And since SNMP uses UDP if UDP packet violates the standard RFC, ASA will drop the packet.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 03 Jun 2012 01:48:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009284#M435105</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2012-06-03T01:48:38Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA5505 SNMP Polling Fails</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009285#M435106</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Below are my results from the remote ASA5505 which we have problems monitoring and the head end ASA5520.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;REMOTE END:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;===========================================================&lt;/P&gt;&lt;P&gt;#sh asp drop&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Frame drop:&lt;/P&gt;&lt;P&gt;&amp;nbsp; Invalid encapsulation (invalid-encap)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 46917&lt;/P&gt;&lt;P&gt;&amp;nbsp; No valid adjacency (no-adjacency)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 17&lt;/P&gt;&lt;P&gt;&amp;nbsp; Flow is denied by configured rule (acl-drop)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 155&lt;/P&gt;&lt;P&gt;&amp;nbsp; Invalid SPI (np-sp-invalid-spi)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 20&lt;/P&gt;&lt;P&gt;&amp;nbsp; First TCP packet not SYN (tcp-not-syn)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1&lt;/P&gt;&lt;P&gt;&amp;nbsp; TCP RST/FIN out of order (tcp-rstfin-ooo)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1&lt;/P&gt;&lt;P&gt;&amp;nbsp; IPSEC tunnel is down (ipsec-tun-down)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 6&lt;/P&gt;&lt;P&gt;&amp;nbsp; Slowpath security checks failed (sp-security-failed)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 56466&lt;/P&gt;&lt;P&gt;&amp;nbsp; Interface is down (interface-down)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 182&lt;/P&gt;&lt;P&gt;&amp;nbsp; Non-IP packet received in routed mode (non-ip-pkt-in-routed-mode)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1&lt;/P&gt;&lt;P&gt;&amp;nbsp; Dropped pending packets in a closed socket (np-socket-closed)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 25&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Last clearing: Never&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Flow drop:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Last clearing: Never&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;===========================================================&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;HEAD END:&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;===========================================================&lt;/P&gt;&lt;P&gt;# sh asp drop&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Frame drop:&lt;/P&gt;&lt;P&gt;&amp;nbsp; Invalid TCP Length (invalid-tcp-hdr-length)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 15&lt;/P&gt;&lt;P&gt;&amp;nbsp; No valid adjacency (no-adjacency)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 3&lt;/P&gt;&lt;P&gt;&amp;nbsp; Flow is denied by configured rule (acl-drop)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 75558&lt;/P&gt;&lt;P&gt;&amp;nbsp; NAT-T keepalive message (natt-keepalive)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 763752&lt;/P&gt;&lt;P&gt;&amp;nbsp; First TCP packet not SYN (tcp-not-syn)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1145&lt;/P&gt;&lt;P&gt;&amp;nbsp; TCP failed 3 way handshake (tcp-3whs-failed)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 396&lt;/P&gt;&lt;P&gt;&amp;nbsp; TCP RST/FIN out of order (tcp-rstfin-ooo)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 16251&lt;/P&gt;&lt;P&gt;&amp;nbsp; IPSEC tunnel is down (ipsec-tun-down)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 202&lt;/P&gt;&lt;P&gt;&amp;nbsp; Slowpath security checks failed (sp-security-failed)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 12297540&lt;/P&gt;&lt;P&gt;&amp;nbsp; ICMP Inspect seq num not matched (inspect-icmp-seq-num-not-matched)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 72&lt;/P&gt;&lt;P&gt;&amp;nbsp; DNS Inspect id not matched (inspect-dns-id-not-matched)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 4&lt;/P&gt;&lt;P&gt;&amp;nbsp; FP L2 rule drop (l2_acl)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 3&lt;/P&gt;&lt;P&gt;&amp;nbsp; Interface is down (interface-down)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 4&lt;/P&gt;&lt;P&gt;&amp;nbsp; Dropped pending packets in a closed socket (np-socket-closed)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Last clearing: Never&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Flow drop:&lt;/P&gt;&lt;P&gt;&amp;nbsp; Inspection failure (inspect-fail)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 850&lt;/P&gt;&lt;P&gt;&amp;nbsp; SSL handshake failed (ssl-handshake-failed)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 3&lt;/P&gt;&lt;P&gt;&amp;nbsp; SSL received close alert (ssl-received-close-alert)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Last clearing: Never&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;===========================================================&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Jun 2012 13:59:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009285#M435106</guid>
      <dc:creator>Mirko Jelic</dc:creator>
      <dc:date>2012-06-06T13:59:32Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA5505 SNMP Polling Fails</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009286#M435107</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Did you ever resolve this?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have exactly the same issue with SNMP polling randomly stopping.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Solarwinds tech support pointed me a the stateful firewall but before I break out wire shark I was wondering if there was a known answer!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 Jul 2012 21:56:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009286#M435107</guid>
      <dc:creator>alex</dc:creator>
      <dc:date>2012-07-12T21:56:18Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA5505 SNMP Polling Fails</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009287#M435108</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;﻿&lt;/P&gt;&lt;P&gt;﻿Unfortunately I am still dealing with the issue, I have a case open with SolarWinds and Cisco (multiple depts). It seems like the ASA just stops responding to SNMP requests (not dropping them from what the ASPDROP captures show). The odd part is that after a long ammount of time polling resumes.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 13 Jul 2012 12:50:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009287#M435108</guid>
      <dc:creator>Mirko Jelic</dc:creator>
      <dc:date>2012-07-13T12:50:59Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA5505 SNMP Polling Fails</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009288#M435109</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; @Alex - can you please list your environment and what devices you are having issues with... if your scenario matches mine maybe I can get more attention on this to get it resolved - wherever the problem may lie.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 13 Jul 2012 12:53:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009288#M435109</guid>
      <dc:creator>Mirko Jelic</dc:creator>
      <dc:date>2012-07-13T12:53:41Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA5505 SNMP Polling Fails</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009289#M435110</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I've also got a ticket open with Solarwinds so hopefully they can get this moving.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've got a Solarwinds Orion server at our core site (10.3.1) behind a Cisco ASA5510 cluster. (8.2 I think)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The nodes I have the most problem with are at a site behind a Cisco 5505 (Latest 8.4) and are polled over the VPN tunnel.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I periodically have this issue with other hosts that are at seperate sites behind other brands of routers and not access via the VPN, although not nearly as frequently.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Solarwinds were saying that certain stateful firewalls block SNMP request-id's with high numbers and although starting the job engine v2 seems to fix it (as request-id's restart from 0) my wireshark captures seem to indicate that this isn't exactly the case as I have packets with higher request-id's being passed okay.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I can usually reproduce the fault by rebooting the ASA5505 at the client site but this frequently happens overnight as the sites conenction drops.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The devices i'm trying to poll are a Windows 2008 R2 server and a Cisco 3750G switch.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When the SNMP packets fail I get a TTL exceeded back from the ASA5510 at the core site in Wireshark whcih i think must be something to do with it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I find that polling never resumes in my case, the only fix is a restart of the job service v2 or a reboot of the monitoring server.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 13 Jul 2012 13:21:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009289#M435110</guid>
      <dc:creator>alex</dc:creator>
      <dc:date>2012-07-13T13:21:10Z</dc:date>
    </item>
    <item>
      <title>Cisco ASA5505 SNMP Polling Fails</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009290#M435111</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Have you set the options for the NAT rules for your remote subnets?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've had this behaviour and on my NAT for my remote IPsec VPN subnets I disable Proxy ARP on egress interface. I dedicate the inside interface for management on the ASA 5505s.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This then resolves the ICMP and SNMP polling issue from Solarwinds to the remote ASA 5505s when using the inside interface on the remote ASAs.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Jul 2013 13:31:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa5505-snmp-polling-fails/m-p/2009290#M435111</guid>
      <dc:creator>Gavin Barber</dc:creator>
      <dc:date>2013-07-09T13:31:32Z</dc:date>
    </item>
  </channel>
</rss>

