<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA - FWSM OSPF Issues in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-fwsm-ospf-issues/m-p/1893143#M437844</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Mike,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the reply. One of my colleagues had logged a TAC case recently and the advise was to redesign OSPF networking to reduce size of DBD packets and prevent fragmentation.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I accept this as a valid recommendation - the network does need work but was also looking for real life experiences where people had fixed similar issues. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am looking at introducing another OSPF area and summarising as many routes as possible. I am also investigating / confirming MTU sizes on switch between ASA and FWSM.&amp;nbsp; Based on some other research I am wondering whether I can increase MTU on FWSM,ASA and the interconnecting 3750 to alleviate issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The ASA has another neighbour with no problems - but very few routes recieved on the other network.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Pete&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 03 May 2012 09:49:10 GMT</pubDate>
    <dc:creator>deep.blue</dc:creator>
    <dc:date>2012-05-03T09:49:10Z</dc:date>
    <item>
      <title>ASA - FWSM OSPF Issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-fwsm-ospf-issues/m-p/1893141#M437842</link>
      <description>&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Hi All,,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We are having some issues with OSPF interoperability between a FWSM and ASA 5540. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Both devices are running OSPF - if a network outage occurrs in can take over an hour once the network has recovered for the OPSF neighbour to be established between the devices.&lt;/P&gt;&lt;P&gt;The ASA shows Loading State while the FWSM shows FULL&lt;/P&gt;&lt;P&gt;FWSM running&amp;nbsp; &lt;A&gt;&lt;/A&gt;4.0.7&lt;/P&gt;&lt;P&gt;ASA running 8.2.5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Packet captures revealed problems with Packet Fragmentation of the DBD's during establishment of the neighbour relationship.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The network has now returned to&amp;nbsp; stable state - however the problem will re occur at some time.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Has anyone had similar issues and resolved them ? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Pete&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 23:00:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-fwsm-ospf-issues/m-p/1893141#M437842</guid>
      <dc:creator>deep.blue</dc:creator>
      <dc:date>2019-03-11T23:00:41Z</dc:date>
    </item>
    <item>
      <title>ASA - FWSM OSPF Issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-fwsm-ospf-issues/m-p/1893142#M437843</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Pete, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would recommend you to open a TAC case and try to have them to replicate the issue and see if it is a known issue. Version of the ASA seems to be OK. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is the FWSM the only current neigbor that the ASA has, does the FWSM has another neighbor on which it had the same issue? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 May 2012 02:56:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-fwsm-ospf-issues/m-p/1893142#M437843</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2012-05-03T02:56:29Z</dc:date>
    </item>
    <item>
      <title>ASA - FWSM OSPF Issues</title>
      <link>https://community.cisco.com/t5/network-security/asa-fwsm-ospf-issues/m-p/1893143#M437844</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Mike,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the reply. One of my colleagues had logged a TAC case recently and the advise was to redesign OSPF networking to reduce size of DBD packets and prevent fragmentation.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I accept this as a valid recommendation - the network does need work but was also looking for real life experiences where people had fixed similar issues. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am looking at introducing another OSPF area and summarising as many routes as possible. I am also investigating / confirming MTU sizes on switch between ASA and FWSM.&amp;nbsp; Based on some other research I am wondering whether I can increase MTU on FWSM,ASA and the interconnecting 3750 to alleviate issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The ASA has another neighbour with no problems - but very few routes recieved on the other network.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Pete&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 May 2012 09:49:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-fwsm-ospf-issues/m-p/1893143#M437844</guid>
      <dc:creator>deep.blue</dc:creator>
      <dc:date>2012-05-03T09:49:10Z</dc:date>
    </item>
  </channel>
</rss>

