<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA 5520 8.3, VPN tunnel Drops Traffic in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798037#M532788</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have attached the syslog file to the original message posted.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 24 Aug 2011 17:19:31 GMT</pubDate>
    <dc:creator>aquasilk0001</dc:creator>
    <dc:date>2011-08-24T17:19:31Z</dc:date>
    <item>
      <title>ASA 5520 8.3, VPN tunnel Drops Traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798032#M532783</link>
      <description>&lt;P&gt;Hello everybody, we are having a crisis with a very mysterious issue.&lt;SPAN __jive_emoticon_name="plain" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/plain.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have a 100 Mbps WAN circuit, we have configured an IPsec tunnel between ASA 5520 and Cisco 3845 Router for our DR site replication via Veeam Backup and Replication, it was working fine before, when we established the 3DES tunnel the traffic for certain subnets is dropped after an hour and it stops the replication, although tunnel remains up and we can access the other subnets, as soon as we clear the crypto SA and ISAKMP sessions on the firewall the traffic starts flowing again and then after an hour the traffic is dropped again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So far the testing and differnet configurations we tried are as under.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tried with a different MTU size both on firewall and ESXi servers but nothing happened.&lt;/P&gt;&lt;P&gt;Their is no QOS configuration.&lt;/P&gt;&lt;P&gt;Checked the utilization on both ends its Noram although their are subsequent 100% spikes on Cisco 3845 but on average it remians at 30-40%.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 21:15:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798032#M532783</guid>
      <dc:creator>aquasilk0001</dc:creator>
      <dc:date>2019-03-11T21:15:41Z</dc:date>
    </item>
    <item>
      <title>ASA 5520 8.3, VPN tunnel Drops Traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798033#M532784</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Guys Any ideas where should i look for, or any specific aparmeters we can change..!!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Aug 2011 11:57:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798033#M532784</guid>
      <dc:creator>aquasilk0001</dc:creator>
      <dc:date>2011-08-23T11:57:38Z</dc:date>
    </item>
    <item>
      <title>ASA 5520 8.3, VPN tunnel Drops Traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798034#M532785</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Aqua, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So it is just one type of specific traffic that is being dropped? What port does this application uses? Do you have logs on the firewall when the connection drops? How long does it stays up? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Aug 2011 17:35:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798034#M532785</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2011-08-23T17:35:01Z</dc:date>
    </item>
    <item>
      <title>ASA 5520 8.3, VPN tunnel Drops Traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798035#M532786</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Rojas,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have only one type of traffic on the link and it drops on certain specific subnets, additionally i can see huge packet drops on the interface, when we torn down the IPsec tunnel on the same interface everything works nicely.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It stays up for almost one and half hour and then traffic for some subnets drop but tunnel remains up.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And again when we torn down the tunnel everything seems to work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The application uses random TCP ports between (2500 and 5000)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 24 Aug 2011 05:48:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798035#M532786</guid>
      <dc:creator>aquasilk0001</dc:creator>
      <dc:date>2011-08-24T05:48:20Z</dc:date>
    </item>
    <item>
      <title>ASA 5520 8.3, VPN tunnel Drops Traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798036#M532787</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We may need to get the logs from the connection when its torn down and checkout the reason with the logs. Setup a syslog server, have the connection running and check when it is being torn down on the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike Rojas&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 24 Aug 2011 16:30:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798036#M532787</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2011-08-24T16:30:36Z</dc:date>
    </item>
    <item>
      <title>ASA 5520 8.3, VPN tunnel Drops Traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798037#M532788</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have attached the syslog file to the original message posted.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 24 Aug 2011 17:19:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798037#M532788</guid>
      <dc:creator>aquasilk0001</dc:creator>
      <dc:date>2011-08-24T17:19:31Z</dc:date>
    </item>
    <item>
      <title>ASA 5520 8.3, VPN tunnel Drops Traffic</title>
      <link>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798038#M532789</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Aqua,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you have a timestamp when the traffic stopped passing? it will help when looking through the syslogs. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When you mention traffic just stops for a few subnets, does that mean this same application is running between different subnets? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When the connetion stops working and tunnel is still up, please post the output of &lt;STRONG&gt;show conn | in &lt;EM&gt;&lt;IP of="" one="" of="" the="" 2="" hosts=""&gt;&lt;/IP&gt;&lt;/EM&gt;&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;this should give us an idea of what is the state of that TCP connection.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Prapanch&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Sep 2011 18:01:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5520-8-3-vpn-tunnel-drops-traffic/m-p/1798038#M532789</guid>
      <dc:creator>praprama</dc:creator>
      <dc:date>2011-09-08T18:01:43Z</dc:date>
    </item>
  </channel>
</rss>

