<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FWSM Communication Issue in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708374#M558060</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;A Capture on the outside interface (Source Context) shows a SYN being sent but nothing else. Also no hits on the ACL (Outside) so I do not think it is even getting to the Destination Context (inside)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 12 Apr 2011 14:40:36 GMT</pubDate>
    <dc:creator>DSPVGAdmin</dc:creator>
    <dc:date>2011-04-12T14:40:36Z</dc:date>
    <item>
      <title>FWSM Communication Issue</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708368#M558053</link>
      <description>&lt;P&gt;I have a Cisco 6500 running FWSM version 3.1(10)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have muliple contexts&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ACL's are configured on 2 contexts to allow single hosts to communicate over TCP 7780 (HTTP)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;No Communication or Denys or Hits on ACL's&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Reseting the VLAN on source Context temp fixes the problem (5mins Max)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any Idea's ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 20:19:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708368#M558053</guid>
      <dc:creator>DSPVGAdmin</dc:creator>
      <dc:date>2019-03-11T20:19:52Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM Communication Issue</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708369#M558054</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Simon,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you have relevant static NAT command for the hosts? When the FWSM exists in the multiple context mode, the traffic is sent to a context depending on 3 criteria: unique interface, unique MAC address or unique NAT translation. If your interfaces are being shared, then a unique translation is needed for the traffic to be forwarded to the correct context.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anu.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P.S.: Please mark the question answered, if it has been resolved. Do rate helpful posts. Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Apr 2011 11:42:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708369#M558054</guid>
      <dc:creator>Anu M Chacko</dc:creator>
      <dc:date>2011-04-12T11:42:41Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM Communication Issue</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708370#M558055</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Would this be the case if I was not running NAT control and both contexts are the same security level.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I never see this issue until a reload of the Cisco 6500 last week.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Apr 2011 11:45:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708370#M558055</guid>
      <dc:creator>DSPVGAdmin</dc:creator>
      <dc:date>2011-04-12T11:45:31Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM Communication Issue</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708371#M558056</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Simon,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If everything was working fine before the reload, then maybe some configuration was not saved before it reloaded. Was all that&amp;nbsp; configuration saved before the reload? What are the syslogs you see on&amp;nbsp; the FWSM now, when you try to send the traffic through it?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anu.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Apr 2011 13:28:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708371#M558056</guid>
      <dc:creator>Anu M Chacko</dc:creator>
      <dc:date>2011-04-12T13:28:50Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM Communication Issue</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708372#M558057</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Anu,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes as 100% I can be the config are the same, we are also get no output in syslogs, no connections built. The statis nat on the source context is&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(outsdie,inside) x.x.79.x&amp;nbsp; x.x.79.x 255.255.255.248 - so it is for the whole subnet - the incoming context does not have the statis nat applied&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Simon&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Apr 2011 13:33:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708372#M558057</guid>
      <dc:creator>DSPVGAdmin</dc:creator>
      <dc:date>2011-04-12T13:33:18Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM Communication Issue</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708373#M558058</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Simon,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Did you take captures on the outside interface? Do you see packets coming into the firewall? Can you put in a specific static NAT command for the destination IP address and test?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Anu.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Apr 2011 14:00:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708373#M558058</guid>
      <dc:creator>Anu M Chacko</dc:creator>
      <dc:date>2011-04-12T14:00:43Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM Communication Issue</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708374#M558060</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;A Capture on the outside interface (Source Context) shows a SYN being sent but nothing else. Also no hits on the ACL (Outside) so I do not think it is even getting to the Destination Context (inside)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Apr 2011 14:40:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708374#M558060</guid>
      <dc:creator>DSPVGAdmin</dc:creator>
      <dc:date>2011-04-12T14:40:36Z</dc:date>
    </item>
    <item>
      <title>Re: FWSM Communication Issue</title>
      <link>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708375#M558062</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Simon,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That is because after the FWSM receives the SYN packet from the sender on the outside, it does not know to which context it has to send it to. Put in the following and test if it works.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static(inside,outside) &lt;DEST ip="" address=""&gt; &lt;DEST ip="" address=""&gt;&lt;/DEST&gt;&lt;/DEST&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Anu.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 12 Apr 2011 16:09:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fwsm-communication-issue/m-p/1708375#M558062</guid>
      <dc:creator>Anu M Chacko</dc:creator>
      <dc:date>2011-04-12T16:09:49Z</dc:date>
    </item>
  </channel>
</rss>

