cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
575
Views
0
Helpful
1
Replies

network scan issues

joedansereau
Level 1
Level 1

I am having issues with a Nessus scan of my networks. I have multiple site-to-site vpn tunnels with different subnets at each site. When I run a Nessus scan on the remote sites, the tunnels drop and will not reestablish until the firewall is rebooted on my end. ASA-5510, OS v8.2.5. Any ideas?

1 Reply 1

brquinn
Level 1
Level 1

You should first check your syslogs to see why the traffic is being denied. Once in the failed state, you can also check the packet-tracer output for some VPN traffic to see why the ASA isn't forwarding it.

At the time of the failure, does either endpoint have the appropriate isakmp or ipsec sa's built?

Thanks,

Brendan

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card