cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
553
Views
0
Helpful
1
Replies

ASA 5505 Blocks new connections to IP

swoozietu
Level 1
Level 1

Please excuse my lack on knowledge on this topic.  I am trying to get up to speed on this topic as quickly as possible.  I searched through the other disucussions and located some that sounded very similar but not quite the same, so please excuse the duplication. 

Here is my issue:                  

1)     We are able to access the webiste

2)     We are able to upload data packets

3)     We allow the website to time out while we are uploading data packets

4)     When we attempt to re-access the website the ip is blocked

a)     this includes pinging and trace

5)     After an undertermined period of time the ip is unblocked and we are allowed to access it again.

The ASA 5505 router is the last forward facing stop before entering the VPN tunnel.  We have tested by circumventing the ASA and we are unable to duplicate the disconnect.  We have reviewed the config file and have not been able to identify what rule/settings could be affecting this.

when tracing port usage, the actions use 2 tcp ports and 1 udp port,  the 2 tcp ports open and close by each transaction, when the ip block occures the 2 tcp ports are "dead"  the udp port remains open (appearhently sending the remainder of the data packets)

Any help on this would be greatly appreciated.

Thanks,

Susan

1 Reply 1

varrao
Level 10
Level 10

Hi Susan,

Rely on captures when you encounter the issue, take the captures and see where is the tcp port eing blocked, this would help you:

https://supportforums.cisco.com/docs/DOC-17814

Thanks,
Varun Rao
Security Team,
Cisco TAC

Thanks,
Varun Rao
Review Cisco Networking for a $25 gift card