Hello,
Hoping someone could offer a creative or easy solution to a problem I experienced this morning. We have an ASA5516 running 9.8(3)29. It has a dedicated internet connection connected to Gig1/1 and layer 3 switch on the INSIDE interface. The ASA has VTI based VPN tunnels back to HQ where the DHCP server exists. DHCP forwarding is performed by the layer 3 switch.
Last night during an outage of the ISP, since routing table entries were removed from the ASA to send the DHCP packets through the VPN tunnels, the ASA decided to send those DHCP packets out the OUTSIDE interface towards the ISP. since the DHCP packets kept coming, the UDP connection never closed after the VPN tunnel came back up. I had to clear the connections to the DHCP server and then the ASA started sending DHCP traffic through the VPN tunnel again to HQ.