03-13-2016 12:11 PM - edited 03-12-2019 12:28 AM
Dears,
i have multiple sub interfaces on ASA 5585X for example interface front-end-sharepoint-servers and Interface back-end-sharepoint-servers & Interface SQL-servers & interface Active-Directory when i execute a access-list permit ip any any on every interface i don't face any issue when front-end-servers are accessing database servers and Active directory, but when i restrict with specific ports i get slowness in accessing and search option in the sharepoint servers doesn't work between the server & database.
I don't see any ports are been denied on the ASDM between the server but i see the logs as attached which shows the communication between the application and active directory on port 88 received TCP FINs packets
Thanks
03-13-2016 03:49 PM
Are all the traffic flows symmetric forward and backwards?
Any chance it is communicating via IPv6 (have the related servers got IPv6 addresses on them) and you are only looking at IPv4 so that not noticed?
03-13-2016 09:01 PM
Dear Philip,
Are all the traffic flows symmetric forward and backwards?
yes
Any chance it is communicating via IPv6 (have the related servers got IPv6 addresses on them) and you are only looking at IPv4 so that not noticed?
NO
Any hints how i can troublshoot
thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide