cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
692
Views
0
Helpful
1
Replies

ASA5520 IPsec client reverse path failure

dclee
Level 1
Level 1

ASA-5-305013: Asymmetric NAT rules matched for forward and reverse flows; Connection for icmp src outside:192.168.13.50 dst DMZ2:192.168.13.15 (type 8, code 0) denied due to NAT reverse path failure

Cant seem to get around this one yet. I have a remote ASA that I can VPN into. It has 2 dmz's, outside and inside interface configured.

Inside subnet is 192.168.11.0 / 24

DMZ2 is 192.168.13.0 / 24

VPN client pool is 192.168.15.0 /24

I login in fine. But have no access to the DMZ2 subnet. I get the failure listed above.

Any help would be appreciated

Cheers


Dave

1 Reply 1

varrao
Level 10
Level 10

Hi Dave,

Could you please provide a "show running-config" from the firewall??

Thanks,

Varun

Thanks,
Varun Rao
Review Cisco Networking for a $25 gift card