08-07-2017 08:15 AM - edited 03-12-2019 02:47 AM
Dear all,
Urgently need help as I tried many ways but still can't solve this issue.
Appreciate it if you guys can help me. Thanks!
Refer the attached files as my settings in Cisco ASDM 7.4 for ASA.
Did my settings in NAT and ACL configure wrongly?
This is the result that I get as below:
%ASA-2-106017: Deny IP due to Land Attack from IP_address to IP_address
Do you guys have any solution for the issue that I faced?
Much appreciated.
Thank you!
Regards,
Menning
08-07-2017 03:58 PM
Hi,
The below link (discussion) may provide some info..
https://supportforums.cisco.com/discussion/11316511/asa-land-attack-and-nat-config
Thx
MS
08-07-2017 09:43 PM
Hi,
ASA would drop the packets if the source and destination IP are the same.
So this is expected.
To know why this is happening we need to take packet captures on all the ASA interfaces.
To identify which device is generating this traffic, I would like to suggest you applying packet captures as follow:
access-list cap permit
Capture cap access-list cap interface outside
Capture cap1 access-list cap interface <>
Use captures on all the interfaces matching the same access-list and
Regards,
Aditya
Please rate helpful and mark correct answers
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide