10-31-2008 09:26 AM - edited 03-11-2019 07:06 AM
Hi,
i have strange problem with access by ipsec client: with ASA 8.0.2 all is ok but with ASA 8.0.4 some TCP connection through ipsec client arent association (rdp, sql, etc..). With SSL client on ASA 8.0.4 all traffic is ok too.
Sometimes i logging deny tcp (no connection).
Do you have any idea where is problem please ?
lukas
11-02-2008 10:01 AM
Hi,
Can you see in Caveats? is there any Caveats open?
I haven't perfect error from you so i can't say.
Thanks,
Dharmesh Purohit
11-04-2008 03:17 AM
Hi,
maybe this:
Deny TCP (no connection) from vpn_range to lan_srv/3389 flags ACK on interface ext
Deny TCP (no connection) from vpn_range to lan_srv/3389 flags FIN PSH ACK on interface ext
but i havent idea. its rdp to one server, rdp to others servers are ok. if i reboot ios to 8.0.2, this connection to lan_srv is ok. i dont understand to it :-(. (without changing cfg of course)
thx,
Lukas
11-05-2008 05:17 AM
11-10-2008 03:15 AM
solution is disable IP Compression in the ipsec group-policy
lukas
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide