cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
609
Views
2
Helpful
4
Replies

Duplicate TCP in ASA

Psmurali89
Spotlight
Spotlight

Hi All

I have configured VTI tunnel from office ASA to another ASA firewall in DC using BGP. The tunnel itself is working ok but when I try to connect to the server in office from a server in DC, I get the below in the firewall logs. I got NAT exception, access rules etc are all configured correctly. Am not sure what causing this issue and I cant reach the server. 

419992    192.168.10.35    38679    10.10.40.2    443    Duplicate TCP SYN from Tunnel-DC-VTI:  192.168.10.35/38679   to Inside:10.10.40.2/443 with different initial sequence number

Am not sure what's wrong here, any suggestions is much appreciated. 

 

4 Replies 4

are you use two ISP interface in any ASA ??

Yes Outside Interface where the VTI tunnel terminates is connected to a switch where the ISP internet connection is. 

but you dont answer me you use one ISP or two ?

both firewalls connects to different ISP. So there's 2 ISP's. 

Review Cisco Networking for a $25 gift card