cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1052
Views
0
Helpful
1
Replies

Error message in Asymmetric NAT with vpn

hunterman
Level 1
Level 1

Hello everyone 

I have tunnel vpn between 2 branches and it's working fine but the services between them as voip server and can make call between 2 extension as 1 extension in branch 1 and other extension in branch 2,

In asa sniffer I'm saw the error message "

%ASA-5-305013: Asymmetric NAT rules matched for forward and reverse

flows; Connection protocol src interface_name:source_address/source_port [(idfw_user)] dst interface_name:dst_address/dst_port [(idfw_user)] denied due to

NAT reverse path failure."

My problem is one branch can't hear other branch,

Any one help to solve the problem

THANKS

   

1 Reply 1

Hi,
I would guess your outbound traffic matches 1 nat rule and the return traffic matches another, hence the asymetric error.

Please the configuration of the ASA reporting this error
Please provide the output from "show nat detail" and indicate the source and destination networks.
Review Cisco Networking for a $25 gift card