cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
961
Views
0
Helpful
1
Replies

Error message : PIX-1-106021 I am getting error message in my pix firewall

I am having my inside network connected to L3 switch with ip subnet of 172.21.18.0/24 & 172.21.19.0/24 . My all traffic from outside interface is blocked except some application. For last one week i am getting error message continously 6GB error message per day to my syslog server .

09Sep 09 2009 08:51:41: %PIX-1-106021: Deny UDP reverse path check from 172.21.19.201 to 192.203.230.10 on interface inside

Sep 2009 08:51:42: %PIX-1-106021: Deny UDP reverse path check from 172.21.18.56 to 10.0.0.1 on interface inside

Sep 09 2009 08:51:43: %PIX-1-106021: Deny UDP reverse path check from 172.21.19.201 to 128.8.10.90 on interface inside

Sep 09 2009 08:51:44: %PIX-1-106021: Deny UDP reverse path check from 172.21.18.56 to 10.0.0.1 on interface inside.

Sep 09 2009 08:51:46: %PIX-1-106021: Deny UDP reverse path check from 172.21.18.37 to 192.168.128.1 on interface inside

Sep 09 2009 08:51:48: %PIX-1-106021: Deny TCP reverse path check from 172.21.18.42 to 192.168.128.1 on interface inside

Sep 09 2009 08:51:48: %PIX-1-106021: Deny TCP reverse path check from 172.21.18.42 to 192.168.128.1 on interface inside

Sep 09 2009 08:51:48: %PIX-1-106021: Deny TCP reverse path check from 172.21.18.42 to 192.168.128.1 on interface inside

Sep 09 2009 08:51:50: %PIX-1-106021: Deny UDP reverse path check from 172.21.19.201 to 128.9.0.107 on interface inside

destination network is not identified in my firewall . within a minute i a getting 5 message . kindly suggest me .

1 Reply 1

Jon Marshall
Hall of Fame
Hall of Fame

Can you post the output of "sh route" from your firewall.

Jon

Review Cisco Networking for a $25 gift card