12-06-2011 11:35 AM - edited 03-11-2019 03:00 PM
Hi All,
I am getting the following log error message in ASA , but there is an ACL for icmp alllow for all inside hosts ; how can it be possible, is there any other setting needed apart.
access-list inside extended permit icmp any any
Dec 06 2011 22:48:49: %ASA-4-313005: No matching connection for ICMP error message: icmp src inside:172.29.131.3 dst identity:172.29.131.15 (type
5, code 1) on inside interface. Original IP payload: tcp src 172.29.131.15/443 dst 172.29.135.31/1580.
Thanks
Solved! Go to Solution.
12-06-2011 06:31 PM
ICMP type 5 is a redirect message. Is there a different path that exist from 172.29.135.31 to 172.29.131.15 ?
Is 172.29.131.15 the firewall? 172.29.131.3 is a L-3 device on the inside?
-Kureli
12-06-2011 06:31 PM
ICMP type 5 is a redirect message. Is there a different path that exist from 172.29.135.31 to 172.29.131.15 ?
Is 172.29.131.15 the firewall? 172.29.131.3 is a L-3 device on the inside?
-Kureli
12-06-2011 07:32 PM
Hi Kureli,
Yes , your guess is right& i will contact the lan administrator now .
Thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide