cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
896
Views
0
Helpful
3
Replies

Inbound TCP connection denied from x to y

mahesh18
Level 6
Level 6

Hi Everyone,

Seeing following logs on ASA:

  Inbound TCP connection denied from x to y flags SYN ACK on interface Net
  Inbound TCP connection denied from x to y flags ACK on interface Net

Does this mean that there is Asymmetric route or missing ACL?

Regards

MAhesh

1 Accepted Solution

Accepted Solutions

Julio Carvajal
VIP Alumni
VIP Alumni

Hello Maheshm

First option Asymmetric routing, use the TCP state-bypass option as a workaround.

Remove the asymetric routing as the real fix

Check my blog at http:laguiadelnetworking.com for further information.

Cheers,

Julio Carvajal Segura

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC

View solution in original post

3 Replies 3

Julio Carvajal
VIP Alumni
VIP Alumni

Hello Maheshm

First option Asymmetric routing, use the TCP state-bypass option as a workaround.

Remove the asymetric routing as the real fix

Check my blog at http:laguiadelnetworking.com for further information.

Cheers,

Julio Carvajal Segura

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC

Hi Julio,

I tested my applying ACL   so you are correct its Asymmetric routing.

Regards

MAhesh

Hello Mahesh,

Thanks for the head´s up.

Check my blog at http:laguiadelnetworking.com for further information.

Cheers,

Julio Carvajal Segura

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC
Review Cisco Networking for a $25 gift card