cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1019
Views
5
Helpful
2
Replies

Issue with dropped packets

Hello

 

I have an issue with ASA FW that is used for VPN purposes. 

I see a lot of dropped packets in two interfaces. 

The reason is 

ICMP Inspect seq num not matched (inspect-icmp-seq-num-not-matched)

 

The source is a VIP of some servers and the dest are some vpn clients. 

 

In the logs of ASA I see the following

4|||313004|||||Denied ICMP type=0, from laddr <VIP> on interface <name> to <VPN Client>: no matching session

 

I have seen some bugs about the inspection

CSCvb92417 but the version is too old

 

Any ideas?

 

Thanks and regards, 

Konstantinos

2 Replies 2

VPN client is RAVPN or S2S ?

RA VPN

Review Cisco Networking for a $25 gift card