cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1167
Views
0
Helpful
1
Replies

Need help with firewall rule

aok
Level 1
Level 1

Hello

 

We have a couple of servers that need to communicate with each other over a site-to-site VPN connection. We've allowed the port required for the application to work (tcp/8443) but we can also see from Wireshark that they are sending Application Data over TLSv1.2. If we open up the firewall rule to allow all IP traffic then communication between the servers works fin. I also tried adding port 443 in case TLS runs over that instead of 8443 but no luck. Any ideas? We are using Cisco ASAs on both sides of the S2S tunnel.

 

Thanks

1 Reply 1

balaji.bandi
Hall of Fame
Hall of Fame

Can you post the current configuration, version ASA running on both side.

when you intiate the connection, what is the logs in ASA on the destination side ? also from Source side ?

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Review Cisco Networking for a $25 gift card