cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Who Me Too'd this topic

DCE/RPC through ASA5510+ issues

jose cortes
Level 1
Level 1

Hi Everybody,

We are working on an Automation System from Honywell, there is a server called eSERVER and this one should take information form other server in the Control side.

The issue is: When all the device are within the same LAN network the system works perfect. But when I put the eSERVER behind an ASA something happens and the system does not work properly.

I opened all the ports described on Honywell deployment guide but it did not work. Then I open all the IP traffic through the ASA and mad a packet capture to identify any issue with the communication.

I found a lot of packet with this description:

source               destination          protocol          Info

172.17.20.14      192.168.1.1         DCERPC        Request: call_id: 524 opnum: 8 ctx_id: 0

192.168.1.1        172.17.20.14       DCERPC        Response: call_id: 524 ctx_id: 0

I don't know much about RPC protocol and i tried con configure the Packet inspection with the port 135/TCP but it did not work.

Could you please give me a headlight in this issue I need to know if the problem is with the ASA or with the servers and protocols when the devices are in different IP segments.

BTW I'm attaching the packet captures that I made with the ASA if you want to check them.

Thanks and Regards

Jose

Who Me Too'd this topic