Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,
ACL drop is expected when we do it on the reverse(Lower-higher sec Lvl) direction, But I want to make sure you tried packet tracer for the Public IP address not the DMZ server IP.
Run packet tracer and share the output where it is dropping.
packet-tracer input outside tcp <Source-ip from external> 1234 <Interface-IP-of-Firewall> 51210 share the output to understand what NAT is hitting.
Show log | inc 10.12.13.200/<Source-ip ...
From the DART logs you shared (between 14:23:14 and 14:24:54), I didn’t see any other messages. Could you please confirm if that’s the complete log? Also, is it possible for you to share the tunnel-group and group-policy configurations? If Auth 2.0 ...
Hi,
OSPF is Node based routing, not like BGP where it can send particular routes.
OSPF need full detail of Topology in single Area, and it send LSA to the peer, and there is no way you can check advertised routes. You can use
"sh ip ospf datab...