cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

2535
Views
0
Helpful
2
Replies
Highlighted
Beginner

Cisco ASA 5505 site to site IPSec VPN with RV220W issue

I have a ASA5505 connected to RV220W through IPSec VPN. When  using SMB to transfer large file, the ASA5505 will show error message:

CTM ERROR: Invalid input parameters, ctm_get_scb_prot_stats:1561

The error message from the debug crypto engine. When  the message show, the speed of the transfer will slow down quickly, and  even no data can be go through between ASA and the RV220W. But the IPSec  SA and the IKE SA is active, and can ping the inside network in both  site.

Both ASA5505 and the RV220W has been updated the latest firmware. I have surf the Google but no such related issue found.

Any suggestions on where to look would be much appreciated.

Thanks in advance

Terry

Everyone's tags (6)
2 REPLIES 2
Beginner

Cisco ASA 5505 site to site IPSec VPN with RV220W issue

I have the exact same error recurring on a Site-to-Site VPN between a Cisco ASA 5505 and a Cisco ASA 5510. I have not been able to resolve the issues yet.

The difference between the symptoms we are experiencing is that the Cisco for the branch office is unable to ping only part of the network on the central office. And yes we have correctly defined the local and remote protected networks.

If I find anything usefull I will let you know, please do likewise.

Regards,

Ted

Beginner

Cisco ASA 5505 site to site IPSec VPN with RV220W issue

Hi Ted thanks for your reply and information.

The strange things happened in RV220W shows the IPSec sa is expired, but the ASA5505 IPSec and IKEv1 sa is active. Inside both site internal network can ping to other side, but cant transfer file through Windows SMB. It seems when I transfer over 4GBytes of file, it will start happening and required clear IPSec and IKEv1 sa so that the VPN tunnel will start up again.

I am already surrander for this issue......