10-18-2006 06:01 AM
%ASA-1-106021: Deny UDP reverse path check from 172.19.60.219 to 172.19.60.255 on interface outside
I have seen this syslog messages, when i connect with vpnclient.172.19.60.0/24 is my inside.
How can i solve that issue,
casco
10-19-2006 01:28 AM
It means that outside interface recieved packet from network that is NOT in firewall routing table...
Its enabled with command
ip verify reverse-path interface outside
You can disable this feature with command
no ip verify reverse-path interface outside
Do you know what is 172.19.60.x network???
M.
Hope that helsp rate if it does
10-19-2006 07:02 AM
Thks.
172.19.60.x is my inside network block.
But there is no route from inside to outside already.
05-22-2012 10:46 PM
Hi Friends,
I'm also getting this logs on my ASA firewall,
%ASA-1-106021: Deny UDP reverse path check from 10.67.3.113 to 10.67.254.66 on interface inside
Both Ip address are not in my network... Please help me how i can trace the IP address ?
Thank you,
Regards,
Stalin P
05-23-2012 05:44 AM
Can you share the following information:
1. NAT configuration.
2. interface configuration.
3. VPN client pool used.
4. routing table from the ASA.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: