cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
267
Views
0
Helpful
1
Replies

VPN Traffic Issue

mpgibbins
Level 1
Level 1

I have create a site to site VPN which is running and showing as up. It is between a Juniper System and my ASA 5505. When someone tries to ping from the Juniper side of the VPN I can see the following error message:

"Asymmetric NAT rules matched for forward and reverse flows;
Connection for icmp src outside:172.30.XXX.XX dst inside:10.0.1.XXX (type 8, code 0) denied due to NAT reverse path failure"

Can anyone advise what is causing this?

1 Reply 1

Aditya Ganjoo
Cisco Employee
Cisco Employee

Hi,

This seems a NAT overlap issue.

Can you promote the NAT used for this VPN to line 1?

Regards,

Aditya

Please rate helpful and mark correct answers