05-29-2007 07:28 AM - edited 03-11-2019 03:21 AM
We have a customer with an ASA 5505, which is dropping packets on the outside interface. The output from the "show interface" indicates Switch ingress policy drops.
show int e0/0
Interface Ethernet0/0 "", is up, line protocol is up
Hardware is 88E6095, BW 100 Mbps
Full-Duplex(Full-duplex), 100 Mbps(100 Mbps)
Available but not configured via nameif
MAC address 001a.e2ef.f201, MTU not set
IP address unassigned
277059685 packets input, 74460445394 bytes, 0 no buffer
Received 44 broadcasts, 0 runts, 0 giants
0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort
0 L2 decode drops
17179909933 switch ingress policy drops
23266211 packets output, 7912969026 bytes, 0 underruns
0 output errors, 0 collisions, 0 interface resets
0 babbles, 0 late collisions, 0 deferred
0 lost carrier, 0 no carrier
0 rate limit drops
0 switch egress policy drops
Has anyone seen this before, as i cannot find any information on the CCO to troubleshoot this issue
05-29-2007 07:30 AM
05-29-2007 08:10 AM
I have looked at this, but the nameif command is used on the vlan int & the vlan is up. The ASA is connected to a router, so i can't see tagged traffic hitting the interface?
06-13-2007 09:37 AM
Hey Everyone,
I am karim
I am using firewall asa5540 7(2).2 and I can see several and continious packet dropped on all interfaces. My asa's are connected usingauto/auto to switches cisco 2950 also using auto/auto.
Can anyone help?
Thanks
06-20-2007 09:16 AM
You should never have two Cisco devices connected and set to auto/auto. Always hard code your important links.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: