I am running software version 7.2(2) on an ASA5510.
I have configured the appliance in transparent mode to filter traffic from the wireless lan ( connected to the outside )
to the wired lan ( connected to the inside ). In this first test phase I configured my ASA5510 to permit all the ip
traffic between wireless lan and wired lan :
access-list IN extended permit ip any any
access-list OUT extended permit ip any any
access-group OUT in interface outside
access-group IN in interface inside
My wireless terminals use a private protocol, called 9010t, to communicate with the application server. This protocol
opens a TCP session to the application server using a packet with the SYN flag sets and the Window size equal to zero.
This first TCP packet is discarded by the ASA5510, in my opinion because the ASA5510 recognises it as a malformed packet,
and wireless terminals can't connect to the application server.
Is it possible to manage the ASA5510 to permit this first TCP packet to cross the ASA5510 itself, granting wireless
terminals to connect to the application server ?
Thanks in advance for your help.