ASA 5500 : Deny IP spoof

Unanswered Question
Apr 7th, 2008


I have a web server in LAN (no DMZ used) but the access is very long. This message appears :

Deny IP spoof from (217.128.x.84) to 217.128.x.84 on interface outside

217.128.x.84 is my ISP IP.

When I activate IP Spoof on Outside interface, I have the message :

106021 : Deny ICMP reverse path check from 217.128.x.84 to 217.128.x.84 on interface outside

Here is my conf !

Thanks for yout help,

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
owillins Mon, 04/14/2008 - 04:42

I think its due to the dual home connection configuration check that one and correct it.


This Discussion