cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
827
Views
0
Helpful
6
Replies

ASA 5505 Slow LAN Response

benharned
Level 1
Level 1

Installed ASA5505 in branch office. Have l2l VPN between it and HQ. Office is 1 server (W2k), 3 users, 1 printer.

Since connecting LAN to ASA users complaining of slow response times. When pinging from server to devices, average response is 20-30ms.

6 Replies 6

Ivan Martinon
Level 7
Level 7

Is this through the Lan to Lan? If this is from Lan to Lan then ping from VPN end point to VPN endpoint, what is the rate? if this is from within the LAN have you check if your switch has no conflict on MAC addresses?

This is from within, on the internal LAN. No dup. MAC in the ARP table.

go ahead and do a "show run all sysopt" on your ASA and post it here please

Result of the command: "sh run all sysop"

no sysopt connection timewait

sysopt connection tcpmss 1380

sysopt connection tcpmss minimum 0

sysopt connection permit-vpn

no sysopt connection reclassify-vpn

no sysopt connection preserve-vpn-flows

no sysopt nodnsalias inbound

no sysopt nodnsalias outbound

no sysopt radius ignore-secret

no sysopt noproxyarp inside

no sysopt noproxyarp outside

Well proxy arp is disabled, usually these issues might occur by it. Have you cleared the arp of the devices that might need a refresh? I really can't think on why your ASA will cause issues for traffic that does not even get to it.

Naiveté alert: how do you do that? Are you talking just network equip. arp, or do PC's have arp that need clearing?

The ASA is the only switch in the network.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card