I have a two ASA, in active / standby failover status.
In the ASA there has two context, one is ASA1 and the other is ASA2
A network 10.10.1.0/24 is between these two context
I tried to do a ping test in a client behind ASA2, ping to ASA1 client, failed with question marks, I checked the access rule is correct, the static route for dedication subnet is enabled in these two ASA context
Result of the command: "ping 192.168.3.2"
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 192.168.3.2, timeout is 2 seconds:
Success rate is 0 percent (0/5)
Anyone know what's that mean? I checked on the internet that say it's "Unknow Packet", but what will cause this issue? Thanks!
Table of ContentsIntroductionVersion HistoryPossible Future
UpdatesDocuments PurposeNAT Operation in ASA 8.3+ SectionsRule Types
Network Object NATTwice NAT / Manual NATRule Types used per SectionNAT
Types used with Twice NAT / Manual NAT and Network Obje...
Table of Contents Introduction:This document describes details on how
NAT-T works. Background: ESP encrypts all critical information,
encapsulating the entire inner TCP/UDP datagram within an ESP header.
ESP is an IP protocol in the same sense that TCP an...