cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
294
Views
0
Helpful
2
Replies

Error Message 106001 in Logs

sdettelepak
Level 1
Level 1

My Logs are flooded with this message:

Jun 27 2006 11:54:40|106001: Inbound TCP connection denied from 192.168.11.15/4670 to 192.168.11.138/3500 flags SYN on interface Inside

I dont understand why this happening, especially when both machines are on the inside interface. Here is my config if it helps.

2 Replies 2

spremkumar
Level 9
Level 9

Hi

As per CCO its just a connection notification message no action required.

do refer this link for more info..

http://www.cisco.com/en/US/products/sw/secursw/ps2120/products_system_message_guide_chapter09186a008008d2b2.html#36183

regds

grant.maynard
Level 4
Level 4

ASA is dropping those packets because source and destination are on the same interface. PIX will never send icmp redirect (as a router could) and will only allow this traffic if it is v7.2 and you have "same-security-traffic permit intra-interface", and even then it must see both halves of the connection.

Your best bet is to find out why this is getting sent to the ASA and change it.