Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements
Webcast-Catalyst9k
New Member

Deny UDP reverse path check from ....

%ASA-1-106021: Deny UDP reverse path check from 172.19.60.219 to 172.19.60.255 on interface outside

I have seen this syslog messages, when i connect with vpnclient.172.19.60.0/24 is my inside.

How can i solve that issue,

casco

4 REPLIES
Gold

Re: Deny UDP reverse path check from ....

It means that outside interface recieved packet from network that is NOT in firewall routing table...

Its enabled with command

ip verify reverse-path interface outside

You can disable this feature with command

no ip verify reverse-path interface outside

Do you know what is 172.19.60.x network???

M.

Hope that helsp rate if it does

New Member

Re: Deny UDP reverse path check from ....

Thks.

172.19.60.x is my inside network block.

But there is no route from inside to outside already.

New Member

Deny UDP reverse path check from ....


Hi Friends,

I'm also getting this logs on my ASA firewall,

%ASA-1-106021: Deny UDP reverse path check from 10.67.3.113 to 10.67.254.66 on interface inside

Both Ip address are not in my network... Please help me how i can trace the IP address ?

Thank you,

Regards,

Stalin P

Cisco Employee

Deny UDP reverse path check from ....

Can you share the following information:

1. NAT configuration.

2. interface configuration.

3. VPN client pool used.

4. routing table from the ASA.

16720
Views
5
Helpful
4
Replies
CreatePlease to create content