cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
567
Views
0
Helpful
2
Replies

Problem with ipsec-over-tcp

jaroslavremen4
Level 1
Level 1

I have ASA5510 behind NAT-router,so outside interface has private IP. For VPN I am using ipsec-over-udp and ipsec-over-tcp. When I am connecting via ipsec-over-udp everything is working fine, but when I am connecting via ipsec-over-tcp connection is established but no traffic is going through. After few minutes idle time connection is dropped. Can somebody help me with this ?

2 Replies 2

nitinaga
Level 1
Level 1

Hi,

Please check if you have tcp port 10000 open at the perimeter router also check if crypto-ipsec-over-tcp 10000 is enabled at the remote end.

regards,

Nitin

Yes . it is open. As I wrote conection is established, I see it in "show ipsec sa" output that I am connected , but no traffic is going through. ACLs is correct.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: