Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Community Member

Problem with ipsec-over-tcp

I have ASA5510 behind NAT-router,so outside interface has private IP. For VPN I am using ipsec-over-udp and ipsec-over-tcp. When I am connecting via ipsec-over-udp everything is working fine, but when I am connecting via ipsec-over-tcp connection is established but no traffic is going through. After few minutes idle time connection is dropped. Can somebody help me with this ?

2 REPLIES
Community Member

Re: Problem with ipsec-over-tcp

Hi,

Please check if you have tcp port 10000 open at the perimeter router also check if crypto-ipsec-over-tcp 10000 is enabled at the remote end.

regards,

Nitin

Community Member

Re: Problem with ipsec-over-tcp

Yes . it is open. As I wrote conection is established, I see it in "show ipsec sa" output that I am connected , but no traffic is going through. ACLs is correct.

198
Views
0
Helpful
2
Replies
CreatePlease to create content