Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

problem with vpn connexion from certain sites..

Hi,

i've started having issues with vpn connexion not working. My clients use anyconnect cisco client. My firewall/vpn box is a ASA5540.

I've got multiple remote office equiped with asa5505 with remote office connection to main 5540. For a specific reason(wich is too long to explain) i have users in these sites that use software client to access specific ressources in main office. These users (in 2 sites out of 9) have started to not be able to connect with anyconnect client. They do not even get response from asa5540. and in the syslog i get this :

Deny TCP (no connection) from 11.11.11.11/29361 to 22.22.22.22/443 flags FIN ACK  on interface outside

and/or

Deny TCP (no connection) from 11.11.11.11/29361 to 22.22.22.22/443 flags FIN PSH ACK  on interface outside

When i ask them to connect to our backup ASA5540 in our second datacenter.. teh same clients work perfectly(this should eliminate the problem being on the local ASA5505)

I'm pretty much stumped at this point outside rebooting my asa5540 to clear everything ... i have no other options or leeds ..

thanks

1 REPLY

problem with vpn connexion from certain sites..

Do you have multiple path for internet ? Please post your configuration.

Thanks

Ajay

263
Views
0
Helpful
1
Replies
CreatePlease login to create content