Deny TCP on ASA 5510 from VPN IPSec connection

Discussion in 'Cisco' started by j1344, Jul 23, 2009.

  1. j1344

    j1344

    Joined:
    Jul 23, 2009
    Messages:
    1
    My environment and issue is as such.

    -192.168.0.0/24 (ASA5510). All networks route through this site.
    -I am in 192.168.1.0/24 (DS3 to 0.x network)
    -My remote network is 192.168.30.0/24 (ASA5510)
    -I have an IPSec VPN connection from 0.x to 30.x

    Whenever I try to connect to a machine inside the 30.x from 1.x network with any protocol (HTTP, RDP, TELNET), I get presented with this error message on the 30.x ASA:


    Deny TCP (no connection) from 192.168.30.200/3389 to 192.168.1.136/3893 flags SYN ACK on interface inside

    Only protocol that gets through is ICMP. I can ping everything on that subnet.


    All protocols work from the 0.x network.


    please help!
     

    Attached Files:

    j1344, Jul 23, 2009
    #1
    1. Advertising

Want to reply to this thread or ask your own question?

It takes just 2 minutes to sign up (and it's free!). Just click the sign up button to choose a username and then you can ask your own questions on the forum.
Similar Threads
  1. Tilman Schmidt
    Replies:
    0
    Views:
    3,373
    Tilman Schmidt
    Jan 24, 2008
  2. Tilman Schmidt
    Replies:
    5
    Views:
    19,352
    Lutz Donnerhacke
    Feb 18, 2008
  3. Mag
    Replies:
    9
    Views:
    709
  4. Dav
    Replies:
    2
    Views:
    1,400
    Igor MamuziƦ aka Pseto
    May 5, 2009
  5. bashboosh

    ASA 5510: Deny some hosts Question

    bashboosh, Oct 4, 2010, in forum: Cisco
    Replies:
    1
    Views:
    772
    bashboosh
    Oct 5, 2010
Loading...

Share This Page