DrayTek UK Users' Community Forum
Help, Advice and Solutions from DrayTek Users
Draytek 3900 Cisco ASA 5550
- ian855
- Topic Author
- Offline
- New Member
Less
More
- Posts: 8
- Thank you received: 0
19 Mar 2019 10:27 #94251
by ian855
Draytek 3900 Cisco ASA 5550 was created by ian855
We have a 3900 (FW v1.4.2.1) configured with an IPSEC tunnel to a Cisco ASA 5550.
In terms of the tunnel stability, it all appears to be rock solid with no unexpected dropping of the tunnel.
However, in terms of traffic things are a little different with the sudden inability to pass traffic down the tunnel.
This occurs at total random times and doesn't appear to be triggered by anything that I can put a finger on.
Checking the status of the tunnel on the 3900 shows the tunnel up, however pinging a device at the other end fails.
Restarting the tunnel will get the traffic flowing again.
Couple of questions:-
1. Anyone else experiencing the same issues?
2. Any tips on how to pin down where/what the issue may be?
Thanks in advanced.
In terms of the tunnel stability, it all appears to be rock solid with no unexpected dropping of the tunnel.
However, in terms of traffic things are a little different with the sudden inability to pass traffic down the tunnel.
This occurs at total random times and doesn't appear to be triggered by anything that I can put a finger on.
Checking the status of the tunnel on the 3900 shows the tunnel up, however pinging a device at the other end fails.
Restarting the tunnel will get the traffic flowing again.
Couple of questions:-
1. Anyone else experiencing the same issues?
2. Any tips on how to pin down where/what the issue may be?
Thanks in advanced.
Please Log in or Create an account to join the conversation.
- ontraq
- Offline
- New Member
Less
More
- Posts: 4
- Thank you received: 0
17 Jul 2019 17:04 #94747
by ontraq
Replied by ontraq on topic Re: Draytek 3900 Cisco ASA 5550
We've seen a similar issue: we've noticed that the routing table drops the route but the VPN stays up. Can't recall if it was a Cisco at the other end of the connection because it's another company hosting that equipment.
Please Log in or Create an account to join the conversation.
Moderators: Chris, Sami
Copyright © 2024 DrayTek