Œuvres ping for the VPN ASA5505 RDP does not work?

I have an ASA5505 VPN remote access facility

I have a server connected directly behind the ASA and I can ping the server without problem.

The reports being encrypted and decrypted packets VPN client

However when I try to RDP to the server packages encyrpted keep incrementing but the decrypted packets are not.

I also do not see all RDP traffic hit the server (checked by ethereal)

I did a packet trace and it succeeds, but ends with a parody of IP which I believe is correct as is the vpn traffic and not actually be encrypted.

This is the correction of the RDP session, I'm confused by one ICMP denied on line 2 that I am able to ping the server?

% ASA-6-302013: built of TCP connections incoming 88193 for external:172.16.24.4/50984 (172.16.24.4/50984) at internal:192.168.100.146/3389 (192.168.100.146/3389) (roger_ssl)

% ASA-4-313004: Denied ICMP type = 0, of laddr 172.16.24.4 on the external interface to 192.168.100.146: no matching session

% ASA-609001 7: built internal local-host: 192.168.100.37

% ASA-6-302015: built connection UDP incoming 88194 for external:172.16.24.4/50620 (172.16.24.4/50620) at internal:192.168.100.37/53 (192.168.100.37/53) (roger_ssl)

% ASA-4-313004: Denied ICMP type = 0, of laddr 172.16.24.4 on the external interface to 192.168.100.37: no matching session

% ASA-6-302015: built connection UDP incoming 88195 for external:172.16.24.4/64598 (172.16.24.4/64598) at internal:192.168.100.37/53 (192.168.100.37/53) (roger_ssl)

% ASA-4-313004: Denied ICMP type = 0, of laddr 172.16.24.4 on the external interface to 192.168.100.37: no matching session

% ASA-4-313004: Denied ICMP type = 0, of laddr 172.16.24.4 on the external interface to 192.168.100.37: no matching session

% 302014-6-ASA: disassembly of the TCP connection 88193 for external:172.16.24.4/50984 to internal:192.168.100.146/3389 duration 0: bytes of 00:00 0 flow closed by inspection (roger_ssl)

I have that configured NAT

NAT (internal, external) static source 192.168.100.0 192.168.100.0 static destination VPN_172 VPN_172

The only logical bit that is closed by the inspection flow? Is this to say that the server has not responded?

And decrypt packets increase not when trying to RDP

Does this mean anyting to anyone that I have arrived at the end of my knowledge of the SAA on this one!

Thank you

Roger

Answer is based on your other thread:

https://supportforums.Cisco.com/thread/2207372

Tags: Cisco Security

Similar Questions

Maybe you are looking for

  • Can I change the order of the top 3 bars?

    HelloI just upgraded and it seems to have change the order toolbars superior superior. What I want to do is change the order of them. Right now my "tabs" out through the top. Below that is the search bar and below are my favorites. What I want to do

  • HP Officejet Pro 6830 does not connect to WiFi

    I got the HP Officejet Pro 6830 for 6 to 9 months, it has been great to work wireless any time.  Three nights ago, we had a power outage, now the printer will not connect to the wireless router.  He sees the SSID, but when I enter the password, it sa

  • RAID and disk 3 TB

    The TD230 recognizes my to 2 X 3 drives when SATA is configured in enhanced mode. When I opt for the SATA SW mode and then go into the SRT utility to create the RAID, he recognizes that readers only 780 GB EFI is the latest version published on the s

  • appellet Java appears below the current window

    in yahoo games when I get a table it appears below the window shows how can I change this he's up all the time, I have windows XP & DOWNLOAD java free

  • keys to work signing off