Thursday, November 9, 2017

[VPN Cisco ASA]Connection from China dying

Hi folks. I have a quick question.
I have remote systems that lies in China and Mexico. Each of this site connect using Cisco ASA 5505 to mine and initiate a IPSec-l2l connection from the remote location to mybusiness. I don't understand but since few month the chinese connection seems to be blocked. The only clues I have to says that are :

  • Mexican site are still reachable
  • On my Cisco (reciever) I get a message " <IP> duplicate first packet detected. ignoring packet"
  • If I run on my cisco "show crypto isakmp" I get that the remote device is in MM_WAIT_MG3.

Do you think I get block by chinese great firewall ?



No comments:

Post a Comment