EasyManuals Logo

Cisco 5510 - ASA SSL / IPsec VPN Edition Configuration Guide

Cisco 5510 - ASA SSL / IPsec VPN Edition
1822 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #1705 background imageLoading...
Page #1705 background image
76-13
Cisco ASA 5500 Series Configuration Guide using ASDM
OL-20339-01
Chapter 76 Troubleshooting
Common Problems
Note The maximum memory allocation allowed is 256 MB.
Common Problems
This section describes common problems with the adaptive security appliance, and how you might
resolve them.
Symptom The context configuration was not saved, and was lost when you reloaded.
Possible Cause You did not save each context within the context execution space. If you are
configuring contexts at the command line, you did not save the current context before you changed
to the next context.
Recommended Action Save each context within the context execution space using the copy run start
command. You cannot save contexts from the system execution space.
Symptom You cannot make a Telnet or SSH connection to the adaptive security appliance interface.
Possible Cause You did not enable Telnet or SSH to the adaptive security appliance.
Recommended Action Enable Telnet or SSH to the adaptive security appliance according to the
instructions in “Configuring Device Access for ASDM, Telnet, or SSH” section on page 32-1.
Symptom You cannot ping the adaptive security appliance interface.
Possible Cause You disabled ICMP to the adaptive security appliance.
Recommended Action Enable ICMP to the adaptive security appliance for your IP address using the
icmp command.
Symptom You cannot ping through the adaptive security appliance, although the access list allows it.
Possible Cause You did not enable the ICMP inspection engine or apply access lists on both the
ingress and egress interfaces.
Recommended Action Because ICMP is a connectionless protocol, the adaptive security appliance
does not automatically allow returning traffic through. In addition to an access list on the ingress
interface, you either need to apply an access list to the egress interface to allow replying traffic, or
enable the ICMP inspection engine, which treats ICMP connections as stateful connections.

Table of Contents

Other manuals for Cisco 5510 - ASA SSL / IPsec VPN Edition

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco 5510 - ASA SSL / IPsec VPN Edition and is the answer not in the manual?

Cisco 5510 - ASA SSL / IPsec VPN Edition Specifications

General IconGeneral
BrandCisco
Model5510 - ASA SSL / IPsec VPN Edition
CategoryFirewall
LanguageEnglish

Related product manuals