Re: ASA Site to Site Tunnel allowing RDP

From: Alexei Monastyrnyi (alexeim73@gmail.com)
Date: Fri Jan 16 2009 - 18:50:14 ARST


It is also good to check open vs resolved caveats for the software
version you are running on ASA. With PIX/ASA starting from early
releases of v7 it is always full of surprises. Like FTP data connection
gets stale via VPN tunnel. :-)

A.

Tony Varriale wrote:
> First of all, modifying infrastructure to solve an issue that MAY be caused
> by broken PMTU is not recommended.
>
> Secondly, the initial connection of RDP is not max packet size.
>
> tv
>
> -----Original Message-----
> From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
> Joseph Brunner
> Sent: Thursday, January 15, 2009 5:38 PM
> To: 'LJ Johnson'; ccielab@groupstudy.com; comserv@groupstudy.com
> Subject: RE: ASA Site to Site Tunnel allowing RDP
>
> Tcp map to adjust the mss so window's 1480 doesn't effect the tunnel, next
> question?
>
> http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note0918
> 6a00804c8b9f.shtml
>
> -Joe
>
> -----Original Message-----
> From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of LJ
> Johnson
> Sent: Thursday, January 15, 2009 6:30 PM
> To: ccielab@groupstudy.com; comserv@groupstudy.com
> Subject: ASA Site to Site Tunnel allowing RDP
>
> Has anyone run into an issue with Remote Desktop connections not working
> between the inside networks of a lan 2 lan vpn tunnel? I can ping accross
> the
> tunnel to the remote server but when I attempt to remote desktop to the
> server, it does not go through. It is a very basic setup b/w 2 ASA's. All
> traffic is allowed between the sites.
>
> Has anyone seen this before? it may be something basic that i am missing.
>
> TIA,
> LJ
> _________________________________________________________________
> Windows Live Hotmail.: Chat. Store. Share. Do more with mail.
> http://windowslive.com/howitworks?ocid=TXT_TAGLM_WL_t1_hm_justgotbetter_howi
> t
> works_012009
>
>
> Blogs and organic groups at http://www.ccie.net
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html
>
>
> Blogs and organic groups at http://www.ccie.net
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html
>
>
> Blogs and organic groups at http://www.ccie.net
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html

Blogs and organic groups at http://www.ccie.net



This archive was generated by hypermail 2.1.4 : Sun Mar 01 2009 - 09:43:38 ARST