Look at the full output if "Phase: 2" fails then it's routing. To get a better understanding of packet tracker you need to understand how an ASA handles the packets, read the following section of the documentation, http://www.cisco.com/en/US/partner/docs/security/asa/asa80/configuration/guide/intro.html#wp1043760
-b From: [email protected] [mailto:[email protected]] On Behalf Of kamran shakil Sent: Wednesday, February 02, 2011 1:14 PM To: [email protected] Subject: [OSL | CCIE_Security] Packet tracer Output [ Confirmation ] I did some labs, and in one of them, got the following output of packer tracer in ASA single firewall routed mode : Result: input-interface: Inside input-status: up input-line-status: up Action: drop Drop-reason: (no-route) No route to host well, just wanted to confirm whether this means that ROUTING/SWITCHING is a problem or do i go thru NAT and ACCESS-LISTS to verify it !!!! ?????
_______________________________________________ For more information regarding industry leading CCIE Lab training, please visit www.ipexpert.com
