ASA# sh vpn-sessiondb webvpn INFO: There are presently no active sessions of the type specified. It appears that if a SSLvpn connection fails due to an incorrectly configured downloadable ACE it locks out that session. I couldn’t find a command that would return the sessions back to the available pool and had to reload the ASA to correct it.

asa1 # sh vpn-sessiondb webvpn Session Type: WebVPN Username: cisco Index: 16 Public IP : 192.168. 202.237 Protocol: Clientless License: AnyConnect Premium Encryption: RC4 Hashing: SHA1 Bytes Tx: 7367 Bytes Rx: 12748 Group Policy: DfltGrpPolicy Tunnel Group: DefaultWEBVPNGroup Login Time: 12: 50: 22 UTC Thu Dec 11 2014 Duration: 0h: 04m: 55s Show currently active IPSEC VPN tunnels on Cisco IOS Find answers to Show currently active IPSEC VPN tunnels on Cisco IOS? from the expert community at Experts Exchange Cisco Bug: CSCuu48197 - ASA: Stuck uauth entry rejects

Cisco ASA hairpinning Cisco Pix/ASA hairpinning The term hairpinning comes from the fact that the traffic comes from one source into a router or similar devices, makes a U-turn and goes back the same way it came. Visualize this and you see something that looks like a hairpin. Hairpinning is only relevant when the firewall is in routed mode since the "turnaround" of

ciscoasa# sh vpn-sessiondb anyconnect Session Type: AnyConnect Username : engruser Index : 3 Assigned IP : Public IP : Protocol : AnyConnect-Parent SSL-Tunnel License : AnyConnect Premium Encryption : RC4 Hashing : none SHA1

