Guest

Preview Tool

Cisco Bug: CSCur77743 - ICMP packets generated by the router are wrongly NATted

Last Modified

Jan 31, 2017

Products (1)

  • Cisco ASR 1000 Series Aggregation Services Routers

Known Affected Releases

15.4(3)S1.1

Description (partial)

Symptom:
The clients don't receive ICMP message for the packets dropped by the router NATting the traffic.
This breaks a few things like PMTUD.
The router doing the NAT also shows the following message : 
ICMP: unreachable packet's src is not one of ours?

Conditions:
The issue is seen when the following two conditions are met : 
1) Packet is dropped at "nat outside" interface by the router.
2) Dynamic overload NAT is being used (either pool overload or interface overload).
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.