Traffic is blocked by Cisco umbrella firewall
search cancel

Traffic is blocked by Cisco umbrella firewall

book

Article ID: 384530

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

Traffic from VMs get blocked by Cisco Umbrella firewall. 

Environment

VMware NSX 4.x

Cisco secure client with following installed modules
AnyConnect VPN  5.1.2.42
Customer Experience Feedback   5.1.2.42
Secure Client UI 5.1.0.1047
Umbrella   5.1.2.42

Cause

The issue occurs to VMs connected to NSX segment. No issue with the VM connected to distributed port group. 

The reason for this behavior is that the attempt to connect Cisco secure client fails as a result the Cisco Umbrella firewall stops forwarding traffic from the VM where connectivity was broken.

 

Resolution

Allow Non-IP traffic by disabling "Block Non-IP Traffic" within NSX segment security profile.