- Newest
- Most votes
- Most comments
Hi Mark,
In order to narrow down the issue on why connection to TCP ports are failing, please enable VPC flow logs [1] on the AWS EC2 instance from which you are testing the connectivity and check for two-way TCP traffic or for any rejects.
Since you are connecting to on-prem over site-to-site VPN connection which is terminating on Cisco meraki device at on-prem, please enable logging/filtering on it just to see if the TCP traffic is received from AWS side and responded back.
Also, please make sure SG's and NACL's for the instance are allow-listed for destined TCP ports and IP's.
Try launching a test VM in the same subnet as AD connector at on-prem and test for TCP connectivity.
The above steps would help in identifying where TCP traffic is getting dropped.
References: [1] https://docs.aws.amazon.com/vpc/latest/userguide/flow-logs-cwl.html
Relevant content
- asked 24 days ago
- AWS OFFICIALUpdated 2 years ago
- AWS OFFICIALUpdated a year ago
- AWS OFFICIALUpdated 2 years ago
- AWS OFFICIALUpdated 3 years ago