Symptom
This is on the PAN.
Log on FW:
Aug 16 2016 22:46:26 10.254.22.12 : %ASA-6-302014: Teardown TCP connection 26929565 for outside:3.182.214.144/9002 to inside:10.72.225.217/55407 duration 0:00:30 bytes 0 SYN Timeout
TCP PORT 9002 is open on PAN01 node:
Starting root bash shell ...
ade # netstat -tunap | grep 9002
tcp6 0 0 :::9002 :::* LISTEN 20948/jsvc.exec
Conditions
observed only on few VMWARE ESXi boxes with ISE-2.1 build
Workaround
For the portals the following workaround might work:
1. reload the affected node
2. once the node is up change portal port to some other one
3. change the port back to original one
Further Problem Description