cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
738
Views
0
Helpful
5
Replies

ASA and Oracle 10.x sqlnet protocol

r.spiandorello
Level 1
Level 1

Hi, do you know about incompatibility between oracle 10.x on linux and ASA 7.2.x version ?

The same application runs with PIX 6.3(4)

thank you in advance, but with ASA the session allows traffic flow but remains in idle state after particular commands.

How to avoid it ?

greatings

RS

5 Replies 5

r.spiandorello
Level 1
Level 1

Hi, do you think the new 7.0(7) ASA GD version could solve the incompatibility ?

Could it be an MSS related matter ?

thanks

Hi, looking in CS-MARS syslog server I've found some "deny connection - no xlate" to the sqlnet destination port and some "Deny packet due to security polixy" to high ports of related connections.

Could it be related to sqlnet inspection ?

tkanks

Hi, I've found the matter happens only when the sql*net session remains on the tcp 1521 port.

In other words, the idle session happens when the listener doesn't request a redirection (with a redirect command).

thanks in advance

RS

diogo
Level 1
Level 1

I believe its is a problem relate to the SQLNET fixup.

I'm having a similar problem with the FWSM inspect for sqlnet.

one solution would be to disable the fixup and permit all used ports for sqlnet. Not only the initial 1521, but all the ranga that is open after the initial negotiation..

hi, all IP protocol is opened, after the sql*net acl, but nothing.

Now I'm looking for the 1521 port persistence, in other words no redirect sql command found.

gatings

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card