cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
373
Views
0
Helpful
1
Replies

What can cuase TCP resets on a Cisco 2821 Router?

UmoyaNetworks
Level 1
Level 1

Hi

I would like to know what the following means:

ip auth-proxy max-nodata-conns 3

ip admission max-nodata-conns 3

Is this a part of Cisco IDS? Can this cause TCP resets to the source if it

detects a signature that does not comply with security policy?

Please could you explain this to me?

We are experiencing TCP Resets on TCP packets across our network.TCP packets are also being stripped of there flags.

An example of that is happening is:

18:17:11.782231 IP 41.161.31.34.17787 > 41.154.11.234.22: S

321058119:321058119 win 64240 <mss

1460,nop,nop,nop,nop,nop,nop,nop,nop,nop,nop,nop,nop,nop,nop,nop,nop>

This looks like a TCP proxy stripping the TCP packets.

Plase advise?

Regards

Eddy

1 Reply 1

htarra
Level 4
Level 4

ip auth-proxy max-nodata-conns 3 To set the the authenticatio proxy idle timeout or maximum number of idle connections, use the ip auth-proxy command in global configuration mod max-nodata-conns Maximum number of idle ("no data") TCP connections that can exist globally for the IP authentication feature. The range is 1 to 1,000. The default is 3.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card