cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2732
Views
0
Helpful
2
Replies

NAT table full .

mrobert
Level 1
Level 1

Hi, what happens when the nat table (memory !) is full on a firewall module 4.0.

All traffic is stopped ?

MR

2 Replies 2

Jon Marshall
Hall of Fame
Hall of Fame

mrobert wrote:

Hi, what happens when the nat table (memory !) is full on a firewall module 4.0.

All traffic is stopped ?

MR

MR

As far as i know it should stop all new connections but still continue to pass traffic for connections that have already been setup in the xlate table.

Jon

Kureli Sankar
Cisco Employee
Cisco Employee

Are you seeing port map translation creation failed messages in the syslogs?

If there is one attack host, trying to establish too many connections it can quickly exhaust the PAT pool.

If there are no more translations slot available then yes all new connections will fail.

-KS

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card