cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
684
Views
0
Helpful
4
Replies

Cisco 2821 IOS Firewall and PAT issues

bbrendon
Level 1
Level 1

I'm having two odd problems with a 2821 that is used as a firewall. I'll describe one of them.

Every few days, I can not access a server on the internet at port 1055. Running a 'clear ip nat trans *' does not fix the issue. Strangely enough, after reloading the 2821, access from the internal network to the internet server at port 1055 works again.

Additionally, while the problem is occurring, any other port that is listening on the internet server is accessible, just not 1055. A reload fixes the issue.

Also, sh ip nat trans only has about 1000 lines when the problem is occurring.

Any ideas what a permanent solution might be?

4 Replies 4

rkalia1
Level 1
Level 1

Check if you have setup low embryonic or max-connections on your access-lists somewhere.

rkalia

neither of those exist in the router config

smohanasundaram
Level 1
Level 1

Hi

which IOS you are using.update latest IOS first.its resolves some errors.

regs

S.Mohana sundaram

Upgrading didn't help. The problem magically went away. I'm still not sure what changed. I narrowed it down to a handful of lines in the Cisco config, though none of them should have helped the issue from what I could tell.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card