Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

deny TCP (no connection)

I see a lot of these messages, maybe hundreds per minutes. I feel this is not normal, but can never find any convincing information either way. Can anyone elaborate?

4 REPLIES

Re: deny TCP (no connection)

Can you tell us what message ID is associated with what you're seeing?

http://www.cisco.com/en/US/docs/security/pix/pix63/system/message/pixemsgs.html

New Member

Re: deny TCP (no connection)

Re: deny TCP (no connection)

Is this firewall on your network perimeter? Are all of these messages being generated from the same source IP address? Same destination IP? Same source or destination port?

New Member

Re: deny TCP (no connection)

This is our perimeter which then interfaces another LAN. Another firewall is used at the internet perimeter. The addresses are not the same, although you see a cluster of denies (between 2 and 6 for each deny). We had an explicit deny any any log entry at the end of the outside rules. I just disabled this and noticed a significant drop in the logged traffic. I'm not sure this is just a band-aid to the real issue though.

257
Views
0
Helpful
4
Replies