Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

PIX 515E.... Urgent..

Hey Guyzz

I have a PIX 515E firewall and it frequently loses Internet Connectivity and in order to restore it, I have to reboot my firewall and everything becomes normal.

I have to reboot after every half an hour.

Could any 1 help me out with this issue.

5 REPLIES
New Member

Re: PIX 515E.... Urgent..

I'd start by enabling syslogging if you haven't already done so and turn up the traps to the debugging level. Also might want to consider capturing the console output from one of the frequent manual reboots to see if anything shows there. Other than that I'd suggest getting a TAC case open as there are lots of things this could be.

Re: PIX 515E.... Urgent..

Could you be more concrete?

New Member

Re: PIX 515E.... Urgent..

thanks for your response. Well in my office network connectivity goes down frequently. we cannot access neither Internet nor our mail server in DMZ. I have to reload the Firewall in order to restore connectivity. Please find attached running configuration.

Re: PIX 515E.... Urgent..

Hussain,

Before you reboot the device you have to either telnet to the PIX or console if it does not responds to telnet and conduct some test such as pinging your default route, and ping fruther upstream. Your description of lossing internet would be one thing but at the same time not able to connect to the mail server in the DMZ from inside which does not depends on internet seems very odd, so when this connectivity problem occurs console to the pix and try pinging mail server ip local address 10.10.10.2 in DMZ , default route, and ping by ip a public address such as www.yahoo.com at 69.147.76.15 which accepts icmp queries, with this simple test you can narrow down troubleshooting efforts, have you tried these tests before rebooting pix?

Rgds

-Jorge

New Member

Re: PIX 515E.... Urgent..

ya i have tried that. I can ping the firewall. ya i know DMZ doesnt depend on Internet but its true that i cannot access my DMZ internally. i can only ping firewall. i cannot ping the public address too. One more thing, when my connectivity is lost, all my access-list gets deleted automatically and after reloading it comes backup. This is really very strange.

95
Views
0
Helpful
5
Replies