cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
375
Views
0
Helpful
3
Replies

clear xlate slolved the problem

iqbalkhan
Level 1
Level 1

Hi

I have pix 515 firewall which running smoothly but suddenly it problems.

when I see show xlate a huge concrent session and when user ping through pix then it packet loss. after clear xlate command apply its again normal. but it stable some of time. and again previous condition.

so any idea to resolve this problem

thanks

biplob

3 Replies 3

jeffrey.c
Level 1
Level 1

You may want to look into the timeout options.

There are timeout for xlate, connection, udp sessions,...etc.

Fernando_Meza
Level 7
Level 7

Check the timeout for you xlate and connections by using the command below. You can change decrease this values using timeout command .

Also you need to be aware that concurrent connnection limits apply to the PIX depending of the licence been installed. This is true specially if you are running a limited license.

show timeout

timeout xlate 3:00:00

timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h323 0:05:00

sip 0:30:00 sip_media 0:02:00

timeout uauth 0:05:00 absolute

I hope it helps .. please rate if it if does !!!

grant.maynard
Level 4
Level 4

When you've got this problem, what does "show conn count" say?

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: