07-02-2006 02:44 AM - edited 03-09-2019 03:27 PM
Hi
I have pix 515 firewall which running smoothly but suddenly it problems.
when I see show xlate a huge concrent session and when user ping through pix then it packet loss. after clear xlate command apply its again normal. but it stable some of time. and again previous condition.
so any idea to resolve this problem
thanks
biplob
07-02-2006 07:38 PM
You may want to look into the timeout options.
There are timeout for xlate, connection, udp sessions,...etc.
07-02-2006 10:48 PM
Check the timeout for you xlate and connections by using the command below. You can change decrease this values using timeout command .
Also you need to be aware that concurrent connnection limits apply to the PIX depending of the licence been installed. This is true specially if you are running a limited license.
show timeout
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h323 0:05:00
sip 0:30:00 sip_media 0:02:00
timeout uauth 0:05:00 absolute
I hope it helps .. please rate if it if does !!!
07-03-2006 01:57 AM
When you've got this problem, what does "show conn count" say?
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: