Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 

PIX 500 Series Firewall with software version 7.x crashes intermittently and continuously reboots with the Thread name Dispatch Unit error" message

Core issue

This issue arises due to Cisco bug ID CSCse47150 in PIX Firewall version 7.2.1.

The presence of another bug CSCsd72617 can also trigger the same issue.

The PIX Firewall/Adaptive Security Appliance (ASA) running software version 7.2.1 can crash with the Thread name Dispatch Unit error when the Extended Simple Mail Transfer Protocol (ESMTP) inspection engine is enabled.

The issue canarise while you process segmented SMTP/ESMTP packets.

After an upgrade to software version 7.2.1, the PIX Firewall can continuously reboot when the ESMTP inspection engine is enabled. By default, ESMTP inspection is enabled.

The problem occurs when the data length for segmented packets are miscalculated.

Resolution

As a workaround for this issue, complete either one of these steps:

  • Disable the ESMTP inspection engine.

    Apply the no inspect esmtp command in the PIX /ASA global configuration as shown in this example:

    hostname (config)#policy-map global_policy
    hostname(config-pmap)#class inspection_default
    hostname(config-pmap-c)#no inspect esmtp 
  • Refer to Cisco Downloads and upgrade the software version to either version 7.2(1.17) or 7.3(0.67).
Version history
Revision #:
1 of 1
Last update:
‎06-22-2009 04:46 PM
Updated by:
 
Labels (1)