Educause Security Discussion mailing list archives

Re: Pix install


From: "James M. Driskell" <jdriskell () UPS EDU>
Date: Thu, 10 Mar 2005 09:22:32 -0800

John,



You might also look at the Accuplace application to see if it tries to open
random inbound ports periodically once the session is established.  The PIX
might be rejecting these connections even though the rest of the session is
running.   If this is the case, you might need to create an inbound object
for this application that allows the additional port connections.



Jim Driskell

University of Puget Sound



  _____

From: The EDUCAUSE Security Discussion Group Listserv
[mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of John
Sent: Thursday, March 10, 2005 7:22 AM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: [SECURITY] Pix install



Greetings All,



We have recently installed a new Pix 525 on a network edge. We are having
issues with some connections dropping. In particular Accuplace web tests
seem to be dropping off. The Pix Devcie manager is logging a traffic drop
for inbound and outbound traffic on both the inside and outside interfaces
about every four minutes. I am unsure if these events are correlated or not
and am roubleshooting.



Should anyone have a clue as to where to look I am very appreciative.



I am poking at Pix, routers and DNS issues and am opening a case with Crisco
TAC.



Cheers,

John Garner

jgarner () sfasu edu

********** Participation and subscription information for this EDUCAUSE
Discussion Group discussion list can be found at
http://www.educause.edu/groups/.

**********
Participation and subscription information for this EDUCAUSE Discussion Group discussion list can be found at 
http://www.educause.edu/groups/.

Current thread: