<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Traffic in the PIX 525 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/traffic-in-the-pix-525/m-p/726243#M1005558</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Raj&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;  Do you think my case like "Enhanced Inspection of Malformed HTTP Traffic May Cause Reload",  but I don't have enhanced inspection setup, only have "inspect http" inside, also our pix is ver 7.01. From weblogic message, app server get "Malformed Request...."&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ben &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 01 May 2007 23:34:08 GMT</pubDate>
    <dc:creator>bma</dc:creator>
    <dc:date>2007-05-01T23:34:08Z</dc:date>
    <item>
      <title>Traffic in the PIX 525</title>
      <link>https://community.cisco.com/t5/network-security/traffic-in-the-pix-525/m-p/726240#M1005555</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt; After get following error in the BEA Welogic app server in the dmz:   &lt;/P&gt;&lt;P&gt;"&amp;lt;BEA-101215&amp;gt; &amp;lt;Malformed Request "/jsp/AD_Banner/Hardocp_120x300.jsp HTTP/1.0". Request parsing failed, Code: -10&amp;gt;". &lt;/P&gt;&lt;P&gt;  app server is still running fine, but traffic in the PIX (version 7.0)  inside interface, two dmz interface and failover interface have big jump, PIX cpu usage is from 20% to 80%, after 8 hour, everything is back to normal. Is this bug with PIX or somethng else? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ben&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 10:07:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/traffic-in-the-pix-525/m-p/726240#M1005555</guid>
      <dc:creator>bma</dc:creator>
      <dc:date>2019-03-11T10:07:23Z</dc:date>
    </item>
    <item>
      <title>Re: Traffic in the PIX 525</title>
      <link>https://community.cisco.com/t5/network-security/traffic-in-the-pix-525/m-p/726241#M1005556</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Ben&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The release notes of all the pix ios versions are as given below:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://cisco.com/en/US/products/sw/secursw/ps2120/prod_release_notes_list.html" target="_blank"&gt;http://cisco.com/en/US/products/sw/secursw/ps2120/prod_release_notes_list.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;you can look for your specific IOS and see if there are any open caveats.. anyway, can you please eloborate a little more on your issue ? I really did not get much, apart from the fact that the CPU goes from 20 % to 80 %...do you see anything on the local logs ? how is the interface traffic ??&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Raj&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 May 2007 05:03:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/traffic-in-the-pix-525/m-p/726241#M1005556</guid>
      <dc:creator>sachinraja</dc:creator>
      <dc:date>2007-05-01T05:03:21Z</dc:date>
    </item>
    <item>
      <title>Re: Traffic in the PIX 525</title>
      <link>https://community.cisco.com/t5/network-security/traffic-in-the-pix-525/m-p/726242#M1005557</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Raj.Follwoing is details for traffic in the interface with MRTG (have dmz1, dmz2,dmz3, inside, outside, failover):&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Outside and dmz3 interface: Normal&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;dmz1: incoming traffic from 0.2M up to 1.6 M(it's about 0.2 M normaly)&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;      outgoing traffic: Normal&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;dmz2: Incoming traffic: Normal&lt;/P&gt;&lt;P&gt;      outgoing traffic from 0.2 M up to 1.6 M (it's about 0.2 M normaly).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Failover:  incoming traffic: Normal&lt;/P&gt;&lt;P&gt;           outgoing traffic from 0.2 up to 2.2 M (it's about 0.2 M normaly). &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Inside interface:  incoming traffic: 0.5 M up to 2.8 M (it's from 0.5 to 1 M normaly).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;                   outgoing traffic: 1.0 up to 5.5 M (it's from 0.5 to 3 M normaly). &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;From pix syslog, not find anything about it. Only find error message in the app server which with first email.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;* Normal: just compare traffic with day or weekly traffic graphic and no more big changed. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Looks traffic is not with outside, it is with inside.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ben&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 May 2007 15:22:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/traffic-in-the-pix-525/m-p/726242#M1005557</guid>
      <dc:creator>bma</dc:creator>
      <dc:date>2007-05-01T15:22:00Z</dc:date>
    </item>
    <item>
      <title>Re: Traffic in the PIX 525</title>
      <link>https://community.cisco.com/t5/network-security/traffic-in-the-pix-525/m-p/726243#M1005558</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Raj&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;  Do you think my case like "Enhanced Inspection of Malformed HTTP Traffic May Cause Reload",  but I don't have enhanced inspection setup, only have "inspect http" inside, also our pix is ver 7.01. From weblogic message, app server get "Malformed Request...."&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ben &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 May 2007 23:34:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/traffic-in-the-pix-525/m-p/726243#M1005558</guid>
      <dc:creator>bma</dc:creator>
      <dc:date>2007-05-01T23:34:08Z</dc:date>
    </item>
  </channel>
</rss>

