<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Thanks, everything is working in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/per-session-pat-and-http-replication-in-a-failover-active/m-p/2515147#M236093</link>
    <description>&lt;P&gt;Thanks, everything is working fine with no problems &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; and with no connectivity disruption as new commands where applied. What I noticed is xlate dynamic type entries decreasing but also connections decreasing, don't know why actually about the second one.&lt;/P&gt;</description>
    <pubDate>Thu, 31 Jul 2014 16:26:08 GMT</pubDate>
    <dc:creator>giuseppe parlato</dc:creator>
    <dc:date>2014-07-31T16:26:08Z</dc:date>
    <item>
      <title>per-session PAT and http replication in a failover (active/standby) pair</title>
      <link>https://community.cisco.com/t5/network-security/per-session-pat-and-http-replication-in-a-failover-active/m-p/2515145#M236090</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I have ASA 9.1(2) and I'd like to implement per-session PAT to improve pat scalability. Can someone confirm me that switching from multisession to per-session PAT will not cause any nat or connectivity temporary disruption ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'd also like to enable http connection table replication (right now I have a plain stateful failover). Implementing can (I don't think so I know) cause any temporary connectivity disruption ? furthermore the firewall has some cpu overload sometimes, will http replication increase firewall cpu usage ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:33:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/per-session-pat-and-http-replication-in-a-failover-active/m-p/2515145#M236090</guid>
      <dc:creator>giuseppe parlato</dc:creator>
      <dc:date>2019-03-12T04:33:10Z</dc:date>
    </item>
    <item>
      <title>Hello, As Cisco recommends</title>
      <link>https://community.cisco.com/t5/network-security/per-session-pat-and-http-replication-in-a-failover-active/m-p/2515146#M236091</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;As Cisco recommends the Per-Session PAT should be used for&amp;nbsp;&lt;SPAN style="font-size: 14px;"&gt;hit-and-run traffic such as HTTP or HTTPS where you will avoing having the Xlate entry there for 30 seconds (default timeout) after the session is closed but it's not recommended for traffic like SIP so you will need to tweak the config to enable the feature only for what its needed.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 14px;"&gt;In regards of the HTTP replication, there are not known issues about enabling this.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So do not worry about this 2 options.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Jcarvaja&lt;/P&gt;&lt;P&gt;CCIE 42930, 2xCCNP, JNCIS-SEC&lt;/P&gt;&lt;P&gt;For inmediate support http://iNetworks.cr&lt;/P&gt;</description>
      <pubDate>Wed, 30 Jul 2014 23:50:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/per-session-pat-and-http-replication-in-a-failover-active/m-p/2515146#M236091</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2014-07-30T23:50:45Z</dc:date>
    </item>
    <item>
      <title>Thanks, everything is working</title>
      <link>https://community.cisco.com/t5/network-security/per-session-pat-and-http-replication-in-a-failover-active/m-p/2515147#M236093</link>
      <description>&lt;P&gt;Thanks, everything is working fine with no problems &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; and with no connectivity disruption as new commands where applied. What I noticed is xlate dynamic type entries decreasing but also connections decreasing, don't know why actually about the second one.&lt;/P&gt;</description>
      <pubDate>Thu, 31 Jul 2014 16:26:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/per-session-pat-and-http-replication-in-a-failover-active/m-p/2515147#M236093</guid>
      <dc:creator>giuseppe parlato</dc:creator>
      <dc:date>2014-07-31T16:26:08Z</dc:date>
    </item>
    <item>
      <title>Hello, Excellent to hear that</title>
      <link>https://community.cisco.com/t5/network-security/per-session-pat-and-http-replication-in-a-failover-active/m-p/2515148#M236094</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Excellent to hear that.&lt;/P&gt;&lt;P&gt;Remember that the xlate entries will be cleared faster so you might not even be able to see them when you do a show xlate as the entry might be already deleted.&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Thu, 31 Jul 2014 16:37:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/per-session-pat-and-http-replication-in-a-failover-active/m-p/2515148#M236094</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2014-07-31T16:37:00Z</dc:date>
    </item>
  </channel>
</rss>

