<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic syn timeout while reaching a server in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/syn-timeout-while-reaching-a-server/m-p/2425538#M238763</link>
    <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hi Everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am trying to connect to a server.&lt;/P&gt;&lt;P&gt;Logs are below from ASA&lt;/P&gt;&lt;TABLE border="0" cellpadding="0"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;P&gt;May 01 2014 17:59:54: %ASA-6-302014: Teardown TCP connection 142620724 for X:172.31.23.107/60309 to Y:172.31.10.131/443 duration 0:00:30 bytes 0 SYN Timeout&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;&lt;P&gt;May 01 2014 17:59:24: %ASA-6-302013: Built inbound TCP connection 142620724 for X:172.31.23.107/60309 (172.31.23.107/60309) to Y 172.31.10.131/443 (172.31.10.131/443)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I did packet capture on ASA&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 1: 17:59:24.010390 172.31.23.107.60309 &amp;gt; 172.31.10.131.443: &lt;STRONG&gt;S&lt;/STRONG&gt; 2877280643:2877280643(0) win 8192 &amp;lt;mss 1460,nop,wscale 2,nop,nop,sackOK&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 2: 17:59:27.006240 172.31.23.107.60309 &amp;gt; 172.31.10.131.443: &lt;STRONG&gt;S&lt;/STRONG&gt; 2877280643:2877280643(0) win 8192 &amp;lt;mss 1460,nop,wscale 2,nop,nop,sackOK&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 3: 17:59:33.008544 172.31.23.107.60309 &amp;gt; 172.31.10.131.443: &lt;STRONG&gt;S &lt;/STRONG&gt;2877280643:2877280643(0) win 8192 &amp;lt;mss 1460,nop,nop,sackOK&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Need to confirm that as per above logs ASA has send 3 syn packets to servers and it did not receive any syn,ack from the server right?&lt;/P&gt;&lt;P&gt;Also nop,wscale 2,nop,nop,sackOK&amp;gt; means that ASA does not receive any syn from server right?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Mahesh&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;</description>
    <pubDate>Tue, 12 Mar 2019 04:09:13 GMT</pubDate>
    <dc:creator>mahesh18</dc:creator>
    <dc:date>2019-03-12T04:09:13Z</dc:date>
    <item>
      <title>syn timeout while reaching a server</title>
      <link>https://community.cisco.com/t5/network-security/syn-timeout-while-reaching-a-server/m-p/2425538#M238763</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hi Everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am trying to connect to a server.&lt;/P&gt;&lt;P&gt;Logs are below from ASA&lt;/P&gt;&lt;TABLE border="0" cellpadding="0"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;P&gt;May 01 2014 17:59:54: %ASA-6-302014: Teardown TCP connection 142620724 for X:172.31.23.107/60309 to Y:172.31.10.131/443 duration 0:00:30 bytes 0 SYN Timeout&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;&lt;P&gt;May 01 2014 17:59:24: %ASA-6-302013: Built inbound TCP connection 142620724 for X:172.31.23.107/60309 (172.31.23.107/60309) to Y 172.31.10.131/443 (172.31.10.131/443)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I did packet capture on ASA&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 1: 17:59:24.010390 172.31.23.107.60309 &amp;gt; 172.31.10.131.443: &lt;STRONG&gt;S&lt;/STRONG&gt; 2877280643:2877280643(0) win 8192 &amp;lt;mss 1460,nop,wscale 2,nop,nop,sackOK&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 2: 17:59:27.006240 172.31.23.107.60309 &amp;gt; 172.31.10.131.443: &lt;STRONG&gt;S&lt;/STRONG&gt; 2877280643:2877280643(0) win 8192 &amp;lt;mss 1460,nop,wscale 2,nop,nop,sackOK&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 3: 17:59:33.008544 172.31.23.107.60309 &amp;gt; 172.31.10.131.443: &lt;STRONG&gt;S &lt;/STRONG&gt;2877280643:2877280643(0) win 8192 &amp;lt;mss 1460,nop,nop,sackOK&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Need to confirm that as per above logs ASA has send 3 syn packets to servers and it did not receive any syn,ack from the server right?&lt;/P&gt;&lt;P&gt;Also nop,wscale 2,nop,nop,sackOK&amp;gt; means that ASA does not receive any syn from server right?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Mahesh&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:09:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syn-timeout-while-reaching-a-server/m-p/2425538#M238763</guid>
      <dc:creator>mahesh18</dc:creator>
      <dc:date>2019-03-12T04:09:13Z</dc:date>
    </item>
    <item>
      <title>Yes, that's right. 3 syn</title>
      <link>https://community.cisco.com/t5/network-security/syn-timeout-while-reaching-a-server/m-p/2425539#M238765</link>
      <description>&lt;P&gt;Yes, that's right. 3 syn packets without an ack is the default for Windows to stop retrying.&lt;/P&gt;&lt;P&gt;The first one is sent, then 3 seconds later the second then 6 seconds later the third.&lt;/P&gt;&lt;P&gt;I find it's generally easier to export the packet captures into Wireshark to visualize the flows. If you run the capture using the ASDM wizard and setup your path to Wireshark in ASDM, you can just click to export and launch.&lt;/P&gt;</description>
      <pubDate>Fri, 02 May 2014 15:50:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syn-timeout-while-reaching-a-server/m-p/2425539#M238765</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2014-05-02T15:50:47Z</dc:date>
    </item>
    <item>
      <title> Thanks MArvin seems i will</title>
      <link>https://community.cisco.com/t5/network-security/syn-timeout-while-reaching-a-server/m-p/2425540#M238767</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks MArvin seems i will learn lot from your experience.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Mahesh&lt;/P&gt;</description>
      <pubDate>Fri, 02 May 2014 16:37:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/syn-timeout-while-reaching-a-server/m-p/2425540#M238767</guid>
      <dc:creator>mahesh18</dc:creator>
      <dc:date>2014-05-02T16:37:58Z</dc:date>
    </item>
  </channel>
</rss>

