<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX 515E slow http from inside to dmz network in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066784#M429993</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am going to try the clear-host tonight and will let you know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If it still has the issue I will run a trace locally on the PIX and report back.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for your help.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 18 Oct 2012 20:28:15 GMT</pubDate>
    <dc:creator>kvoelker2000</dc:creator>
    <dc:date>2012-10-18T20:28:15Z</dc:date>
    <item>
      <title>PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066772#M429979</link>
      <description>&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I have a PIX 515E V7.0.4 and I'm having trouble with http access between the inside interface and a DMZ zone I have.&amp;nbsp; I have a web server setup in the DMZ with an web interface to upload/download files.&amp;nbsp; I can connect to this interface from a workstation in the inside network but when I try to download a file it is incredibly slow.&amp;nbsp; If I upload a file there are no speed issues.&amp;nbsp; If I connect using an https connection then both upload and downloads are at speeds I would expect.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have disabled http inspect but this didn't improve the speed connection.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Other http communications from inside to outside do not have any speed issues in either direction.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any thoughts or suggestions appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Karl&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 00:11:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066772#M429979</guid>
      <dc:creator>kvoelker2000</dc:creator>
      <dc:date>2019-03-12T00:11:00Z</dc:date>
    </item>
    <item>
      <title>PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066773#M429980</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Run captures in order to determine if there is something weird with the TCP interaction between both devices ( client and server)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 01:59:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066773#M429980</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-18T01:59:23Z</dc:date>
    </item>
    <item>
      <title>PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066774#M429981</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I ran wireshark on the client to see if I could determine the problem.&amp;nbsp; When comparing the trace between upload and download there was nothing that stood out in the download trace when compared to the upload.&amp;nbsp; Both looked very similar.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 09:33:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066774#M429981</guid>
      <dc:creator>kvoelker2000</dc:creator>
      <dc:date>2012-10-18T09:33:39Z</dc:date>
    </item>
    <item>
      <title>PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066775#M429982</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What about retransmissions or out of order packets?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 16:25:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066775#M429982</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-18T16:25:09Z</dc:date>
    </item>
    <item>
      <title>PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066776#M429983</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi Julio,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I did another packet trace of a file download that had about 10K packets.&amp;nbsp; Of those I saw about 5 of the following:&lt;/P&gt;&lt;P&gt;[TCP Retransmission ] Continuation or non-HTTP traffic (all from the server to the workstation)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The majority of the packets were:&lt;/P&gt;&lt;P&gt;Continuation or non-HTTP traffic (both directions)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I wanted to mention that I also have tried changing the port settings on both the server NIC and switch port it connects to.&amp;nbsp; Every possible combo (auto, full, half)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The PIX DMZ interface is set to 100 Full and also the switch port it connects to (3COM Superstack).&amp;nbsp; I don't seem to have any speed issues for other applications running on this server, FTP, File sharing.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Karl &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 18:59:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066776#M429983</guid>
      <dc:creator>kvoelker2000</dc:creator>
      <dc:date>2012-10-18T18:59:37Z</dc:date>
    </item>
    <item>
      <title>PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066777#M429985</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How many retransmission packets do you see on wireshark?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please provide me the show interface of the ASA ( related to DMZ )&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:01:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066777#M429985</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-18T19:01:27Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066778#M429987</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Out of the trace of about 10000 packets I saw 5 or 6 retransmission packets.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is the sho int for my DMZ interface&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Interface Ethernet2 "DMZ", is up, line protocol is up&lt;/P&gt;&lt;P&gt;&amp;nbsp; Hardware is i82559, BW 100 Mbps&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Full-Duplex(Full-duplex), 100 Mbps(100 Mbps)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Description: DMZ Zone.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; MAC address 000d.8811.c32c, MTU 1500&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; IP address xxx.xxx.xxx.xxx, subnet mask 255.255.255.0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 25467862676 packets input, 5078676771134 bytes, 0 no buffer&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Received 8304357 broadcasts, 0 runts, 0 giants&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 13 input errors, 0 CRC, 0 frame, 13 overrun, 0 ignored, 0 abort&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 L2 decode drops&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 44197954355 packets output, 57486827220439 bytes, 42 underruns&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 output errors, 0 collisions, 0 interface resets&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 babbles, 0 late collisions, 0 deferred&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 lost carrier, 0 no carrier&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; input queue (curr/max blocks): hardware (128/128) software (0/191)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; output queue (curr/max blocks): hardware (0/128) software (0/45)&lt;/P&gt;&lt;P&gt;&amp;nbsp; Traffic Statistics for "Audiovault-DMZ":&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 25473285608 packets input, 4606976126158 bytes&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 44203213848 packets output, 56856313580879 bytes&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 8197481 packets dropped&lt;SPAN id="mce_marker"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:17:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066778#M429987</guid>
      <dc:creator>kvoelker2000</dc:creator>
      <dc:date>2012-10-18T19:17:45Z</dc:date>
    </item>
    <item>
      <title>PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066779#M429988</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;42 underruns&lt;/P&gt;&lt;P&gt;13 overrun&lt;/P&gt;&lt;P&gt; 13 input errors&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you clear the counters and then attempt a connection and check the interface again and post the results.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I dont like those error counters.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:20:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066779#M429988</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-18T19:20:52Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066780#M429989</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cleared the counters and downloaded a 100MB file&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Interface Ethernet2 "Audiovault-DMZ", is up, line protocol is up&lt;/P&gt;&lt;P&gt;&amp;nbsp; Hardware is i82559, BW 100 Mbps&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Full-Duplex(Full-duplex), 100 Mbps(100 Mbps)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Description: DMZ Zone.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; MAC address 000d.8811.c32c, MTU 1500&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; IP address 192.168.2.1, subnet mask 255.255.255.0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 130716 packets input, 147258923 bytes, 0 no buffer&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Received 189 broadcasts, 0 runts, 0 giants&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 L2 decode drops&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 73850 packets output, 12994065 bytes, 0 underruns&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 output errors, 0 collisions, 0 interface resets&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 babbles, 0 late collisions, 0 deferred&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 lost carrier, 0 no carrier&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; input queue (curr/max blocks): hardware (128/128) software (0/15)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; output queue (curr/max blocks): hardware (0/10) software (0/1)&lt;/P&gt;&lt;P&gt;&amp;nbsp; Traffic Statistics for "Audiovault-DMZ":&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 129252 packets input, 145431089 bytes&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 73850 packets output, 11362942 bytes&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 183 packets dropped&lt;SPAN id="mce_marker"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:37:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066780#M429989</guid>
      <dc:creator>kvoelker2000</dc:creator>
      <dc:date>2012-10-18T19:37:56Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066781#M429990</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That looks way better,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Okay so you have removed the HTTP inspection.&lt;/P&gt;&lt;P&gt;Did you clear the local-host table afterwards?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; clear local-host&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then is there a way you could upload here a capture while you perform the file download&lt;/P&gt;&lt;P&gt;Ofcourse provide us the capture syntax you used on the PIX and the PIX setup&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:40:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066781#M429990</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-18T19:40:53Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066782#M429991</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I didn't clear the local host table.&amp;nbsp; Would this affect any current traffic when I run this command?&amp;nbsp; Should I do this during a non-peak user time?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For the capture I've just been using wireshark on the local machine and nothing directly on the PIX.&amp;nbsp; Should I be running a capture directly on the PIX?&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:45:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066782#M429991</guid>
      <dc:creator>kvoelker2000</dc:creator>
      <dc:date>2012-10-18T19:45:07Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066783#M429992</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I didn't clear the local host table.&amp;nbsp; Would this affect any current traffic when I run this command? &lt;/P&gt;&lt;P&gt;Yes, it will clear all the existing connections so they will need to be build again. So a dowtime of 1-2 seconds could happen.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Should I do this during a non-peak user time? If possible yes,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For the capture I've just been using wireshark on the local machine and nothing directly on the PIX.&amp;nbsp; Should I be running a capture directly on the PIX? &lt;/P&gt;&lt;P&gt;Yes, it' needs to be done on the PIX&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a0080a9edd6.shtml"&gt;http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a0080a9edd6.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A _jive_internal="true" href="https://community.cisco.com/docs/DOC-1222"&gt;https://supportforums.cisco.com/docs/DOC-1222&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Remember to rate all of the helpful posts&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 19:48:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066783#M429992</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-18T19:48:04Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066784#M429993</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am going to try the clear-host tonight and will let you know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If it still has the issue I will run a trace locally on the PIX and report back.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for your help.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Oct 2012 20:28:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066784#M429993</guid>
      <dc:creator>kvoelker2000</dc:creator>
      <dc:date>2012-10-18T20:28:15Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066785#M429994</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So I ran the clear local-host command and there was no difference in download speed.&amp;nbsp; I rebooted both my primary and failover firewalls just to clear everything and still the same slow download speeds.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I did run a capture right on the PIX using the following command "capture test circular-buffer interface DMZ".&amp;nbsp; I'm not sure where I can upload a capture file here but the capture on the PIX looked almost identical to the capture form the local workstation.&amp;nbsp; Here is a screen capture of the PIX capture hopefully it is readable.&amp;nbsp; The IP address are 192.168.2.37 for the web server and 192.168.1.63 for the workstation downloading the file.&amp;nbsp; If I run the same download using https the speeds are completely fine.&amp;nbsp; Seems like the PIX must be doing something to the http connection but not sure what it is.&lt;/P&gt;&lt;P&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/5/5/6/108655-pcap3.png" class="jive-image" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 21 Oct 2012 03:43:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066785#M429994</guid>
      <dc:creator>kvoelker2000</dc:creator>
      <dc:date>2012-10-21T03:43:54Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066786#M429995</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Really interesting behavior &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do the following capture for me please&lt;/P&gt;&lt;P&gt;capture capin interface inside match tcp host 192.168.1.63 host 192.168.2.37 eq 80&lt;/P&gt;&lt;P&gt;cap capdmz interface dmz match tcp host 192.168.1.3 host 192.168.2.37 eq 80&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then attemtp to connect, afterwards download the captures to your computers and try to upload them here, if not possible send them to my email address ( on my profile you will have 2 email addresses)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I will analize that on my PC, Please send me the show running-config as well,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 21 Oct 2012 07:32:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066786#M429995</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-21T07:32:16Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066787#M429996</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I went to run the captures you wanted but the commands aren't recognized,&amp;nbsp; I don't think it likes the "match" command.&amp;nbsp; I will try to get those captures run but here is the running config from my PIX.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Karl&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2012 20:40:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066787#M429996</guid>
      <dc:creator>kvoelker2000</dc:creator>
      <dc:date>2012-10-22T20:40:21Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066788#M429997</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Got it, yes, that's because of the version you are running.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You will need to do it with an ACL instead of a match.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Julio&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2012 20:48:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066788#M429997</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-22T20:48:12Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066789#M429998</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; HI,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;OK so I got the capture syntax and attached is the capture from the hosts on the DMZ interface.&amp;nbsp; The capture on the inside interface did not collect any packets which was odd, upload or download and I used the same access-list.&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'll keep trying to get a capture on the inside interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Karl&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2012 22:01:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066789#M429998</guid>
      <dc:creator>kvoelker2000</dc:creator>
      <dc:date>2012-10-22T22:01:57Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066790#M429999</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you share the NAT you are using from the internal interface when going to the DMZ server and?&lt;/P&gt;&lt;P&gt;Do you have any NAT from DMZ when going to inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What is between the ASA and the HTTP server on the DMZ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Oct 2012 23:36:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066790#M429999</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2012-10-22T23:36:54Z</dc:date>
    </item>
    <item>
      <title>Re: PIX 515E slow http from inside to dmz network</title>
      <link>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066791#M430000</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The NAT I have between the inside and DMZ network is one to one.&amp;nbsp; Private addresses in the inside net translate to those same addresses in the DMZ and vice versa.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The server in the DMZ zone, 192.168.2.37, is a public facing server so it's public address is translated to the inside network so the machines in the inside net access it via it's public address.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Nothing is in between the HTTP server and the PIX.&amp;nbsp; Both the inside network and DMZ are connected directly to the PIX.&amp;nbsp; The DMZ network is on a VLAN on a seperate switch.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hopefully this makes sense.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Karl&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Oct 2012 00:06:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-515e-slow-http-from-inside-to-dmz-network/m-p/2066791#M430000</guid>
      <dc:creator>kvoelker2000</dc:creator>
      <dc:date>2012-10-23T00:06:22Z</dc:date>
    </item>
  </channel>
</rss>

