<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: High session through PIX 515E firewall  in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/high-session-through-pix-515e-firewall/m-p/350264#M559550</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;How can I know the required ports for my application if I have one not using the port 80?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you,&lt;/P&gt;&lt;P&gt;Thaier&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 01 Feb 2005 15:08:07 GMT</pubDate>
    <dc:creator>thaier1978</dc:creator>
    <dc:date>2005-02-01T15:08:07Z</dc:date>
    <item>
      <title>High session through PIX 515E firewall</title>
      <link>https://community.cisco.com/t5/network-security/high-session-through-pix-515e-firewall/m-p/350260#M559531</link>
      <description>&lt;P&gt;My ISP is stopping the internet service and says that I have a high session count of 5400+.. The normal session counts should be around 200. Due to this high count, my site can potentially cause harm to my network and thier network. they have deactivated this site to prevent harm. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;MY PIX config is attached, please check it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;note: my ISP modem have IP of  216.147.153.113 /29 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if you have any questions please contact me through Email or messenger in below contacts , I appreciate your help in advance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thank you,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thaier K. Cassim&lt;/P&gt;&lt;P&gt;Iraq - Baghdad&lt;/P&gt;&lt;P&gt;Cell Phone: +964 7901 762691&lt;/P&gt;&lt;P&gt;yahoo ID: &amp;lt;A HREF="mailto:thaier78@yahoo.com"&amp;gt;thaier78@yahoo.com&amp;lt;/A&amp;gt;&lt;/P&gt;&lt;P&gt;MSN ID: &amp;lt;A HREF="mailto:thaier78@hotmail.com"&amp;gt;thaier78@hotmail.com&amp;lt;/A&amp;gt;&lt;/P&gt;&lt;P&gt;Email: &amp;lt;A HREF="mailto:thaier78@yahoo.com"&amp;gt;thaier78@yahoo.com&amp;lt;/A&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 07:54:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/high-session-through-pix-515e-firewall/m-p/350260#M559531</guid>
      <dc:creator>thaier1978</dc:creator>
      <dc:date>2020-02-21T07:54:11Z</dc:date>
    </item>
    <item>
      <title>Re: High session through PIX 515E firewall</title>
      <link>https://community.cisco.com/t5/network-security/high-session-through-pix-515e-firewall/m-p/350261#M559533</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi thaier,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;saw the configs.. why are you opening  ip any any and tcp any any from inside to outside.. first remove these statements and then see the performance.. am sure most of the unnecessary traffic are going through now because of these statements....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no access-list inside_access_in permit ip any any&lt;/P&gt;&lt;P&gt;no access-list inside_access_in permit tcp any any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;see if this solves the problem.otherwise we have to finetune the remaining access-lists.. make sure all ports are open after you remove these 2 lines...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Raj&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 29 Jan 2005 13:57:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/high-session-through-pix-515e-firewall/m-p/350261#M559533</guid>
      <dc:creator>sachinraja</dc:creator>
      <dc:date>2005-01-29T13:57:30Z</dc:date>
    </item>
    <item>
      <title>Re: High session through PIX 515E firewall</title>
      <link>https://community.cisco.com/t5/network-security/high-session-through-pix-515e-firewall/m-p/350262#M559539</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dear Thaier , &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I feel , check ur PAT table once. is there any internal systems generating more connections on virus ports . u enabled ip any any which is  not good.remove them and make sure all the required ports opened or not.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks and regards&lt;/P&gt;&lt;P&gt;Nataraj&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 29 Jan 2005 18:27:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/high-session-through-pix-515e-firewall/m-p/350262#M559539</guid>
      <dc:creator>nataraj_v</dc:creator>
      <dc:date>2005-01-29T18:27:29Z</dc:date>
    </item>
    <item>
      <title>Re: High session through PIX 515E firewall</title>
      <link>https://community.cisco.com/t5/network-security/high-session-through-pix-515e-firewall/m-p/350263#M559546</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dear Raj, &lt;/P&gt;&lt;P&gt;Can I put limitation for the sessions that are going through the openned ports using the PIX 515E firewall?&lt;/P&gt;&lt;P&gt;Or, can I put limitation for each PC?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you,&lt;/P&gt;&lt;P&gt;Thaier&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2005 15:01:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/high-session-through-pix-515e-firewall/m-p/350263#M559546</guid>
      <dc:creator>thaier1978</dc:creator>
      <dc:date>2005-02-01T15:01:09Z</dc:date>
    </item>
    <item>
      <title>Re: High session through PIX 515E firewall</title>
      <link>https://community.cisco.com/t5/network-security/high-session-through-pix-515e-firewall/m-p/350264#M559550</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;How can I know the required ports for my application if I have one not using the port 80?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you,&lt;/P&gt;&lt;P&gt;Thaier&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2005 15:08:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/high-session-through-pix-515e-firewall/m-p/350264#M559550</guid>
      <dc:creator>thaier1978</dc:creator>
      <dc:date>2005-02-01T15:08:07Z</dc:date>
    </item>
  </channel>
</rss>

