<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PIX stopping connections!! in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212221#M610314</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;are you using the restricted version of the PIX? Maybe you have reached the maximum number of connection.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Use the 'show local-host' command to check this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kind Regards,&lt;/P&gt;&lt;P&gt;Tom&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 15 Dec 2003 12:42:33 GMT</pubDate>
    <dc:creator>tvanginneken</dc:creator>
    <dc:date>2003-12-15T12:42:33Z</dc:date>
    <item>
      <title>PIX stopping connections!!</title>
      <link>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212220#M610313</link>
      <description>&lt;P&gt;Every couple of weeks or so, after a weekend, I arrive at work to find the PIX is 'Disallowing New Connections'.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I then reload the PIX all is OK again until another couple of weeks away!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does anyone know why this would be happening?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Many thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Robin.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 07:09:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212220#M610313</guid>
      <dc:creator>r.lent</dc:creator>
      <dc:date>2020-02-21T07:09:17Z</dc:date>
    </item>
    <item>
      <title>Re: PIX stopping connections!!</title>
      <link>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212221#M610314</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;are you using the restricted version of the PIX? Maybe you have reached the maximum number of connection.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Use the 'show local-host' command to check this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kind Regards,&lt;/P&gt;&lt;P&gt;Tom&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Dec 2003 12:42:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212221#M610314</guid>
      <dc:creator>tvanginneken</dc:creator>
      <dc:date>2003-12-15T12:42:33Z</dc:date>
    </item>
    <item>
      <title>Re: PIX stopping connections!!</title>
      <link>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212222#M610315</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have done a 'show local-host' but am still unsure if I have the resticted PIX or not!  There is a line which says - Interface inside: 3 active, 13 maximum active, 0 denied.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Would that mean I only have 13 connections available to me?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I also did a 'show ver' and there is a line in here which states - Throughput: unlimited.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Am I looking in the wrong place?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Many thanks for your help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Robin.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Dec 2003 13:27:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212222#M610315</guid>
      <dc:creator>r.lent</dc:creator>
      <dc:date>2003-12-15T13:27:38Z</dc:date>
    </item>
    <item>
      <title>Re: PIX stopping connections!!</title>
      <link>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212223#M610316</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;what type of pix do you have? The user restriction is only applicable for the 501 models. Try doing a 'sh ver', it should display if you have a restriction for the max number of users.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Tom&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Dec 2003 13:53:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212223#M610316</guid>
      <dc:creator>tvanginneken</dc:creator>
      <dc:date>2003-12-15T13:53:14Z</dc:date>
    </item>
    <item>
      <title>Re: PIX stopping connections!!</title>
      <link>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212224#M610317</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Tom,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry, I should have posted the device details first!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It is a PIX515e.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Robin.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Dec 2003 14:45:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212224#M610317</guid>
      <dc:creator>r.lent</dc:creator>
      <dc:date>2003-12-15T14:45:34Z</dc:date>
    </item>
    <item>
      <title>Re: PIX stopping connections!!</title>
      <link>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212225#M610318</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Robin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;could you post a 'sh run' on the forum? Please modify public address and password entries.&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Tom&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Dec 2003 14:55:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212225#M610318</guid>
      <dc:creator>tvanginneken</dc:creator>
      <dc:date>2003-12-15T14:55:59Z</dc:date>
    </item>
    <item>
      <title>Re: PIX stopping connections!!</title>
      <link>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212226#M610319</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are you using tcp syslogging? If you are, and the log server is unavailable, the pix will block all new connections. If you cannot keep the log server available, just switch to standards based udp syslogging&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Dec 2003 15:04:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212226#M610319</guid>
      <dc:creator>mostiguy</dc:creator>
      <dc:date>2003-12-15T15:04:34Z</dc:date>
    </item>
    <item>
      <title>Re: PIX stopping connections!!</title>
      <link>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212227#M610320</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is a printout of the conf of the PIX.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PIX Version 6.1(4)&lt;/P&gt;&lt;P&gt;nameif ethernet0 outside security0&lt;/P&gt;&lt;P&gt;nameif ethernet1 inside security100&lt;/P&gt;&lt;P&gt;nameif ethernet2 intf2 security10&lt;/P&gt;&lt;P&gt;enable password N51JqWodsWmI5V9u encrypted&lt;/P&gt;&lt;P&gt;passwd N51JqWodsWmI5V9u encrypted&lt;/P&gt;&lt;P&gt;hostname pixfirewall&lt;/P&gt;&lt;P&gt;domain-name lawandresources.wcc.co.uk&lt;/P&gt;&lt;P&gt;fixup protocol ftp 21&lt;/P&gt;&lt;P&gt;fixup protocol http 80&lt;/P&gt;&lt;P&gt;fixup protocol h323 1720&lt;/P&gt;&lt;P&gt;fixup protocol rsh 514&lt;/P&gt;&lt;P&gt;fixup protocol rtsp 554&lt;/P&gt;&lt;P&gt;fixup protocol smtp 25&lt;/P&gt;&lt;P&gt;fixup protocol sqlnet 1521&lt;/P&gt;&lt;P&gt;fixup protocol sip 5060&lt;/P&gt;&lt;P&gt;fixup protocol skinny 2000&lt;/P&gt;&lt;P&gt;names&lt;/P&gt;&lt;P&gt;name ***.***.***.*** Pipex&lt;/P&gt;&lt;P&gt;name 192.168.0.0 Law-Resources&lt;/P&gt;&lt;P&gt;name 192.168.0.1 TimeServer&lt;/P&gt;&lt;P&gt;name 192.168.0.2 MailServer&lt;/P&gt;&lt;P&gt;access-list 101 permit tcp any host ***.***.***.*** eq smtp &lt;/P&gt;&lt;P&gt;access-list 101 deny icmp any host ***.***.***.*** echo-reply &lt;/P&gt;&lt;P&gt;pager lines 24&lt;/P&gt;&lt;P&gt;logging timestamp&lt;/P&gt;&lt;P&gt;logging trap alerts&lt;/P&gt;&lt;P&gt;logging history alerts&lt;/P&gt;&lt;P&gt;interface ethernet0 10baset&lt;/P&gt;&lt;P&gt;interface ethernet1 10full&lt;/P&gt;&lt;P&gt;interface ethernet2 auto shutdown&lt;/P&gt;&lt;P&gt;mtu outside 1500&lt;/P&gt;&lt;P&gt;mtu inside 1500&lt;/P&gt;&lt;P&gt;mtu intf2 1500&lt;/P&gt;&lt;P&gt;ip address outside ***.***.***.*** 255.255.255.248&lt;/P&gt;&lt;P&gt;ip address inside ***.***.***.*** 255.255.0.0&lt;/P&gt;&lt;P&gt;ip address intf2 127.0.0.1 255.255.255.255&lt;/P&gt;&lt;P&gt;ip verify reverse-path interface outside&lt;/P&gt;&lt;P&gt;ip audit info action alarm&lt;/P&gt;&lt;P&gt;ip audit attack action alarm&lt;/P&gt;&lt;P&gt;pdm location TimeServer 255.255.255.255 inside&lt;/P&gt;&lt;P&gt;pdm location MailServer 255.255.255.255 inside&lt;/P&gt;&lt;P&gt;pdm location 192.168.0.5 255.255.255.255 inside&lt;/P&gt;&lt;P&gt;pdm location 192.168.0.25 255.255.255.255 inside&lt;/P&gt;&lt;P&gt;pdm location Law-Resources 255.255.0.0 inside&lt;/P&gt;&lt;P&gt;pdm location 192.168.0.30 255.255.255.255 inside&lt;/P&gt;&lt;P&gt;pdm logging warnings 20&lt;/P&gt;&lt;P&gt;pdm history enable&lt;/P&gt;&lt;P&gt;arp timeout 14400&lt;/P&gt;&lt;P&gt;global (outside) 1 ***.***.***.***-***.***.***.*** netmask 255.255.255.248&lt;/P&gt;&lt;P&gt;global (outside) 1 interface&lt;/P&gt;&lt;P&gt;nat (inside) 1 0.0.0.0 0.0.0.0 0 0&lt;/P&gt;&lt;P&gt;static (inside,outside) ***.***.***.*** MailServer netmask 255.255.255.255 0 0&lt;/P&gt;&lt;P&gt;access-group 101 in interface outside&lt;/P&gt;&lt;P&gt;route outside 0.0.0.0 0.0.0.0 ***.***.***.*** 1&lt;/P&gt;&lt;P&gt;timeout xlate 3:00:00&lt;/P&gt;&lt;P&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h323 0:05:00 sip 0:30:00 sip_media 0:02:00&lt;/P&gt;&lt;P&gt;timeout uauth 0:05:00 absolute&lt;/P&gt;&lt;P&gt;aaa-server TACACS+ protocol tacacs+ &lt;/P&gt;&lt;P&gt;aaa-server RADIUS protocol radius &lt;/P&gt;&lt;P&gt;http server enable&lt;/P&gt;&lt;P&gt;http 192.168.0.5 255.255.255.255 inside&lt;/P&gt;&lt;P&gt;no snmp-server location&lt;/P&gt;&lt;P&gt;no snmp-server contact&lt;/P&gt;&lt;P&gt;snmp-server community public&lt;/P&gt;&lt;P&gt;no snmp-server enable traps&lt;/P&gt;&lt;P&gt;floodguard enable&lt;/P&gt;&lt;P&gt;no sysopt route dnat&lt;/P&gt;&lt;P&gt;auth-prompt prompt Please enter your Username and Password for access to the Internet &lt;/P&gt;&lt;P&gt;auth-prompt accept Accepted!! You are through to the Internet &lt;/P&gt;&lt;P&gt;service resetoutside&lt;/P&gt;&lt;P&gt;telnet Law-Resources 255.255.0.0 inside&lt;/P&gt;&lt;P&gt;telnet Law-Resources 255.255.0.0 intf2&lt;/P&gt;&lt;P&gt;telnet timeout 5&lt;/P&gt;&lt;P&gt;ssh timeout 5&lt;/P&gt;&lt;P&gt;terminal width 80&lt;/P&gt;&lt;P&gt;Cryptochecksum:cdb12fbd6666133fc3368f17a7591a86&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I did find sys logging enabled but it was only on the PIX itself.  I have disabled this to see if it makes any difference.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Many thanks for all the help on this matter.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Robin.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Dec 2003 14:13:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212227#M610320</guid>
      <dc:creator>r.lent</dc:creator>
      <dc:date>2003-12-16T14:13:08Z</dc:date>
    </item>
    <item>
      <title>Re: PIX stopping connections!!</title>
      <link>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212228#M610321</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey Robin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You may want to start a TAC request. I just implemented a 515e a few weeks ago and about every 10 days I have to restart it. For the same reason. I have read on cisco's website that a certain amount of 515's are defective and need to be replaced.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_field_notice09186a00800949c7.shtml" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_field_notice09186a00800949c7.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hopefully this will explain it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Matt&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Dec 2003 16:05:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212228#M610321</guid>
      <dc:creator>matthew.bauer</dc:creator>
      <dc:date>2003-12-18T16:05:22Z</dc:date>
    </item>
    <item>
      <title>Re: PIX stopping connections!!</title>
      <link>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212229#M610322</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey Robin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You may also want to look at your traffic statistics. Make sure everything is set to full duplex if you can. Somehow my public interface was set to 10baset and at half duplex. I noticed a lot of collisions and deferred packets.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I just set it to auto and it picked up at 100 full. so far I have 0 collisions and deferred but it has only been about an hour. I am going to let it run for the weekend and see what I come up with.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Dec 2003 15:55:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/pix-stopping-connections/m-p/212229#M610322</guid>
      <dc:creator>matthew.bauer</dc:creator>
      <dc:date>2003-12-19T15:55:09Z</dc:date>
    </item>
  </channel>
</rss>

