cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
451
Views
0
Helpful
3
Replies

Empty PIX connection flags

rahil.patel
Level 1
Level 1

I have a huge amount of empty connection flags when sh conn detail | include x.x.x.x command is issued.

UDP outside: 64.246.x.x/53 inside: 172.16.x.x/1075 flags -

It's slowing down pix - any help appreciated.

3 Replies 3

nkhawaja
Cisco Employee
Cisco Employee

looks like lot of UDP connections just staying and not clearing out. What is the PIX code you are running. We had a bug in an earlier code.

Thanks

Nadeem

6.3(3)

I don't have enough information to be sure but I suspect this is CSCec45748 - New DNS conns reset the idle timer of previous DNS conns. My suggestion would be to open a TAC case and request the latest 6.3(3) interim release to see if this resolves the issue. Sorry for the problems.

Scott

Review Cisco Networking for a $25 gift card