05-24-2004 05:14 AM - edited 02-20-2020 11:24 PM
Hello ,
When I monitor the traffic on inside interface of my PIX (PIX 515 ver 6.3(3) ) ,some of the PC's IP addresses from inside Network trying to reach internet which supposed not be a case (no static for these IP addresese ). This is keep on banging on inside Interface with port 135 . Below is the error. Any suggestions pls ...
305005: No translation group found for tcp src inside:xx.xx.xx.xx/1558 dst outside:xx.xx.xx.xx/135
Thanks
Raju
05-24-2004 05:30 AM
Hi Raju
Have you virus-checked the devices trying to reach the internet? This could possibly be an indication that they may be infected by the Nachi worm or similar, which tries to propogate itself via tcp 135.
I'm not saying it is, but it's worth a look anyway, just incase....
Hope that helps
Kev
05-24-2004 06:50 AM
Thanks Kev.
Is there any way to prevent this by applying access list on firewall or on our Internal Network 6509 Vlan Interfaces by applying access list's ?. I would prefer to apply access list on all Vlan interfaces on 6509 sothat this virus traffic using TCP port 135 will not cross across Vlan's .Your guidance to create an access list & apply at interface level would be highly appreciated .
Regards ,
Raju
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide