cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
610
Views
0
Helpful
2
Replies

High Currennt Connection

sahrizal123
Level 1
Level 1

Hi,

I have cisco asa firewall.

If my current connection reach 250k my network will go down.

Any method to avoid this issue from happen?

How to find the root cause?

 

 

2 Replies 2

In my case happens during attacks.

I use cisco ASDM to see connections or show connections using CLI.

I use these tools in order to find repeated entries.

Sometimes I foud a lot of connections from a single IP.

In others cases I found a lot of connections from many IPs destinated to the same port.

In this case I use ACL to block unwanted traffic.

 

Enable also IP audit feature in order to block some well know attacks.

 

Regards.

Sanjay Shaw
Level 1
Level 1
Yes , you will experience a drop. Scenario1 : For Data you may not experience the drop Scenario2 : For voice there will be a intermittent drop. Scenario3 : Every time you have to clear the connection when it reaches the maximum connection Solution:- 1. To limit the connection on the firewall using the ACL and remove unnecessary traffic hitting the firewall. 2. Upgrade the Firewall for more connection support 3. Configure policy to shorter the timeout for the embryonic connection.
Review Cisco Networking for a $25 gift card