cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
521
Views
0
Helpful
2
Replies

Out-of-order and DUPs outside of FWSM

dustin.black
Level 1
Level 1

I have a Java application over SSL that is not performing well outside of our FWSM, and in fact hanging completely in many situations. When I run the application inside the FWSM with Wireshark scanning the traffic, everything looks hunky-dory. Running the same app and scan outside the FWSM shows a very large number of TCP Out-of-order, Previous segment lost, and Dup ACK messages.

Any ideas?

2 Replies 2

amritpatek
Level 6
Level 6

This usually happens when the FWSM is working in multi context mode and the incoming and outgoing interfaces for the traffic belong to different context. This happens because the FWSM has to internally loopback the traffic and thus this impacts the performance of the device.

One FWSM context in this configuration, so that can't be it...

Review Cisco Networking products for a $25 gift card