cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
784
Views
0
Helpful
7
Replies

Pix 515 and AS/400 !!!! Urgent !!!!!!

max.reyes.o
Level 1
Level 1

Urgent !!!!!!

I have problems with de Remote Session in a AS400 an PIX 515 my problem is when the Remote Session start pass ok the Session is established an the user can start to work but when the user wait two minutes the session is gone. The AS400 is in the inside and I utilize a static to public the server in the outside an use a ACL to permit only the user with the protocol TCP the timers of the PIX 515 is in the default values

The version of de IOS is 5.3(2)

Thanks for your help

7 Replies 7

nkhawaja
Cisco Employee
Cisco Employee

can you tell us what are the timeout parameters

But de timeouts in the pix for example :

timeout xlate 3:00:00

timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h323 0:05:00 si

p 0:30:00 sip_media 0:02:00

timeout uauth 0:05:00 absolute

But i have the problem when the user wait 2 min the conecction gone, i don't know why because the timeout conn is in 1 hour if you know what happen tell me something

thanks

you are right, timeout conn should be the one that may cause this issue. either try to increase all other timeouts for examp;e udp sip_media, etc

or try to upgrade.

thanks

yes thanks but before to make the question i change the values of udp for 2 hours and sip_media because these values exactly match 2 minutes but the problem still continue.

Thanks

I have came across a similiar issue and the fix was code upgrade. you are running a very old code. so if you can upgrade , do so. otherwise collect more information like syslog messages.

thanks

Nadeem

Thanks I already collect more information with a Syslog server but in the moment to the user make connection with the server as/400 apppear the connection but no appear nothing more, with the command sh conn I see when the connection made and timers start when the user wait a time and start again the aplication is lost but the sh conn command appear the connection It uses a Client Access IBM nobody know somethig especial with these Client ??????

This may be related to a timeout setting on your as400...

Review the timeout sysvals on your as400, they may be set too low for your needs. You can change them through the QSECOFR user.

Clent access uses the telnet port, (or secure telnet port). I have experienced a similar problem and needed to change the following OS400 params:

QDSCJOBITV - disconnect job interval

QINACTITV - Inactive Job Timeout

Hope this helps,

Mike

Review Cisco Networking for a $25 gift card