cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
624
Views
0
Helpful
1
Replies

Pix syslog message

rj.remien
Level 1
Level 1

106012: Deny IP from 192.168.1.1 to x.x.x.x, IP options: "0x14". I receive this syslog message about 6000 times per hour from our Pix. This is from SAP frontend clients logging on and sending packets to SAP R/3 servers. Does anyone have any idea or do I need to talk to SAP about their code?

Thanks,

RJ

1 Reply 1

gfullage
Cisco Employee
Cisco Employee

The PIX drops packets with any IP options set since they're seen as a security risk. There's no way around this. You need to talk to the SAP people to see why they're setting options in the packets.

Review Cisco Networking for a $25 gift card