cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
423
Views
0
Helpful
1
Replies

Intermittently random connection problems on PIX515

jsayer
Level 1
Level 1

I have a customer that is experiencing random connectivity problems through a PIX firewall running 6.1(1) code. Config is pretty standard conduits and statics. Every few months, one of their servers becomes unreachable. The problem can be seen by a ping test - first workstation that tries to ping the server's public address gets 50% ping loss; any second workstation trying to ping the server gets 100% ping loss. We've narrowed the problem to the firewall, but can't find anything to help us further.

If we change the public address and clear xlate, the server becomes reachable again, but that requires DNS changes, etc. and is not a good long-term answer.

Has anyone seen this issue before or can offer any suggestions?

Thanks,

John Sayer

1 Reply 1

bdube
Level 2
Level 2

Yes, i saw this problem earlier. It's a frequent one. Unfortunately, it's not a PIX problem, it was a config problem. PIX is building their translation based on static & Nat command. Sometimes, there are some conflictual config between those command.

Look carefully those command to be sure you don't have commands who overlayed the same IP addresses or subnet...

Hope will help you.

Benoît