Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi Folks,Can anyone assist with a fix for the following issue on traffic through the ACE module? TCP sessions are being reset after 60 minutes of inactivity (default behaviour I understand). I need to extend this to 7500 seconds. Our ACE sits betwee...
Hi Folks,I have a problem whereby I need to allow my real servers to ping the Server-Side ACE interface. Is this explicitly denied? I have the VIP up and running OK but my server can't ping the Server-Side interface (which is it's gateway).Thanks i...
I think I posted this onto the wrong Forum. Anyone able to advise here?SteveK.Posted by: stevek1 - Network Administrator, Dept Natural Resources and Mines Apr 18, 2008, 12:04am PSTHi Folks, I need to provide internal devices with active-active acces...
Hi Folks,I need to provide internal devices with active-active access to our clustered firewall which sits across 2 data centres.I need to allow internal hosts to reach external/unknown networks via a default route.We have ACE modules in our internal...
Hi Folks,We recently ordered WS-X6816-GBIC modules for our new 6513s, however we have been advised that they have reached EOL and that we can maintain our existing topology by purchasing 6516s instead. Apparantly we can still purchase the same DFCs ...
Dario,I have also used this method to indicate the availability of our internal firewall interface for intelligent advertisement of the default route out of the corporate network (ie...using RHI). The routing for this is quite stable and working wel...
Many thanks Syed and Gilles,I see how to do that now, I'm new to ACE modules and wasn't used to the concept of global application of a service policy.Your valuable contributions are much appreciated. Keep up the good work.SteveK.
Thanks for your response Syed,Just to clarify...1 - for GLOBAL-TCP you typed 600. Should that read 7500?2 - When you say "apply service-policy TIMEOUTS globally", are you suggesting I apply these as input service-policies to each vlan interface? I ...
Hey Joe,I applied this patch as directed back in July 2007 but we still get these errors from time to time when we replace a device.For example, on the weekend we replaced 2 old 6513s with new 6513s - basically the same configs, just an 3 year cycle ...