Advertisement

10.07.2008 at 12:41AM PDT, ID: 23792904
[x]
Attachment Details
[x]
The Solution Rating System

With so many solutions, how can you tell which solutions are most likely to help you and which ones are not? To provide you with a tool to use, we rate our solutions based on various elements that most accurately determine if a solution is a quality solution. To explain what factors affect the solution rating, here are the elements we take into consideration when formulating our solution rating.

  • The Grade of the Solution
  • The Zone Rank of the Expert Providing the Solution
  • The Number of Author and Expert Comments
  • The Number of Experts Contributing
  • The Feedback of the Community

Your Input Matters
Because of the way the system is set up, the most important variable in this equation is you. As a member of Experts Exchange, you are able to cast your vote on the quality of the solutions in regard to how complete, accurate, helpful and easy to understand each solution is. When you provide your feedback, each rating is adjusted accordingly. So, if you see a solution that has a poor rating that you think is a good solution, let us know by rating it. As you do, the rating will be adjusted and will become more accurate for other members of our site.

If you have any suggestions that you would like to make for our rating system, please ask a question in the Suggestions Zone of Community Support.

Thank you!

7.7

PIX 515 Always shows 'Land attack' alarm.

Asked by poletay in Network Software Firewalls, Networking Hardware Firewalls, Cisco PIX Firewall

Tags:

Hi! After natting (pat) the inside network to a single outside ip-address, I lost the ssh connection to the pix-device. After logging in via the console interface I see the continuing syslog alarms about the land attack.

Oct 07 2008 11:14:33: %PIX-2-106017: Deny IP due to Land Attack from x.x.118.12 to x.x.118.12

So, I suppose there aren't any hackers around. Can anyone explain what the hell happening?
Now we have lags on the inside network and no access to pix via ssh, maybe some more problems that I still haven't discovered.

I am including the important part of the config below.

Must say that we use Cisco 3750 as a lan switch (with all the intervlan routing, the default-gateway for all the hosts is 10.x.1.1 of the PIX). After the OUTSIDE interface we got the kind of Cisco 7600 where default gateway is known via bgp and network address used for natting is known via the static route (255.255.255.255).

I have searched the Net about the problem, but the answers to the equal issue are, in most cases, lame.Start Free Trial
1:
2:
3:
4:
5:
6:
7:
8:
9:
10:
11:
12:
13:
14:
15:
16:
17:
18:
19:
20:
21:
22:
23:
24:
There goes the partial configuration.
!--------
interface Ethernet0.173
 vlan 666
 nameif OUTSIDE
 security-level 10
 ip address x.x.x.4 255.255.255.240 
 ospf message-digest-key 1 md5 <removed>
 ospf authentication message-digest
!
 
interface Ethernet1.110
 vlan 222
 nameif LAN
 security-level 50
 ip address 10.x.1.1 255.255.255.248 standby 10.x.x.2 
!
 
# the only default gateway
route OUTSIDE 0.0.0.0 0.0.0.0 x.x.x.1 1
 
access-list zzz extended permit ip 10.x.2.0 255.255.255.0 any 
global (OUTSIDE) 5 195.x.x.12
nat (LAN) 5 access-list zzz
 
Loading Advertisement...
 
[+][-]10.07.2008 at 12:59AM PDT, ID: 22657267

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10.07.2008 at 07:23AM PDT, ID: 22659653

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10.07.2008 at 06:34PM PDT, ID: 22665344

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]10.07.2008 at 07:17PM PDT, ID: 22665524

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]10.07.2008 at 07:23PM PDT, ID: 22665555

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10.07.2008 at 09:40PM PDT, ID: 22666203

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]10.07.2008 at 09:57PM PDT, ID: 22666245

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10.07.2008 at 09:58PM PDT, ID: 22666253

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10.08.2008 at 04:12AM PDT, ID: 22667733

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10.09.2008 at 09:06AM PDT, ID: 22679784

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10.09.2008 at 07:16PM PDT, ID: 22683964

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 7-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]10.09.2008 at 08:02PM PDT, ID: 22684130

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10.10.2008 at 04:43PM PDT, ID: 22691656

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10.10.2008 at 04:45PM PDT, ID: 22691664

View this solution now by starting your 7-day free trial. Setting up your free trial is quick, easy, and secure. We will return you to this solution, unlocked, when you're done.

 

About this solution

Zones: Network Software Firewalls, Networking Hardware Firewalls, Cisco PIX Firewall
Tags: cisco pix land attack
Sign Up Now!
Solution Provided By: harbor235
Participating Experts: 3
Solution Grade: B
 
 
 
Loading Advertisement...
20080716-EE-VQP-32 - Hierarchy / EE_QW_EXPERT_20070906