[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 198
  • Last Modified:

Cisco Pix - dropping web connection

I setup a Cisco PIX 501 to pass web traffic to an internal machine. Standard access-list for www, ftp, and ftp-data.

I have about 12 websites that I have pointed to the public IP address. I loose my connection to that IP all the time through the web. It will drop for a minute and come back up for another couple minutes and then drop again.

What I have done thus far:

Ran a continuous ping against the firewall. No drops.
Tested the webserver internally any time I noticed an outage and it came up everytime.

I am lost on this one. Are there commands that I can run to test the PIX to see if it is dropping the connection? Could I be getting DOS'd?

Help.



0
greenskwerl
Asked:
greenskwerl
  • 6
  • 3
1 Solution
 
lrmooreCommented:
>I loose my connection to that IP all the time through the web.
i'm not sure I follow you on that. How do you lose connection? During a FTP session? During a WWW session?
Http is stateless once all the content downloads to your browser anway...

You can use the monitoring portion of the GUI to look at the IDS graphs (assuming you have it -IDS- enabled on the interface)
0
 
lrmooreCommented:
>I have about 12 websites that I have pointed to the public IP address.

The 501 is simply not designed for this much traffic, especially if you are using only one public IP address for all 12 sites. How much traffic to these sites get?

0
 
greenskwerlAuthor Commented:
it is minimal at this point. How can I check?
0
When ransomware hits your clients, what do you do?

MSPs: Endpoint security isn’t enough to prevent ransomware.
As the impact and severity of crypto ransomware attacks has grown, Webroot fought back, not just by building a next-gen endpoint solution capable of preventing ransomware attacks but also by being a thought leader.

 
lrmooreCommented:
If you use the Web GUI, just monitor the number of inbound connections
Monitoring, Connection graphs, perfmon, connections perfmon, web perfmon, Graph it!
0
 
greenskwerlAuthor Commented:
OK,

O monitored it for about 10 minutes. During this time, I lost connection twice. During the entire time, my peak bandwidth on the outside interface didnt go past 256KB. The CPU averaged 1% usage, and memory stayed at 11MB the entire time.
0
 
lrmooreCommented:
What's your status now? Any difference?

When you say that you lost connection, how are you capturing that? What kind of connection is it that you lose?
0
 
greenskwerlAuthor Commented:
Yes,

I narrowed it down to the webserver. It was working internally, but it was having issues serving stuff externally. Rebuilt it and it was fine.
0
 
lrmooreCommented:
Glad you found the answer! Sorry I wasn't much help for you....
0
 
lrmooreCommented:
How's it going? Can you close this question?

http://www.experts-exchange.com/help.jsp#hs5

Thanks for attending to this long-forgotten question.

<-8}
0
 
PAQ_ManCommented:
Question Closed, 500 points refunded.
PAQ_Man
Community Support Moderator
0

Featured Post

Exciting career futures for women in IT

Education has the power to transform lives and open the door to new career opportunities. By earning an IT degree from WGU, you can become a highly skilled IT professional. Get the credentials and certifications you need to become a leader in this rewarding field.  

  • 6
  • 3
Tackle projects and never again get stuck behind a technical roadblock.
Join Now