pix 5xx ssh server unexpectedly closed network connection from outside until touched from inside with PDM
Posted on 2006-04-08
Pix version 501 OS 6.5(3) PDM 3.0(4)
First off, I am not a pix GURU, but knowledgable. Have have some pixii logging in via SSH on the outside interface. We also have inside interface access to the pixii. SSH outside interface is locked down to only specific from IPs.
On some of the pix (all are very close in versions, etc) (like 15%), SSH will not work on the outside interface utill the PDM is touched (just hit the pix with https) on the inside interface. PUTTY and other SSH tools will not work on the outside interface until this is done. The error message from PUTTY is "Server unexpcetedly clodes network connection". The outside SSH then works for some time.
So far I have not been able to trace down a pattern to this failure. As soon as the outside ssh failing pix is hit with an inside PDM request, it starts working.
Is there some sort of lockout that is happening here? If someone is attempting to break into the PIX using ssh, will ssh turn off on the outside interface?
Thanks in advance