Dear All,

I'm having problems with out of state packets.

The scope is as follows,

The traffic from the client side travels across one Cisco 1721 performing
PAT (dynamic NAT, according Check Point) then the traffic cross the
firewall to our Proxy-server (http_8080). The web traffic seems to work
fine, but if the client tries to download a medium-to-big sized file the
download starts OK, but suddenly stops. In the logs appears the permitted
traffic and also when the session is stopped an out-of-state messages with
flags th_4 (RST) originated on the Cisco (Client) or th_18 (PSH_ACK)  If
the traffic doesn't go to the proxy the performance is the same, so I
discard a proxy problem.

The workaround should be permit out-of-state packets, but anyone knows the
reason to these packets and the suddenly drop of the session?

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to