Cisco Firewall :: ASA 5520 - Memory Shows 94% And CPU Shows 85%
Oct 15, 2012I Have asa 5520 with the code 8.0, the mem shows 94% and the CPU shows 85%
View 5 RepliesI Have asa 5520 with the code 8.0, the mem shows 94% and the CPU shows 85%
View 5 RepliesI have new ASA5520. After configured and upgrade with ASA 8.0(3) image its works for few times (few times means after restarted several times). But now the error comes as "Booting system, Please wait..."
View 9 Replies View Relatedgot a crahed 5520 this week and was showing <163>Nov 28 2011 11:34:45: %ASA-3-201013: Per-client connection limit exceeded -125/100 What the negative number tells ? i usually see same numbers like 100/100 with means the connection limited has reached.
View 3 Replies View RelatedI have upgraded my ASA 5520 til version 9.1 with ASDM version 7.1. After the upgrade ASDM shows a lot of IPSEC VPN-sessions in the GUI that i cannot see from the ASA. Right now the GUI says that I have 28 IPSEC-sessions while the output from "show vpn-sessiondb l2l" shows the expected 4 tunnels and the output from "show vpn-sessiopndb remote" shows 0 as expected. (I do not use IPSEC from remote users).
View 3 Replies View RelatedWe use ASDM 6.2 to manage our Cisco ASA 5520 running ASA Software Version 8.2 (1). I just noticed that some static routes have "A-" when you view the static routes with ASDM e.g. A-172.24.0.0 or A-192.168.176.0 (pls see attached print screen). I haven't seen this before and dont know what it means.
View 4 Replies View RelatedThe Cisco ASDM or the event manager show wrong source/destination for teardown tcp messages:In this example the communication is an ssh session;from 1.1.1.1 -> 2.2.2.2 ssh and the connection is reseted by 2.2.2.2
The message build outbound is correct, i.e. source is 1.1.1.1 (message id is 302013)
But the teardown is incorrect, i.e. source for the connection is 2.2.2.2 which is definitely not true (message id is 302014)
Also there seems to be a documentation bug in syslog messages for ASA 8.4 since the message for the teardown 302014 is gone!
I have a ASA 5505 as a default gateway to a network, whenever I tracert to outside it shows every hop ip address as the ip address I'm trying to get too, quick example
lets say I'm in a 192.168.0.0/25 network but I want to trace to 10.10.10.10
I have the below configuration for a cisco asa 5505. There is a ADSL router in front of the ASA which has a static IP. I set up a remote-access VPN (using the wizard), but I cannot connect to the ASA firewall as the attached VPN client log shows. My only concern is that there might be something missing, ie a static route that goes to the inside interface. [code]
View 7 Replies View RelatedOn our ASA 5510 we have two security contexts. After opening ASDM I can see and manage admin context, but cannot see second context. I can do changes to second context via CLI but as probably you know it's easier and quicker doing it via ASDM.
View 7 Replies View RelatedWhen we setup a connection between two hosts we receive the message "TCP checksum incorrect" , This is between a settop box on the outside and a server inside the firewall. This STB used to communicate with the server on port 443 which is NAT-en to port 12697.With a new settop box image which uses on the inside and outside port 12697 we receive this TCP checksum incorrect on the Firewall with wireshark.
Strange is that on the outside of the firewall we see an MSS of 1460 and on the inside it is 1380 (don't know if there is a relation with this and the issue we have)
I was just checking my router's firewall log and I noticed a couple of entries which appear somewhat suspicious, amongst all the 'normal' background radiation of (mainly) Russian and Chinese IPs: [code] The source IP for these 'attacks' is/was unused on my internal network.
My router is a Billion BiPAC 7800N running 1.06e firmware. There are a number of devices permanently connected to the internal network and a number which are connected at other times (e.g. desktops, laptops, mobile/cell phones, games consoles). Some are wired, some are wireless. Some have static IPs (none of which are listed in the above 'attacks'), some have dynamic IPs (assigned by DHCP by the router in a range not listed above). The WiFi is secured with a strong key on WPA/WPA2-PSK, AES (no WPS). Web Access Control for the router is disabled. Block WAN PING (and Block WAN (IPv6) PING) are both enabled.
I have a cable modem internet connection and my cable modem is connected to an ASA 5505. The inside interface of the ASA has an IP address of 192.168.2.2 and is connected to a Linksys router's internet port which has an IP address of 192.168.2.1. The Linksys router then has a local area network of 192.168.1.0 and all my clients are on that network. Everything is working fine except in my ASA logs all the traffic shows up as the router's external address which is 192.168.2.1. I would like to see the 192.168.1.x address of the clients in the ASA firewall. I've tried making some changes to the Linksys router but that hasn't resolved it. Is there any changes I can make on the ASA to get this to work?
View 6 Replies View RelatedI was looking at my CISCO ASA 5520 and i found something really strange
ciscoasa/VPN-context# sh mem detail
Used memory: 4259249568 bytes (793%)
------------- ----------------
Total memory: 536870912 bytes (100%)
but when I look at the system context this is what I see
ciscoasa# sh mem
Free memory: 170829000 bytes (32%)
Used memory: 366041912 bytes (68%)
------------- ----------------
Total memory: 536870912 bytes (100%)
As far as I know the ASA is working good.
Info of the device
Hardware: ASA5520, 512 MB RAM, CPU Pentium 4 Celeron 2000 MHz
Internal ATA Compact Flash, 256MB
BIOS Flash M50FW080 @ 0xffe00000, 1024KB
Are the ASA memory DIMMs created for specific models? Would a 1GB 5510 Memory stick work in a 5520?
View 1 Replies View RelatedI'm having a problem with the memory and also trying to create some rules on the CISCO ASA. The version that I got installed was the 8.2.5.33 on a CISCO 5520 with 512 RAM, the memory usage is on 99% used, 1% free and because of that when I'm trying to create a new rule the firewall brings me the next error..So what I did was a downgrade to the version 8.2 (4) 4 and the memory went down a little (82% used, 18% free) but I still got the error when I'm creating an access rule on the device. One thing and I'm not sure if this could affect on the performance are the number of access list and the object groups that are created.
I already open a case with CISCO TAC and they are checking if the problem is with the memory capacity or maybe a memory leak.Also the doubt that I got is with the memory that I got now available should I can create access rules or 82 is still to hig to create a rule or and object group?
I am currently getting a strange error when trying to use and crypto services on our ASA 5520 (8.0.3)Initially I observed that a connected VPN had dropped.Then when I attempted to use ASDM or SSH I was blocked.
In the end I opened telnet as a test and this was successful. Syslog also shows that traffic is passing as normal.The only obvious error I can see when observing various debug traces is this;
FW02# CTM: rsa session with no priority allocated @ 0xCF1FBBA0
CTM: Session 0xCF1FBBA0 uses a nlite (Nitrox Lite) as its hardware engine
CTM: rsa context allocated for session 0xCF1FBBA0
CTM: rsa session with no priority allocated @ 0xCE7A5EA8
[code]....
I have a Windows 7 Laptop which has got a red X on the connectivity icon even when connected, and this since april. Now, I don't have any idea of what caused it. I have Tunngle installed, but i don't think that's the problem. I also have updated my internet drivers, but without success. In the network boards i also have a weird second wireless connection which is called "Microsoft Virtual WiFi Miniport Adapter #6"
View 5 Replies View Relatedmy ps3 shows a message saying 8003121 what time round about is it gunner be fixed
View 1 Replies View RelatedI updated the firmware of my DIR601 to 1.02NA, it now only show NA under status for WAN, even though its connected (PPPoE). It worked with 1.01NA. I tried rebooting the router but no effect
View 1 Replies View RelatedMy HP Envy 14 has an Intel 6200AGN wireless card. Is it not good enough to achieve 300mbps on my D-Link DIR-655? The firmware is current on the router and the signal is 100% almost every where in my home. Even when I'm a few feet away from the router, the most I'm able to get is 130.Do I need to change a setting on the router or upgrade the wireless card?
View 2 Replies View RelatedRecently I purchased AIR-WLC2112-K9, but when I logged in I saw that system shows only 6 APs supported (I made print screen in addition). I'm running IOS v. 7.0.116.0 and I saw that there was some problems with earlier versions of IOS, but not this one.
View 5 Replies View Relatednslookup shows all ip addresses of a nic. is this expected? i think it should just show the default IP
View 3 Replies View RelatedI just downloaded TV show Downton Abbey from iTunes, and I know from somewhere that it has so called DRM protection, but I am trying to move it to Surface RT. What should I do to make it happen?
View 1 Replies View RelatedThe route is connected to that. Wirelessly, there are two laptops and sometimes an iPad and sometimes a Wii. Verizon DSL. I barely use my laptop during the week, but did notice some connection issues maybe Thursday and Friday nights. All day yesterday and today, as well. I will have a connection for maybe 5 minutes and then get errors loading webpages (and/or videos stopped). I will repair the connection and it will say everything is fine but it will not work, repair again or disconnect/reconnect(sometimes, several times) and then it works for 5 minutes or 20 minutes before the same thing happens. The other laptop is having the same problems. What I have tried so far: restarting the PC, both laptops, the router, and the modem. Resetting the modem. I have not moved any furniture or anything that would cause interference. I am worried because I have been trying to make more money and started at this site called Treasure Trooper which seemed okay-surveys and the like. There were a few pay-to-download things I downloaded but did not run. Avira found a trojan and I deleted it (not sure if the two are related, but I can not think of anything else I have downloaded or installed in the past month or so).The old PC is off; the Wii is on but probably only maintains a small connection. The iPad and other laptop are not mine, but if either is on, they probably have little to no activity right now since the user is away.
View 1 Replies View Relatedtrying to network 2 desktops running xp.
View 14 Replies View RelatedMy Acer One Aspire wireless connection shows connected but I cant get any Firefox browser to work.
I have a D-link DIR-825 router and it has worked every time except today. I havent used my Netbook very much at home though, maybe a few times a year as I usually take it with me on trips.
I attempted to narrow down the problem. I called D-link as my router was still under warranty. They advised clearing all my old connections and rebooting but I got the same problem. I told them my Sony PS3 works, so they suggested I contact Acer as they think it is not the router. My direct hardwire connection also works.
I then took my Netbook to Best Buy and it worked there. The guy said they can pay a visit to my house as it is probably interference of some sort. This will cost $100. Why would my PS3 work if it was interference? Maybe it�s the proximity of my Netbook to something, but I tried it near my PS3 and it still had the same problem.
Id rather try to solve the problem myself first. I havent changed anything except a modem and Windows 7 updates.
We have a fairly new Asus laptop and for some reason we can't get the wireless to turn on any more.It has a Function button method to turn it on and off and any time you use this button it shows the WLAN simple with a red line through it. No matter how many times you press it it does the same thing.I've tried uninstalling the drivers and reinstalling, ran a security update for the drivers. When I go into the wireless connection and try and turn it on it shows that it has a signal (not sure what to) but a red X next to the connection in windows 7. I can't actually see any wireless signals so I'm kind of at a loss.
View 5 Replies View RelatedI have a laptop that I usually use physically connected to my router, but sometimes I use it wirelessly when I want to lie down in bed.After using it wirelessly yesterday for about an hour,I brought it back to where I normally connect it with an ethernet cable but not I can't access the internet even with the ethernet cable plugged in! And wireless doesn't work either,I have "Limited or no Connectivity" for my LAN Connection and Wireless. I cannot afford a new computer (and I also doubt I need a new one).
View 6 Replies View RelatedIn my LAN one computer shows limited connectivity
View 1 Replies View RelatedMy church has a AT&T wired modem and a Netgear Wireless router. Pastors office is on other side of church and he is losing signal occassionally. His network is showing two SSID addressed cgcg cgcg2
View 4 Replies View RelatedI have a wireless router. The first time I connected my computer to it, it worked. I went in to change the network password, and after that, it stopped working. Every single other device I have will connect, including other laptops, but this one won't. In the network and sharing center it shows that my network is available, but it will not connect. I have tried everything I can think of. I have looked all over the internet, nd still can't figure it out!!!! My computer's wifi IS on so its not that. The only thing that the trouble shooter tells me to do is unplug the router and restart it and that has not worked after several tries. Also is there a way to reset the computers recognition of networks? Im wondering if that would work if I could completely restart the process again, but I dont know how to get to that. I have a dell inspiron with windows 7.
View 1 Replies View Relatedas gone all of a sudden. Checked cables, restarted both router and PC, and even rang provider with questions.. Router seems to be working fine as laptop and iphone both got internet access with the same router. The Local area connection icon showed limited on no connectivity snd so the provider renewed the IP manually and local area connection says its connected now but there is no internet access.. They suggest it could be something to do with firewall or something else blocking it but as far as I am concerned I did not make any changes to the pc the night before when it was actually proper connected.. The desktop pc is running windows XP and I tried downloading ethernet controller driver from the web and upgrading it but it did not improve the situation.
View 17 Replies View RelatedAfter Irene, we kept power and cable, but our internet went down, or so we thoughtWhen we plug the Ethernet cable from the modem into the computer, internet works fine (I can post this, after all), but when we plug the cable from the modem into our Dell TrueMobile 2300 router, our network appears as "Local Only." The phone cable thing is plugged from the wall into the modem, and the ethernet cable goes from the modem to the router, as it has been for years.
View 7 Replies View Related