FWSM on 6500 TCP connection issues after crash on primary

I'm experiencing a rather strange issue that has me stumped.
We are running an FWSM on a 6509 with a SUP720. Firmware 3.2(18), in MultiContext Routed Mode, with shared MSFC.
Everything runs fine on this baby most of them time, however occasionally without warning and with no specific pattern the Primary node will fail (as in completely stop responding) and the secondary will takover as active.
Two get the primary up agian, I reset the hw-module and then no failover active on the secondary to return the primary as active. However, after this event, I start to experience strange issues with connectivity. Certain TCP src dst combinations will just not work. Take the following example:
A TCP/1433 connection from Inside IP: 10.3.3.196 to outside IP: 10.252.20.63, logs look like this:
2012-08-07 13:43:13:0868          + 13435          2012-08-07 13:43:09     Local5.Info     192.168.2.7     Aug 07 2012 11:31:19: %FWSM-6-302013: Built outbound TCP connection 145674175523995444 for servers:10.3.3.196/64112 (10.3.3.196/64112) to outside:10.252.20.63/1433 (10.252.20.63/1433)
2012-08-07 13:43:13:0868          + 13436          2012-08-07 13:43:09     Local5.Info     192.168.2.7     Aug 07 2012 11:31:19: %FWSM-6-302014: Teardown TCP connection 145674175523995444 for servers:10.3.3.196/64112 to outside:10.252.20.63/1433 duration 0:00:00 bytes 128 TCP Reset-O
2012-08-07 13:43:13:0868          + 13526          2012-08-07 13:43:09     Local5.Info     192.168.2.7     Aug 07 2012 11:31:19: %FWSM-6-106028: Deny TCP (Connection marked for Deletion) from 10.3.3.196/64112 to 10.252.20.63/1433 flags SYN  on interface servers
2012-08-07 13:43:13:0875          + 13670          2012-08-07 13:43:10     Local5.Info     192.168.2.7     Aug 07 2012 11:31:20: %FWSM-6-302013: Built outbound TCP connection 145674175523995445 for servers:10.3.3.196/64112 (10.3.3.196/64112) to outside:10.252.20.63/1433 (10.252.20.63/1433)
2012-08-07 13:43:13:0875          + 13671          2012-08-07 13:43:10     Local5.Info     192.168.2.7     Aug 07 2012 11:31:20: %FWSM-6-302014: Teardown TCP connection 145674175523995445 for servers:10.3.3.196/64112 to outside:10.252.20.63/1433 duration 0:00:00 bytes 124 TCP Reset-O
However I create a specific ACL on the upstream routers interface, to see if I get any matches and the traffic is not even leaving the 6509. I can however ping the remote device without any issues. And I can confirm that the xlate has been built.
This connection was working fine prior to the crash, and the ACL rules are correct and do allow the connection on both the local FWSM and the remote firewall.
Currently my only resolution is to  reboot the FWSM on both nodes at the same time so that we have a complete fresh start. This is not ideal!
Anyone know of issues like this? Any suggestions for workarounds or perhaps ways to troubleshoot the reason for the crash?
Thanks!
Craig

Hi Bro
Perhaps, this could be a hardware related issue concerning your Primary FWSM. However, before we can conclude that, could you upgrade your FWSM to the latest image v4.1.7?

Similar Messages

  • Is there a fix for the wifi connectivity issue after ios6 update?

    Is there a fix for the wifi connectivity issue after ios6 update?
    Cannot connect to any wifi since update to 6.0.1
    How do I get update to 6.0.2?
    Will that even help?

    Some things to try first:
    1. Turn Off your iPad. Then turn Off (disconnect power cord for 30 seconds or longer) the wireless router & then back On. Now boot your iPad. Hopefully it will see the WiFi.
    2. Go to Settings>Wi-Fi and turn Off. Then while at Settings>Wi-Fi, turn back On and chose a Network.
    3. Change the channel on your wireless router (Auto or Channel 6 is best). Instructions at http://macintoshhowto.com/advanced/how-to-get-a-good-range-on-your-wireless-netw ork.html
    4. Go into your router security settings and change from WEP to WPA with AES.
    5.  Renew IP Address: (especially if you are droping internet connection)
        •    Launch Settings app
        •    Tap on Wi-Fi
        •    Tap on the blue arrow of the Wi-Fi network that you connect to from the list
        •    In the window that opens, tap on the Renew Lease button
    ~~~~~~~~~~~~~~~~~~~~~~~~~
    iOS 6 Wifi Problems/Fixes
    How To: Workaround iPad Wi-Fi Issues
    http://www.theipadfan.com/workaround-ipad-wifi-issues/
    Another Fix For iOS 6 WiFi Problems
    http://tabletcrunch.com/2012/10/27/fix-ios-6-wifi-problems-ssid/
    Wifi Doesn't Connect After Waking From Sleep - Sometimes increasing screen brightness prevents the failure to reconnect after waking from sleep. According to Apple, “If brightness is at lowest level, increase it by moving the slider to the right and set auto brightness to off.”
    Fix For iOS 6 WiFi Problems?
    http://tabletcrunch.com/2012/09/27/fix-ios-6-wifi-problems/
    Did iOS 6 Screw Your Wi-Fi? Here’s How to Fix It
    http://gizmodo.com/5944761/does-ios-6-have-a-wi+fi-bug
    How To Fix Wi-Fi Connectivity Issue After Upgrading To iOS 6
    http://www.iphonehacks.com/2012/09/fix-wi-fi-connectivity-issue-after-upgrading- to-ios-6.html
    iOS 6 iPad 3 wi-fi "connection fix" for netgear router
    http://www.youtube.com/watch?v=XsWS4ha-dn0
    Apple's iOS 6 Wi-Fi problems
    http://www.zdnet.com/apples-ios-6-wi-fi-problems-linger-on-7000004799/
    ~~~~~~~~~~~~~~~~~~~~~~~
    How to Fix a Poor Wi-Fi Signal on Your iPad
    http://ipad.about.com/od/iPad_Troubleshooting/a/How-To-Fix-A-Poor-Wi-Fi-Signal-O n-Your-iPad.htm
    iOS Troubleshooting Wi-Fi networks and connections  http://support.apple.com/kb/TS1398
    iPad: Issues connecting to Wi-Fi networks  http://support.apple.com/kb/ts3304
    WiFi Connecting/Troubleshooting http://www.apple.com/support/ipad/wifi/
    How to Fix: My iPad Won't Connect to WiFi
    http://ipad.about.com/od/iPad_Troubleshooting/ss/How-To-Fix-My-Ipad-Wont-Connect -To-Wi-Fi.htm
    iOS: Connecting to the Internet http://support.apple.com/kb/HT1695
    iOS: Recommended settings for Wi-Fi routers and access points  http://support.apple.com/kb/HT4199
    How to Quickly Fix iPad 3 Wi-Fi Reception Problems
    http://osxdaily.com/2012/03/21/fix-new-ipad-3-wi-fi-reception-problems/
    iPad Wi-Fi Problems: Comprehensive List of Fixes
    http://appletoolbox.com/2010/04/ipad-wi-fi-problems-comprehensive-list-of-fixes/
    Connect iPad to Wi-Fi (with troubleshooting info)
    http://thehowto.wikidot.com/wifi-connect-ipad
    Fix iPad Wifi Connection and Signal Issues  http://www.youtube.com/watch?v=uwWtIG5jUxE
    Fix Slow WiFi Issue https://discussions.apple.com/thread/2398063?start=60&tstart=0
    How To Fix iPhone, iPad, iPod Touch Wi-Fi Connectivity Issue http://tinyurl.com/7nvxbmz
    Unable to Connect After iOS Update - saw this solution on another post.
    https://discussions.apple.com/thread/4010130
    Note - When troubleshooting wifi connection problems, don't hold your iPad by hand. There have been a few reports that holding the iPad by hand, seems to attenuate the wifi signal.
    ~~~~~~~~~~~~~~~
    If any of the above solutions work, please post back what solved your problem. It will help others with the same problem.
     Cheers, Tom

  • Is there any fix for the bluetooth connectivity issue after most recent OS update?

    Seems to be a common problem particularly with bluetooth headseat connectivity. Any ideas?

    There is no bluetooth connectivity issue after the recent OS update. There may be a problem with your phone, which may or may not be related to the update. A "common problem" looks like this in the forums:
    I haven't seen any threads on BlueTooth with over 1.4 million views and over 12,000 replies, or even any vaguely close. For any problem that someone has there is bound to be someone else amoung 150 million users who have it. That doesn't make it a "common problem."
    If you tell us what the problem is specifically and what you have done so far to try to resolve it someone can probably help you.

  • Bluetooth connection issues after update

    Is anyone experiencing bluetooth connection issues after upgrading to iOS 8.1.3?  I upgraded to iOS 8.1.3 and now it won't connect to my car bluetooth and my bluetooth speaker will sound like it has static from time to time.

    Hi, joshzik.  
    Thank you for visiting Apple Support Communities.
    I understand that you are experiencing issues with various Bluetooth devices and your iPhone.  Sometimes pairing the devices again can resolve the issue.  However, here are a couple articles that have some helpful troubleshooting steps regarding Bluetooth connectivity and an iOS device.
    Get help using your iPhone, iPad, or iPod touch with your car stereo
    http://support.apple.com/en-us/HT203412
    iOS: Troubleshooting Bluetooth connections
    http://support.apple.com/kb/TS4562
    -Jason H.

  • Logic Remote connectivity issues after updating to iOS 8 (solved!)

    Has anyone else has been experiencing connectivity issues with Logic Remote after updating to iOS 8?
    After updating to iOS 8 I could no longer connect so I sent a feedback report to Apple and got a response that cleared up my problem immediately:
    Navigate to the following directory on your desktop system running GarageBand:
    ~/Library/Containers/com.apple.garageband10/Data/Library/Preferences/
    You can quickly navigate there using the “Go” menu in Finder -> Go To Folder (shift-command-G), then copy this path:
    ~/Library/Containers/com.apple.garageband10/Data/Library/Preferences/
    In the Preferences folder should be a file named "com.apple.garageband10.cs”.
    Make sure GarageBand is not running and delete the  "com.apple.garageband10.cs” file.
    Relaunch GarageBand and see if you should now be able to connect.
    The same can be done for Logic by navigating to:
    ~/Library/Preferences/
    And deleting "com.apple.logic.pro.cs" and restarting Logic.
    Note that doing this will fix Logic Remote connectivity issues (and possibly other problems with latency and mixer functionality)  but will also delete any other Controller settings that you've configured with Logic, if you happen to be using another controller of some sort.

    Thanks very much!  This solved my connection problem.

  • Bluetooth connectivity issues after updating to OS X 10.10.3

    I have been experiencing issues with bluetooth mouse connectivity (apple magic mouse) after updating OS X to 10.10.3. My Macbook Retina 15" pro (early 2013) keeps losing connection with the mouse. Switching the mouse on/off helps in re- establishing connection between the mouse and the laptop for a few seconds. I was under the impression that this update of Yosemite was intended to rectify bluetooth and wifi connectivity issues. Any suggestions/advice welcome.

    Back up all data.
    Triple-click anywhere in the line below on this page to select it:
    /Library/Preferences/com.apple.Bluetooth.plist
    Right-click or control-click the line and select
              Services ▹ Reveal
    from the contextual menu.* A folder should open with an item selected. Move the selected item to the Trash. You may be prompted for your administrator login password. Restart.
    *If you don't see the contextual menu item, copy the selected text to the Clipboard by pressing the key combinationcommand-C. In the Finder, select
              Go ▹ Go to Folder...
    from the menu bar and paste into the box that opens by pressing command-V. You won't see what you pasted because a line break is included. Press return.

  • Please help in db connectivity issue after servers moves to diff location

    Our database is 10.2.0.3 with 2 nodes in RAC. Our database servers are MS 2003 R2. Recently we moved our database to different servers in different location. Say we have location A, B and C.
    A - the location for database users include me.
    B - the old db location
    C - the new db location.
    Location B and C are in the same city but different places. A and B are located in different cities. I was told that there is no direct connection between A and C and the connection between A and C has to go through B. Since the move we have experienced database connectivity issue between A and C. Some users got “ORA-03113: end-of-file on communication channel”. For me I have constantly got “ORA-03135: connection lost contact” from Sqlplus or Toad if I leave my session idle for one hour or longer no matter if it uses dedicated connection or shared connection. We also asked our network admin to make sure there is no firewall in between and we also add KeepAliveTime and KeepAliveInterval to the new db server registry. We also have a TAR with Oracle.
    Thanks a lot for your help in advance.
    Shirley

    It feels like a firewall issue, yes. But this is realistically just a hunch-- your network admins ought to have a lot more tools at their disposal to diagnose the problem. It's quite possible that it's not a firewall but a flaky router or excessive packet loss over a WAN or any number of potential network related hiccups. If I had to place a bet, I'd be wagering on a firewall, but I certainly wouldn't be staking my life on it. I'd definitely be leaning on the network folks to diagnose the issue(s)-- there may well be multiple problems, i.e. a firewall that times out idle connections after an hour and a flaky router that drops connections for some subset of users between A and B.
    Justin

  • Connectivity issues after 8.1.1 update please help! :(

    Hi all.  Here's the situation.
    I got my Iphone 6 on release day.
    Not had one single problem with it.
    On Monday however I do a general software update to IOS 8.1.1
    Now ever since then I cannot keep a steady connection to both WIFI AND my roaming internet.
    BOTH show as connected however load EXTREMELY slowly or not at all.  No matter where I am.
    I have done a soft reset.
    Switching on and off.
    And resetting Network Settings.
    Done all these 3 or 4 times and they are not helping.
    It is too coincidental to not be because of the software update.
    Can someone please help me?

    Still no help for you? I updated my iPhone 6 to 8.1.1 this past weekend and now have huge connectivity issues too. My home WiFi signal is 5 bars but runs very slow for example Facebook, the phone cannot update messages or photos. Try to connect for online banking, forget it. I have turned off WIFI and try using my Verizon signal which is 3 out if 5 bars, same problem. Don't understand why Apple cannot fix this apparent bug. Will call Apple Care in a few minutes and let you know what they say.

  • Many TCP connections used after 9i install

    I've installed 9i personel on XP Pro as a learning aid in advance of installing it to a real server. I notice (using "netstat") that there are now many TCP connections from my machine to localhost (also my machine) on ports from 2192 through 2267. All seem to be in a time_wait state. Are these normal and necessary?
    Thanks!

    I've installed 9i personel on XP Pro as a learning aid in advance of installing it to a real server. I notice (using "netstat") that there are now many TCP connections from my machine to localhost (also my machine) on ports from 2192 through 2267. All seem to be in a time_wait state. Are these normal and necessary?
    Thanks!

  • TCP Connection Issues with OPC Server and GE Versamax

    Hi there,
    I have an installation of Lookout 6.0 coupled with the OPC Inductrial Automation servers.  In my application, we are running two instances of the GE Versamaz Ethernet driver to communicate with two remote (over the internet) GE Fanuc Versamax PLCS.
    Every few days, the two PLCs lose connectivity.  It does not appear to be a LAN connectivity issue as I can still log into the PLCs using the GE software.  To fix the issue, the Lookout software must be restarted.
    Has this been seen by anybody else?  This poses a significant problem as lookout is used to monitor the PLCS at sewage stations - each time the connections are lost we have to deploy technicians to the sites to ensure all is working.
    -andrew

    Hello Andrew,
                           When the connection is terminated are you getting any errors or alarms? If so what are they? Also you can try to replace the object that is connected to the PLC and make sure it has the correct settings. It may also be due intermittent networking issues, losing connection and not able to connect with the object again unless Lookout is restarted again. I have not heard about any such networking issues. The attached document can be used for reference.
    Regards,
    RMM
    http://digital.ni.com/public.nsf/websearch/5ECD2AFA039B45C186256B1300621722?OpenDocument

  • Connection issues after upgrade to Mountain Lion

    Very strange internet connection problem here after upgrade to Mountain Lion.
    I just upgraded MacBook (early 2009) to Mountain Lion. After upgrade, I'm having problems connecting to certain websites (ESPN, CNN, etc.), and I can't connect to the computer using LogMeIn.
    BUT, I do have an internet connection. Skype works, Messages works, email works, some websites work. I tested using speedtest.net and it shows good download speed, but the upload speed is so slow that it can't even perform the test. A Windows PC on the same network works fine.
    Next, I tested the MacBook on another wi-fi network at a coffee house, and everything works fine there!
    So it might appear to be something wrong with the router? I have an Cisco (Linksys) E3200 and have upgraded to the latest firmware (1.0.4). But still doesn't work.
    The firewall in Mountain Lion is turned off, and I temporarily turned off the firewall on the router and that didn't help, so doesn't appear to be any sort of firewall issue. I've never heard of an operating system being incompatible with a specific router anyway.
    Can anyone thing of any setting or something in Mountain Lion that would causing internet connection problems with a specific router?

    I don't know if this will 'fix' your problem, but have you tried the 10.8.5 Supplemental Update -> http://support.apple.com/kb/DL1686?
    Clinton

  • Outlook Users connection issues after Mailbox Migration from 2007 to 2013

    Hi,
    We have a coexistance between Exchange 2007 SP3 and Exchange 2013 CU7. There is an issue when after migrating the user from exchange 2007 mailbox to exchange 2013, the outlook keeps on prompting for password when it is being launched. Checking the Connection
    Status we found that there is a connection to the old 2007 Server and the type is Exchange Public Folder. I have migrated the public folder and checked the Mailbox of the user and found that the DefaultPublicFolderMailbox is set to the 2013 Public Folder Mailbox.
    If I check my 2013 MailboxDatabase Properties, It sill shows that PublicFolderDatabase Properties is still pointing to the 2007 Public Folder Database. Any resolution on this?
    Another issue is, We set outlook anywhere on the 2013 to use basic authentication, however, when users are migrated to 2013 the Outlook client changes to NTLM. even if we set the outlook to basic to make it work, it still comes back to NTLM after a while.
    I did most of the resolutions online to use powershell to make changes to outlook anywhere but no luck. any suggestions is highly appreciated.
    Thanks & Regards,
    Arthur

    Hi,
    For the first problem, please check the msExchHomePublicMDB attribute for mailbox database in Exchange 2013, you can check this attribute in ADSIEdit.
    If this attribute is pointing to Exchange 2007 public folder database, please set to blank. After that, please restart the information service.
    And for the second question, I suggest we open a new case for this issue. In order to avoid confusion and keep track of troubleshooting steps, we usually troubleshoot one
    issue per thread in order to find a resolution efficiently.
    Thanks for your understanding.
    Best regards,
    If you have feedback for TechNet Subscriber Support, contact
    [email protected]
    Belinda Ma
    TechNet Community Support

  • After upgrade to Lion, iMovie 11 won't recognize my ReadyNas disk.  Anyone else experiencing application NAS connectivity issues after upgrading to Lion?

    I have a ReadyNas NV+ which I use as NAS storage.  I make a lot of home movies in iMovie 11 (mostly family movies of my daughter growing up) which fills up my local HDD fairly quickly.  I setup iMovie 11 when I was using Snow Leopard to connect to my NAS as an additional disk in the event library and project.  I would move events and projects after I finalized and shared them to the NAS disk in iMovie so it would both clear up space on my local HDD but still be available in the iMovie 11 application.
    After I upgraded to Lion, I can no longer see the NAS disk in either the project library or event library.  I'm concerned if I have created a condition where I won't be able to access the projects and events which I moved to the NAS disk when I upgraded to Lion.  Has anyone else experienced this issue and has anyone else found a solution to this?  Any help would be greatly appreciated. 

    Did that work for you?  I was looking at that too, but was discouraged by having to use a sparsebundle given Snow Leopard had such great NAS support. 
    FYI to everyone else, I upgraded my ReadyNAS firmware to 4.1.8.  NetGear indicated the following updates with the nre firmware, but it didn't fix this problem:
         New features and enhancements
         1. Added support for Mac OS X 10.7 “Lion”.
         2. Added warning when NFS access to home shares is enabled.
         3. Added a redirect for http://<host>/ip to https.
         4. Added enhancements to advanced AFP permission settings.
         5. Provide download links for exported users and groups instead of asking for email.
         6. Updated ReadyNAS Remote to the latest revision.
         Bug fixes
         1. Fixed javascript error in FrontView.
         2. Delay auto power-off if backup jobs are still queued.
         Limitations
         1. IE 6 no longer supported.
         2. Drives greater than 2TB are not supported.
    I found this link which I thought had some useful information: http://carryflag.blogspot.com/2010/06/imovie-event-library-on-network-drive.html
    Some people reported success with the terminal command:
         defaults write -app iMovie allowNV -bool true
    But apparantly, after the Lion update, fewer people reported success with it.  Still looking though... If anyone else has more symptoms to add, please let me know.  I might try to use a sniffer program and see if I can pull a packet capture.  That might reveal some info.... 
    On another note, has anyone had any problems connecting to their Time Capsule in the same fashion?  I had an idea of connecting a USB Raid Array to it and connecting through the TC, but wanted to know if anyone had any thoughts or experience with that....  Thanks.

  • Bluetooth car kit connectivity issue after IOS 8.1.2 update

    After the IOS 8.1.2 update I cannot connect my IPhone with the Bluetooth car kit (hands free) system of my car.
    Before the update connectivity was perfect, after the IOS 8.1.2 update the car kit does not find the IPhone any longer.
    To solve this issue I deleted both the car kit and the IPhone from the paired devices list of both (my car and the Iphone) and tried to pair them again - no success. The car kit just does not finds the Iphone any longer.
    Please, help!!!

    Just to share the way I finally solved the problem - might be helpful to somebody else.
    I didn't noticed before that the IOS 8.1.2 update changed automatically the name of my Iphone from the one I've given to it before to just "Phone".
    I re-named the Iphone (just gave a new name to it by going to Settings -> General -> About -> Name) and then the car kit managed to find the phone very quickly via Bluetooth.

  • Source System Connection Issue after BI 7 Upgrade

    Hi all,
    We have just upgraded from BW 3.1 to BI 7.
    After the upgrade, I checked the connection to our R3 4.6 source system.
    It is now saying the following message:
    Source system XXX is marked as inactive in BI.
    Check failed for RFC connection XXX ; check destination
    After going through the RFC connection, I tested the connection for this source system. It said OK. While doing the authorization test, it said: "Name or password is incorrect. Please re-enter".
    The thing is that our name & password ARE correct definitely.
    Is there any issues post upgrade because authorization stuff between R.3 4.6 (PI 2004.1 SP15) and BI 7?
    Any ideas?
    Thank you
    chris

    Hi,
    as from NW7.0, passwords are case-sensitive.
    If you define the passwords in the RFC in uppercase, it will work.
    This is a problem when you link an 'old' (not NW 7.0) system to a NW 7.0 (as in this one, passwords are case-sensitive).

Maybe you are looking for