Ping Times to NAT Addresses

     If I ping a NAT'ed IP address configured on an ASA 5505, is it handled at the firewall (as far as priority) as if I were pinging the firewall interface itself, or the end device?  The reason I ask is I am seeing waves of ping latency that I can relate to data transfers, but the nothing is even close to being maxed out as far as CPU, memory, or bandwidth.  My guess is this is being handled by the ASA in software instead of in hardware.  Just looking for clarification.
Thanks,
Matt

     If I ping a NAT'ed IP address configured on an ASA 5505, is it handled at the firewall (as far as priority) as if I were pinging the firewall interface itself, or the end device?  The reason I ask is I am seeing waves of ping latency that I can relate to data transfers, but the nothing is even close to being maxed out as far as CPU, memory, or bandwidth.  My guess is this is being handled by the ASA in software instead of in hardware.  Just looking for clarification.
Thanks,
Matt

Similar Messages

  • Anyconnect VPN PING replies from NAT address

    I have been attmepting to setup an Anyconnect client to access an internal LAN via an ASA running 8.6(1)2.
    The VPN client connects to the ASA successfully, and I get an IP address from the pool on the ASA, so far so good.
    I have an issue whereby a ping from a AnyConnect VPN client to an inside host that has a static nat translation is getting a response from the nat (public) address rather than its real (inside) address as below:
    C:\ ping 10.191.16.3 (inside host that is natted to lets say 123.123.123.123 on the ASA)
    Pinging 10.191.16.3 with 32 bytes of data:
    Reply from 123.123.123.123: bytes=32 time=62ms TTL=127
    How do I get the response to come from the real address?  Pinging inside hosts that do not have static NAT entries are ok.
    Below is what I beleive are the relevant parts of the config..(Let me know if more is needed and I can post)
    interface Redundant1
    member-interface GigabitEthernet0/1
    member-interface GigabitEthernet0/3
    nameif InsideNet99
    security-level 100
    ip address 10.191.99.251 255.255.255.0
    object network VPNClients
    subnet 10.191.18.0 255.255.255.0
    object network inside_network
    subnet 10.191.16.0 255.255.254.0
    nat (inside,outside) source static inside_network inside_network destination static VPNClients VPNClients no-proxy-arp route-lookup
    object network inside_network
    nat (inside,outside) dynamic interface
    route inside 10.191.16.0 255.255.254.0 10.191.99.254 1
    nat (inside,outside) source static 10.191.16.3 123.123.123.123

    Hi,
    Many thanks for taking the time to reply.
    Here is the output you requested...
    The only things I have changed are public IP's (I changed the names of a few things in the original post).
    FIREWALL-01# sh run nat
    nat (InsideNet99,outside) source static fp-private fp-public
    nat (InsideNet99,outside) source static tmg-private tmg-public
    nat (InsideNet99,outside) source static ex-private ex-public
    nat (InsideNet99,outside) source static DM_INLINE_NETWORK_1 DM_INLINE_NETWORK_1 destination static NETWORK_OBJ_10.191.18.0_24 NETWORK_OBJ_10.191.18.0_24 no-proxy-arp route-lookup
    object network VRF-VLAN2
    nat (InsideNet99,outside) dynamic interface
    object network VRF-VLAN3
    nat (InsideNet99,outside) dynamic interface
    object network VRF-VLAN5
    nat (InsideNet99,outside) dynamic interface
    object network VRF-VLAN12
    nat (InsideNet99,outside) dynamic interface
    object network WIFIPUBLIC
    nat (wifipublic,outside) dynamic interface
    object network VRF-VLAN11
    nat (InsideNet99,outside) dynamic interface
    object network VRF-VLAN17
    nat (InsideNet99,outside) dynamic interface
    FIREWALL-01#
    Other info...
    object network fp-public
    host ***.***.***.***
    object network VRF-VLAN11
    subnet 10.191.16.0 255.255.254.0
    object network fp-private
    host 10.191.16.1
    object network tmg-private
    host 10.191.16.3
    object network ex-public
    host **.***.***.***
    object network tmg-public
    host 123.123.123.123
    object network ex-private
    host 10.191.16.2
    object network NETWORK_OBJ_10.191.18.0_24
    subnet 10.191.18.0 255.255.255.0
    object-group network DM_INLINE_NETWORK_1
    network-object object VRF-VLAN11
    The VPN client has address 10.191.18.1, pinging 10.191.16.3 and getting reply from 123.123.123.123 (The public address of 10.191.16.3).
    (123.123.123.123 used for purposes of this forum, not real address).
    btw, I can PING other devices on 10.191.16.0/23 that do not have static NATs on the ASA and they respond correctly from the real IP.

  • SA520 NAT/PAT not working with NAT address

    The SA520 I have is configured on one public IP address and an exchange server is behind it.  THe exchange server is configured with an internal address and the SA520 is performing NAT translation to a unique public address for the email server itself which is independant of the SA520.  It seems that the SA520 is sending email out the NAT address correctly at some time and at other times it seems to be sending the email traffic over the PAT address of the SA520 public address.  When this happens the email gets blocked due to spam lists.  Then the email will work again correctly.. and then go back.  If I use a 3rd party website to test the IP address sometime I get the correct one and sometimes I get the wrong address.
    Is there a way I can confirm that the SA520 NAT settings are correct to allow ALL outbound communications from the exchange server (which is behind the SA520)?  I may have the SA520 configuration wrong and it is possible that the SA520 is only providing inbound PAT for port 25.  How do I tell the SA520 to do a 1 to 1 NAT with the exchange server?

    Hi John,
    In order to establish a 1 to 1 NAT on the SA 500 series, as in your case, you must first you must first add an IP Alias for your 2nd WAN.  Next, you create a Firewall rule to "force" all or selected traffic from your NATed server (LAN) to the WAN to go out thru the IP ALIAS address.  Finally, we forward specific traffic from the WAN to your NATed Server (LAN) thru Firewall Rule(s).  See sample wan2lan bitmaps attached. Do this for each of the services that you will allow to come in thru the SA 520 to your Server.  As long as there are no other Firewall rules overlapping with the newly created rules, traffic to and from your NATed server will come/exit thru your ALIAS IP.
    We can verify this by performing a WAN Packet Trace (Administration-->Diagnostics -->Packet Trace)  After choosing Dedicated WAN as the Network to be captured, Click on Start to perform Packet Capture.  Go to your NATed server, and perform the following, on a command prompt window Ping google.com, open a browser window and open google.com.  On a remote machine, open a web page on your server (OWA?) to test incoming HTTP/HTTPS requests. Stop your capture, and save the packet capture file by pressing the Download button.  Open file with Wireshark/Ethereal and observe the source and destination address of the packets.  They should have the ALIAS address and not the WAN IP address.
    If the above step is good, then we have to take a look as to if and why your SMTP or email services are not being routed out the ALIAS interface. Repeat capture steps as above, but this time send an outgoing email, and test an incoming email by emailing an internal account from an outside email acount (yahoo, gmail, hotmail).
    If you still have failure, and you have IPS or ProtectLink enabled, can you run the steps that failed with IPS and/or ProtectLink both disabled?
    If there are issues, you can post the captures as a personal message to me.
    I hope the above will help narrow the issue a bit.
    Best regards,
    Julio

  • Negative Ping Times?

    I'm hoping someone here has heard of this before... my internet is acting up and after some investigating I discovered that when pinging any address, INCLUDING THE LOCAL LOOPBACK, I get NEGATIVE ping times!!  I have never even heard of this before, and I switched NICs and the problem remains.  I reset the stack and it remains.  Any other ideas?

    ttt 

  • Symptoms of Airport Parameter Corruption witn 802.11g WPA: ping times

    Hi,
    I've had problems with MBP connecting and staying connected to a Netgear 802.11g network with WPA (password). An older G4 Powerbook would have no problems, so it is the intel MBP. This is with all the latest patches. One of the things I've noticed is if I ping the router ( open terminal, type: "ping 10.0.0.1" or whatever your router address is) I would have pings of about 1.633 ms but then there would be some pings which would take 1500 ms or 2000 ms! The G4 laptop was always around 1-2 milleseconds. The intel laptop was having some trouble, and it would eventually corrupt the Netgear so I had to reboot it. So by rebooting and zapping the pram, the ping times went to normal, like the G4 laptop. I am assuming some parameters get corrupted and rebooting + zapping pram clears out the corrupted parameters. And if I used iStumbler the corruption would return; so I don't do that.
    MBPro 15   Mac OS X (10.4.8)  

    Hi,
    I've had problems with MBP connecting and staying connected to a Netgear 802.11g network with WPA (password). An older G4 Powerbook would have no problems, so it is the intel MBP. This is with all the latest patches. One of the things I've noticed is if I ping the router ( open terminal, type: "ping 10.0.0.1" or whatever your router address is) I would have pings of about 1.633 ms but then there would be some pings which would take 1500 ms or 2000 ms! The G4 laptop was always around 1-2 milleseconds. The intel laptop was having some trouble, and it would eventually corrupt the Netgear so I had to reboot it. So by rebooting and zapping the pram, the ping times went to normal, like the G4 laptop. I am assuming some parameters get corrupted and rebooting + zapping pram clears out the corrupted parameters. And if I used iStumbler the corruption would return; so I don't do that.
    MBPro 15   Mac OS X (10.4.8)  

  • Very Very long ping time, only on arch, and preload doesn't work

    Arch is the most amazing Linux system I have ever used. I get like a 30 second boot time from start to finish, i'm just wowed.
    I am using arch64, and have only 2 problems!
    1. I have like a 32ms ping, for any site, toooo big. I have a 3com NIC card which Is currently being used as eth1, and an nvidia network controller on my board eth0. The nvidia controller doesn't work right, so i am using the 3com, with a huge ping time
    2. preload isn't working. I have 3gb of RAM, and AMAZINGLY only 400mb of RAM is being used, with 9 tabs in firefox open, compiz-fusion, gnome desktop. DAMN! I want more RAM being used, what is wrong with this?? (the problem is that things start up a little slow, so it must mean it is not staying in the RAM)
    Please tell me what I can do to fix these problems!
    EDIT: Could it have something to do with the groups I am in, or the preload.conf settings, or the rc.conf file?
    Last edited by savagenator (2008-03-19 23:27:03)

    I saw your latency thingy... though that aint so bad
    PING fk-in-f147.google.com (209.85.129.147) 56(84) bytes of data.
    64 bytes from fk-in-f147.google.com (209.85.129.147): icmp_seq=1 ttl=242 time=146 ms
    Pinging from norway to... wherever that node is.
    and compare that to a norwegian host
    PING www.sau.no (194.63.248.23) 56(84) bytes of data.
    64 bytes from web.domeneshop.no (194.63.248.23): icmp_seq=1 ttl=47 time=86.6 ms
    all in all, you should not be so annoyed unless your used to sub 10 ms ofc.. but this is still very quick for a webhost, atleast i think so.

  • How do I get the arrow keys to move one character at a time in the address bar or search box?

    I can no longer get the arrow keys to advance or retard "one character at a time" in the address bar, the search box, or on any form in Firefox. This feature works in other browsers without a problem. The "Home" and "End" keys do not work either. How do I fix this behavior?

    How do I configure the AX to connect to the hub's wireless network? It will only scan one base station Airport Express at a time in the Airport Utility. I think what I am trying to do is use the hub as a router to the two AX's. Is there a specific way to set this up?
    To set up the AX to join a wireless network as a "Wireless Client," using the AirPort Utility, either connect to the AX's wireless network or temporarily connect your computer directly (using an Ethernet cable) to the Ethernet port of the AX, and then, try these settings:
    Launch the AirPort Utility.
    Select the AX.
    If not already connected to the AX's wireless network, go ahead and switch to it when prompted.
    AirPort Utility > Select the AX > Manual Setup > AirPort > Wireless
    Wireless Mode: Join a wireless network
    Network Name: <type in the network name/SSID of the wireless network that you want to join or select it from the pop-up menu>
    Wireless Security: None OR, if you are using security on your wireless network:
    Wireless Security: <Select the appropriate level of security for the existing wireless network: WPA/WPA2 Personal | WPA2 Personal>
    Password: <enter your wireless network security password>
    Verify Password: <re-enter the same security password>
    Click Update to write the new settings to the AX.

  • Ping time out, server connection is lost in visual administrator after java

    Dear all,
    Recently I have done system copy for XI system. I have imported the java import after importing  the abap stack into the target system as java add in abap.The import phase finished successfully and java engine is also working well.
    I have confirmed this by moving to the browser page  " http://hostname:50000/ and XI system  http://hostname:50000/rep ". Everything is working fine and in MMC console as well.
    But while trying to log in to visual administrator i am getting the error message as " ping time out,connection to server is lost "
    std_serverout.log
    unrecoverable stack overflow has occurred.
    An unexpected error has been detected by HotSpot Virtual Machine:
    EXCEPTION_STACK_OVERFLOW (0xc00000fd) at pc=0x00000000080e3c66, pid=2940, tid=928
    Java VM: Java HotSpot(TM) 64-Bit Server VM (1.4.2_16-b05 mixed mode)
    Problematic frame:
    V  [jvm.dll+0xe3c66]
    An error report file with more information is saved as hs_err_pid2940.log
    stdout/stderr redirect
    node name   : server0
    pid         : 3060
    system name : XIT
    system nr.  : 03
    started at  : Tue Feb 17 18:42:50 2009
    CompilerOracle: exclude com/sapportals/portal/pb/layout/taglib/ContainerTag addIviewResources
    CompilerOracle: exclude com/sap/engine/services/keystore/impl/security/CodeBasedSecurityConnector getApplicationDomain
    CompilerOracle: exclude com/sap/engine/services/rmi_p4/P4StubSkeletonGenerator generateStub
    CompilerOracle: exclude com/sapportals/portal/prt/util/StringUtils escapeToJS
    CompilerOracle: exclude com/sapportals/portal/prt/core/broker/PortalServiceItem startServices
    CompilerOracle: exclude com/sap/engine/services/webservices/server/deploy/WSConfigurationHandler downloadFile
    CompilerOracle: exclude com/sapportals/portal/prt/jndisupport/util/AbstractHierarchicalContext lookup
    SAP J2EE Engine Version 6.40   PatchLevel 100627.313 is starting...
    Loading: LogManager ... 453 ms.
    Loading: PoolManager ... 0 ms.
    Loading: ApplicationThreadManager ... 94 ms.
    Loading: ThreadManager ... 31 ms.
    Loading: IpVerificationManager ... 0 ms.
    Loading: ClassLoaderManager ... 16 ms.
    Loading: ClusterManager ... 219 ms.
    Loading: LockingManager ... 93 ms.
    Loading: ConfigurationManager ... 1502 ms.
    Loading: LicensingManager ... 31 ms.
    Loading: ServiceManager ...
    6.226: [GC 6.226: [ParNew: 87040K->8544K(130560K), 0.0628724 secs] 87040K->8544K(1005056K), 0.0629982 secs]
    Loading services.:
      Service memory started. (16 ms).
      Service cross started. (15 ms).
      Service file started. (78 ms).
      Service timeout started. (32 ms).
      Service runtimeinfo started. (15 ms).
      Service userstore started. (63 ms).
      Service trex.service started. (94 ms).
      Service jmx_notification started. (63 ms).
      Service p4 started. (235 ms).
      Service classpath_resolver started. (15 ms).
    10.537: [GC 10.537: [ParNew: 95584K->16246K(130560K), 0.0776272 secs] 95584K->16246K(1005056K), 0.0777727 secs]
      Service deploy started. (3926 ms).
      Service log_configurator started. (4363 ms).
      Service locking started. (0 ms).
      Service http started. (172 ms).
      Service naming started. (203 ms).
      Service failover started. (78 ms).
      Service appclient started. (110 ms).
      Service javamail started. (140 ms).
      Service jmsconnector started. (140 ms).
      Service ts started. (125 ms).
      Service licensing started. (16 ms).
      Service connector started. (188 ms).
      Service configuration started. (31 ms).
      service MobileSetupGeneration ================= ERROR =================
      Service MobileArchiveContainer started. (78 ms).
      Service webservices started. (470 ms).
      Service dbpool started. (1172 ms).
    13.195: [GC 13.196: [ParNew: 103286K->20423K(130560K), 0.0478316 secs] 103286K->20423K(1005056K), 0.0489244 secs]
      Service com.sap.security.core.ume.service started. (2596 ms).
      Service security started. (2471 ms).
      Service classload started. (78 ms).
      Service applocking started. (141 ms).
      Service shell started. (188 ms).
      Service tceCATTPingservice started. (32 ms).
      Service telnet started. (63 ms).
    18.218: [GC 18.218: [ParNew: 107463K->25937K(130560K), 0.0545612 secs] 107463K->25937K(1005056K), 0.0546428 secs]
      Service webdynpro started. (203 ms).
      Service ejb started. (532 ms).
      Service dsr started. (172 ms).
      Service keystore started. (485 ms).
      Service ssl started. (16 ms).
      Service servlet_jsp started. (704 ms).
      Service tcsecsecurestorage~service started. (63 ms).
      Service jmx started. (391 ms).
      Service tclmctcculculservice_sda started. (0 ms).
      Service rfcengine started. (656 ms).
      Service tcsecwssec~service started. (469 ms).
      Service apptracing started. (360 ms).
    19.355: [GC 19.355: [ParNew: 112977K->42681K(130560K), 0.0844669 secs] 112977K->47563K(1005056K), 0.0845476 secs]
      Service tcsecdestinations~service started. (907 ms).
      Service basicadmin started. (860 ms).
      Service adminadapter started. (297 ms).
      Service pmi started. (312 ms).
      Service tclmctcculservice_sda started. (1251 ms).
      Service tcsecvsi~service started. (438 ms).
      Service monitor started. (407 ms).
      Service sld started. (1721 ms).
    20.296: [GC 20.296: [ParNew: 129721K->39952K(130560K), 0.1028212 secs] 134603K->50894K(1005056K), 0.1028881 secs]
      Service tc.monitoring.logviewer started. (1704 ms).
    21.584: [GC 21.584: [ParNew: 126992K->40823K(130560K), 0.0664458 secs] 137934K->58110K(1005056K), 0.0665026 secs]
      Service jms_provider started. (3518 ms).
      Service com.sap.aii.af.cpa.svc started. (2033 ms).
      Service com.sap.aii.af.security.service started. (16 ms).
      Service com.sap.aii.af.svc started. (157 ms).
    22.873: [GC 22.873: [ParNew: 127863K->43238K(130560K), 0.0574693 secs] 145150K->65266K(1005056K), 0.0575210 secs]
      Service com.sap.aii.af.ms.svc started. (407 ms).
      Service com.sap.aii.adapter.marketplace.svc started. (47 ms).
      Service com.sap.aii.adapter.bc.svc started. (47 ms).
      Service com.sap.aii.adapter.xi.svc started. (47 ms).
      Service com.sap.aii.adapter.jms.svc started. (79 ms).
      Service com.sap.aii.adapter.mail.svc started. (63 ms).
      Service com.sap.aii.adapter.jdbc.svc started. (156 ms).
      Service com.sap.aii.adapter.rfc.svc started. (219 ms).
      Service com.sap.aii.af.ispeak.svc started. (313 ms).
      Service com.sap.aii.adapter.file.svc started. (2315 ms).
    ServiceManager started for 22082 ms.
    Framework started for 24772 ms.
    SAP J2EE Engine Version 6.40   PatchLevel 100627.313 is running!
    PatchLevel 100627.313 December 14, 2005 20:06 GMT
    >26.086: [GC 26.086: [ParNew: 130278K->23111K(130560K), 0.0693509 secs] 152306K->68371K(1005056K), 0.0694372 secs]
    32.059: [GC 32.059: [ParNew: 110151K->34716K(130560K), 0.0419854 secs] 155411K->79975K(1005056K), 0.0420301 secs]
    32.608: [GC 32.608: [ParNew: 121756K->43497K(130560K), 0.0827214 secs] 167015K->105659K(1005056K), 0.0827638 secs]
    38.688: [GC 38.688: [ParNew: 130537K->39986K(130560K), 0.0525517 secs] 192699K->106409K(1005056K), 0.0526114 secs]
    41.615: [GC 41.615: [ParNew: 127026K->32598K(130560K), 0.0467433 secs] 193449K->103188K(1005056K), 0.0467930 secs]
    44.298: [GC 44.298: [ParNew: 119638K->34820K(130560K), 0.0430069 secs] 190228K->105410K(1005056K), 0.0432422 secs]
    46.443: [GC 46.443: [ParNew: 121860K->39729K(130560K), 0.0498349 secs] 192450K->110319K(1005056K), 0.0499023 secs]
    48.656: [GC 48.656: [ParNew: 126769K->36669K(130560K), 0.0625983 secs] 197359K->112667K(1005056K), 0.0626567 secs]
    52.243: [GC 52.243: [ParNew: 123709K->39589K(130560K), 0.0477260 secs] 199707K->115587K(1005056K), 0.0477793 secs]
    115.241: [GC 115.241: [ParNew: 126629K->37429K(130560K), 0.0553704 secs] 202627K->118544K(1005056K), 0.0554346 secs]
    118.096: [GC 118.096: [ParNew: 124469K->40865K(130560K), 0.0504829 secs] 205584K->121980K(1005056K), 0.0505322 secs]
    120.589: [GC 120.589: [ParNew: 127905K->37247K(130560K), 0.0578313 secs] 209020K->123954K(1005056K), 0.0578734 secs]
    122.573: [GC 122.573: [ParNew: 124287K->39626K(130560K), 0.0534208 secs] 210994K->126333K(1005056K), 0.0534640 secs]
    124.070: [GC 124.077: [ParNew: 126666K->35377K(130560K), 0.0626490 secs] 213373K->128235K(1005056K), 0.0627628 secs]
    126.103: [GC 126.103: [ParNew: 122417K->37886K(130560K), 0.0485833 secs] 215275K->130744K(1005056K), 0.0486433 secs]
    128.251: [GC 128.251: [ParNew: 124926K->41258K(130560K), 0.0482213 secs] 217784K->134115K(1005056K), 0.0482675 secs]
    130.792: [GC 130.792: [ParNew:
    Due to this i am not able to log in visual adminsitrator.Kindly advice me for the same.
    Thanks in advance
    Vijay

    Hello vamshi,
    As you have suggeseted, I followed the notes and changed the following paramters.The system is 64bit and hence the values are adjusted according to the server.
    -Djco.jarm=1
    -Dsun.io.useCanonCaches=false
    -Djava.awt.headless=true
    -XX:SoftRefLRUPolicyMSPerMB=1
    -verbose:gc
    -XX:+PrintGCDetails
    -XX:+PrintGCTimeStamps
    -Xss2m
    -Xms2048M
    -Xmx2048M
    -XX:MaxNewSize=320M
    -XX:NewSize=320M
    -XX:MaxPermSize=512M
    -XX:PermSize=512M
    -XX:SurvivorRatio=2
    -XX:TargetSurvivorRatio=90
    -XX:+UseParNewGC
    -XX:+UseTLAB
    -XX:+HeapDumpOnCtrlBreak
    The heap size for java is 2048
    But still i am getting the ping time out. Connection to server is lost.
    Kindly let me know,
    Regards
    Vijay

  • CSV file for users who have one-time password email address

    Hi Guys,
    I am trying to extract the list of users who have one-time password email address in FIM or users who have registered with one-time password reset authentication workflow. I need to get their email addresses in CSV file.
    Regards
    Sarwar
    Sarwar

    Take a look at:
    http://social.technet.microsoft.com/wiki/contents/articles/3616.how-to-use-powershell-to-export-all-users-who-have-registered-for-self-service-password-reset-sspr.aspx
    The script queries a WorkFlow called "Password Reset AuthN Workflow" and returns its ObjectID, then uses it to do a new query searching for "Users" with these parameters:
    AuthN WorkFlow Registered = ObjectID of "Password Reset AuthN Workflow"
    The script exports these details to a CSV.
    Also, all OTP email addresses should be stored in the "msidmOneTimePasswordEmailAddress" attribute in the FIM Portal.

  • WAG325N (Ping time ~7k ms and connection dies)

    Hello,
    I got a new problem now or maybe I could call it a old problem becouse I had it with my old WAG325N I hope I can get help to fix this or I trow this ISR in the dustbin.
    Now after some use I got the same problem as I had on my old WAG325N (1.00.06) ISR, I did return that one and did get this new one.
    The problem is that after ~15 hour of use the WLAN get unstable and disconnect me and the ping time to the router get extreme hight avg. ~7000 ms (~7% lost) and the internet connection goes down but then I view the status page on the router(after waiting 2 min for it to load) it's say that the ADSL connection is good.
    The problem gets solved by rebooting(sometimes system restore is needed) the router and then it works fine for another ~15 hour and this problem comes again..
    This is the only strange thinks I cane find in the log: (the date is a bit off? )
    Sat, 2000-01-01 02:00:15 - /proc/adsl has not been found
    Sat, 2000-01-01 02:01:15 send out NTP request to ntp.nasa.gov
    Sat, 2000-01-01 02:02:39 send out NTP request to time-nw.nist.gov
    The configuration is:
    WAG325N (1.00.08)
    RFC 1483 Bridged, DHCP
    Wide - 40 MHz (channel 7), 2.452 GHz, SSID Broadcast, WPA2
    Firewall On blocking Anonymous (stealth (DMZ))
    QoS is on with a few rules
    logging is turned on and email alert also
    Computers on WLAN:
    3xApple computer using wireless N
    Ubuntu computer using wireless G
    FreeBSD computers using wireless G
    (test: Windows XP computer using wireless G)
    Computers using wire:
    FreeBSD computer using 100Mps (Static IP)
    Ubuntu computer using 100Mps (Static IP)
    Apple computer using 100Mps
    (test: Windows XP computer using 100Mps)
    Thanks allot for your help. ^^
    Old problem: (fixed)
    Hello, I just got my new WAG325N after my first one didn't work and now I wanted to upgrade it to 1.00.08 but then I try to it's false. I "upload" the file and the loadbar starts and it's goes to 3-4% and then the screen just turn white. The other things I would like to have help with is: Can I give one of my computers a fixed IP and have the rest computers have DHCP? And how do I do it? What do the firewall do? Which ports does it block/not block is it "stealth" can I set "advance" firewall rules so I can decide witch ports that should be open closed? Thanks for helping a newb. ^^ Oh btw. --- System Information --- Vendor: Linksys ModelName: WAG325N Firmware Version: A1.00.06, 2006-12-04 Boot Version: 1.0.37-5.4 Hardware Version: 0.01 Message Edited by vega_2007 on 10-20-2007 06:11 AM
    Message Edited by vega_2007 on 10-20-2007 02:14 PM
    Message Edited by vega_2007 on 10-21-2007 03:20 AM

    Hello,
    I got a new problem now or maybe I could call it a old problem becouse I had it with my old WAG325N I hope I can get help to fix this or I trow this ISR in the dustbin.
    Now after some use I got the same problem as I had on my old WAG325N (1.00.06) ISR, I did return that one and did get this new one.
    The problem is that after ~15 hour of use the WLAN get unstable and disconnect me and the ping time to the router get extreme hight avg. ~7000 ms (~7% lost) and the internet connection goes down but then I view the status page on the router(after waiting 2 min for it to load) it's say that the ADSL connection is good.
    The problem gets solved by rebooting(sometimes system restore is needed) the router and then it works fine for another ~15 hour and this problem comes again..
    This is the only strange thinks I cane find in the log: (the date is a bit off? )
    Sat, 2000-01-01 02:00:15 - /proc/adsl has not been found
    Sat, 2000-01-01 02:01:15 send out NTP request to ntp.nasa.gov
    Sat, 2000-01-01 02:02:39 send out NTP request to time-nw.nist.gov
    The configuration is:
    WAG325N (1.00.08)
    RFC 1483 Bridged, DHCP
    Wide - 40 MHz (channel 7), 2.452 GHz, SSID Broadcast, WPA2
    Firewall On blocking Anonymous (stealth (DMZ))
    QoS is on with a few rules
    logging is turned on and email alert also
    Computers on WLAN:
    3xApple computer using wireless N
    Ubuntu computer using wireless G
    FreeBSD computers using wireless G
    (test: Windows XP computer using wireless G)
    Computers using wire:
    FreeBSD computer using 100Mps (Static IP)
    Ubuntu computer using 100Mps (Static IP)
    Apple computer using 100Mps
    (test: Windows XP computer using 100Mps)
    Thanks allot for your help. ^^
    Message Edited by vega_2007 on 10-20-2007 02:48 PM

  • Creating connection using NAT address

    Can we use ServerSockets to create a connection to a server using the NAT address ? If yes, then does it require something different ?

    Do you want to connect an external machine to a machine behind your NAT router? Or is this completely internal? If it's interal you should be able to use the machine's private ip address.

  • Analyzer 7 Across the WAN using NAT addresses

    We have acquired several companies that have their own internal ip addresses that are duplicates of some of our internal ip addresses. To overcome this we use Network Address Translation (NAT). However, we cannot get Analyzer to work with these NAT addresses. The users receive the logon page, but the "domain" box is empty. We have tried adding entries to the remote DNS's that map the NAT addresses to our servers, but this hasn't worked. Does anyone have any suggestions? Thanks!

    We have acquired several companies that have their own internal ip addresses that are duplicates of some of our internal ip addresses. To overcome this we use Network Address Translation (NAT). However, we cannot get Analyzer to work with these NAT addresses. The users receive the logon page, but the "domain" box is empty. We have tried adding entries to the remote DNS's that map the NAT addresses to our servers, but this hasn't worked. Does anyone have any suggestions? Thanks!

  • Ping Time is higher since last weekend?

    Hi there, I love BT Broadband. The service is excellent, the router is excellent and the speed is excellent. But last weekend I have noticed my connection has gotten worse, not speed wise but Ping wise. Here you can see my router stats:
    ADSL Line Status
    Connection information
    Line state:
    Connected
    Connection time:
    3 days, 22:03:47
    Downstream:
    8,128 Kbps
    Upstream:
    448 Kbps
      ADSL settings
    VPI/VCI:
    0/38
    Type:
    PPPoA
    Modulation:
    G.992.1 Annex A
    Latency type:
    Fast
    Noise margin (Down/Up):
    10.3 dB / 21.0 dB
    Line attenuation (Down/Up):
    22.5 dB / 11.5 dB
    Output power (Down/Up):
    19.9 dBm / 11.9 dBm
    FEC Events (Down/Up):
    0 / 0
    CRC Events (Down/Up):
    449 / 29
    Now I used to have a 24ms 0 Jitter Constantly, and now since last weekend I have now 37ms 2 Jitter and its anoying me as I am a gamer.
    Before:
    http://www.pingtest.net/result/54428607.png
    Now:
    http://www.pingtest.net/result/55869184.png
    BT has changed my connection to the "Fast" Latency Type and I have been on it for 4 months with that ping time (24ms), Although when I first got BT, I was told to wait 10 days for the line to settle, the standard set up. But I coudlnt resist changing my interleaved to Fast as it was 45ms, so I didnt care about the 10 day thing and on the third day, I sent a request to BT to change it. And now I am just wondering if theres anyway I can get BT to RESET MY ENTIRE CONNECTION?
    For those who want a speed test for my 8mb line here it is:
    http://www.speedtest.net/result/1744680735.png
    Notice, I am using the same router, same cables, same settings. Everything is the same as its always been, I am using the Master Socket aswell.
    Thank You,
    John

    Heres the router stats:
    ADSL Line Status
    Connection information
    Line state:
    Connected
    Connection time:
    3 days, 15:00:38
    Downstream:
    8,128 Kbps
    Upstream:
    448 Kbps
      ADSL settings
    VPI/VCI:
    0/38
    Type:
    PPPoA
    Modulation:
    G.992.1 Annex A
    Latency type:
    Fast
    Noise margin (Down/Up):
    10.1 dB / 21.0 dB
    Line attenuation (Down/Up):
    22.5 dB / 11.5 dB
    Output power (Down/Up):
    19.8 dBm / 11.9 dBm
    FEC Events (Down/Up):
    0 / 0
    CRC Events (Down/Up):
    504 / 36
    Loss of Framing (Local/Remote):
    0 / 0
    Loss of Signal (Local/Remote):
    0 / 0
    Loss of Power (Local/Remote):
    0 / 0
    Loss of Link (Remote):
    0
    HEC Errors (Down/Up):
    515 / 16
    Error Seconds (Local/Remote):
    0 / 0
    Heres a ping test now
    http://www.pingtest.net/result/56620201.png
    And a tracert to bbc.co.uk
    C:\Users\Gary>tracert bbc.co.uk
    Tracing route to bbc.co.uk [212.58.241.131]
    over a maximum of 30 hops:
    1 <1 ms <1 ms <1 ms BTHomeHub.home [192.168.1.254]
    2 12 ms 12 ms 12 ms esr19.edinburgh8.broadband.bt.net [213.1.130.142
    3 14 ms 13 ms 13 ms 213.1.130.13
    4 20 ms 20 ms 20 ms 213.1.69.162
    5 21 ms 22 ms 21 ms 213.120.157.78
    6 20 ms 21 ms 20 ms 213.120.157.178
    7 21 ms 70 ms 22 ms acc1-10GigE-7-3-0.mr.21cn-ipp.bt.net [109.159.25
    0.98]
    8 29 ms 27 ms 28 ms core1-te0-5-0-1.ealing.ukcore.bt.net [109.159.25
    0.20]
    9 28 ms 28 ms 47 ms peer2-xe0-0-0.telehouse.ukcore.bt.net [109.159.2
    54.102]
    10 27 ms 28 ms 27 ms 194.74.65.42
    11 * * * Request timed out.
    12 28 ms 29 ms 27 ms ae1.er01.rbsov.bbc.co.uk [132.185.254.46]
    13 28 ms 28 ms 28 ms 132.185.254.142
    14 29 ms 27 ms 29 ms virtual-vip-231.thdo.bbc.co.uk [212.58.241.131]
    Trace complete.
    So would disableing the BTFON reduce the ping at all?
    Thanks

  • Wism version 2 support feature "enable NAT address?

    hi all
    i would like to ask some question that wism v 2 support feature nat address? because i see in configuration guide it just tell about wlc 5508. So, please give me or share information.
    Thanks.

    Well that is the thing... will it work if you are using multiple ap managers?  What I was told is that the ap's still need to communicate with the management interface with the 2504, 5508... the newer stuff.  Its not like the 4400's where if you break up the management and the ap manager, you can actually isolate the ap manager on a vlan with the aps and the aps will communicate with the ap manager interface only.  The newer controllers don't function like that.  We had a client that migrated  and wanted to keep everything the same.... well it didn't work.  We had to enable routing between the ap manager subnet and the management.  I never split them apart and don't know why people do
    Maybe we can get George to test it out
    Thanks,
    Scott
    Help out other by using the rating system and marking answered questions as "Answered"

  • Send RTP stream to NAT address

    Hi,
    i want to transmit a RTP stream from a server to a host in a LAN.
    This host has a NAT address and it's non real IP address, so i can't send any stream trought usage of SessionManager API because it need to know a public IP.
    The other issue is that in a LAN, in most popular cases, there is a firewall that close the connection from internet to their hosts.
    I think this solution:
    1) LAN's hosts can intiate the connection with server sending a non real RTP data
    2)Server store the SessionManager of this connection
    3)server can send your RTP stream now
    Someone have a more good solution or any suggestion?
    Thank for all
    [email protected]

    I have one appletTransmitter that capture video from webcam and transmit it to other client on internet.
    I try to transmit medialocator from appletTransmitter to servlet1 and then save MedialLocator as servlet attribute, then other client can connect to servlet2 that send saved MediaLocator to appletClient.
    APPLETTRANSMITTER:
    URL url=null;
    MediaLocator media=new MediaLocator("vfw://0");
    try{
    url = new URL("http://localhost:8080/servlet1");
    catch(MalformedURLException mue){mue.printStackTrace();}
    URLConnection conn=null;
    try{
    conn = url.openConnection();
    catch(IOException ioe){ioe.printStackTrace();}
    conn.setDoOutput(true);
    OutputStream os=null;
    ObjectOutputStream oos=null;
    InputStream in=null;
    ObjectInputStream iin=null;
    MediaLocator mResp=null;
    String r=null;
    try{
    os=conn.getOutputStream();
    oos=new ObjectOutputStream(os);
    oos.writeObject(media);
    //oos.writeObject("Prova Servlet");
    oos.flush();
    catch(IOException io){io.printStackTrace();}
    catch(ClassNotFoundException cn){cn.printStackTrace();}
    SERVLET1
    ObjectInputStream objin = new ObjectInputStream(request.getInputStream());
    MediaLocator ml =null;
    try{
    ml = (MediaLocator) objin.readObject();
    context.setAttribute("media",ml);
    catch(ClassNotFoundException e)
    {e.printStackTrace()}
    But on servlet1 there is a ClassNotFoundException: MediaLocator
    What do we think about the solution and exception problem?
    Best Regards,
    Nico from Italy

Maybe you are looking for