[122222] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: black listing of web traffic

daemon@ATHENA.MIT.EDU (Andrey Gordon)
Tue Feb 9 17:30:41 2010

In-Reply-To: <6FAC881C-28C4-4CA6-8594-9155369594F2@gmail.com>
From: Andrey Gordon <andrey.gordon@gmail.com>
Date: Tue, 9 Feb 2010 17:29:59 -0500
To: Nanog <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

By changing my outbound IP address to a different one (i suspect effectively
resetting sessions) the problem was solved. So, after that I set it back to
the original source NAT. And the sites open up just fine still. It really
behaves like a NAT table exhaustion, but the firewall only reports 13000
sessions in progress for all the NAT addresses on that firewall. I'm
thinking memory leak or something. We only put that device in place this
winter break and this is the second time this is happening. Last time was
about 2-3 weeks ago.

Seems to be fixed for now and the f/w dude is opening a ticket with the f/w
vendor.

-----
Andrey Gordon [andrey.gordon@gmail.com]

home help back first fref pref prev next nref lref last post