Screen OS

last person joined: 8 months ago 

This is a legacy community with limited Juniper monitoring.
  • 1.  Close Reason : Close - TCP RST

    Posted 06-15-2010 05:17

     

    Date/Time

    Source Address/Port

    Destination Address/Port

    Translated Source Address/Port

    Translated Destination Address/Port

    Service

    Duration

    Bytes Sent

    Bytes Received

    Close Reason

    2010-06-15 15:55:31

    172.16.3.4:2371

    172.16.100.5:1521

    172.16.3.14:2371

    172.16.100.5:1521

    SQL*NET V2

    265 sec.

    3890

    2082

    Close - TCP RST

    2010-06-15 15:51:07

    172.16.3.4:2358

    172.16.100.5:1521

    172.16.3.14:2358

    172.16.100.5:1521

    SQL*NET V2

    266 sec.

    48762

    67366

    Close - TCP RST

    please HELP

    my Firewall is SSG-350M

    every 3 or 4 min my application prompt  " not connected to ORACLE" and trust to tunnel-zone logging "Close - TCP RST"

     

    how disable TCP-rst?

     

    my map is:

    trust interface (192.168.1.0) ----> untrust interface for tunnel ----> trust tunel zone (192.168.100.0)

    e

     

     

    set zone "Trust" tcp-rst  and unset zone "Trust" tcp-rst

    set zone "untrust" tcp-rst  and unset zone "untrust" tcp-rst

    set zone "tunnel-zone" tcp-rst  and unset zone "tunnel-zone" tcp-rst

    unset flow tcp-syn-bit-check and ununset flow tcp-syn-bit-check

    set service "SQL*Net V2" timeout never

     

    this commands did not help

     

    please simple help

     

    tnx.



  • 2.  RE: Close Reason : Close - TCP RST

    Posted 06-15-2010 07:25

    Hi!

     

    Is "flow tcp-rst-invalid-session" set or unset on your firewall?

    Do you see any error messages in the application logs like "Connection reset by remote peer"?

     

    Kind regards,

    Edouard



  • 3.  RE: Close Reason : Close - TCP RST
    Best Answer

    Posted 06-15-2010 08:02

     

    Dsabling SQL ALG  may  solve the issue

     

    FW> get alg  ( to see the list of ALGs )

     

    FW> unset alg SQL enable

    FW > save

     

     



  • 4.  RE: Close Reason : Close - TCP RST

    Posted 06-15-2010 20:39

    Thanks very much "SSHSSH"

    Thanks to a large Kurdish

    tnx tnx tnx