SQL & Telnet / ssh sessions are getting disconnected .
I have set the SQL Telnet / SSH time out values two 2160 Minutes , but stil this is getting disconnected.
I have enabled the ALG for SQL .
I have a Policy - ANY - ANY from Client to Server zone configured on Netscreen.
Following is the output of Getflow :
ns5200-> get flow
flow action flag: 28000034
flow GRE outbound tcp-mss is not set
flow GRE inbound tcp-mss is not set
flow change tcp mss option for all packets is not set
flow change tcp mss option for outbound vpn packets is not set
flow change tcp mss option for bi-directional vpn packets is not set
flow deny session disabled
TCP syn-proxy syn-cookie disabled
Log dropped packet enabled
Allow dns reply pkt without matched request : NO
Check TCP SYN bit before create session & refresh session only after tcp 3 way handshake : NO
Check TCP SYN bit before create session : YES
Check TCP SYN bit before create session for tunneled packets : YES
Enable the strict SYN check: NO
Use Hub-and-Spoke policies for Untrust MIP traffic that loops on same interface
Check unknown mac flooding : YES
Skip sequence number check in stateful inspection : NO
Drop embedded ICMP : NO
ICMP path mtu discovery : NO
ICMP time exceeded : YES
TCP RST invalidates session immediately : NO
Force packet fragment reassembly : NO
flow log info: 0.0.0.0/0->0.0.0.0/0,0
flow initial session timeout: 100 seconds
flow session cleanup time: 2 seconds
early ageout setting:
high watermark = 100 (1000064 sessions)
low watermark = 100 (1000064 sessions)
early ageout = 2
RST seq. chk OFF
MAC cache for management traffic: OFF
Fix tunnel outgoing interface: OFF
MCAST HW Ssss install: NO
session timeout on route change is not set
reverse route setting:
clear-text or first packet going into tunnel: prefer reverse route (default)
first packet from tunnel: always reverse route (default)
Close session when receive ICMP error packet: YES
Passing through only one ICMP error packet: NO
ns5200->
***********************************************************************************
The SQL throws an error : " END of Communication Channel " in the client .
The Ping to the server does not show any drops !!!
The Telnet session to the server also gets disonnected .. ( mostly in session idle conditions)
Please revert.
Regards,