ScreenOS Firewalls (NOT SRX)
Reply
Contributor
dcruz
Posts: 30
Registered: ‎03-04-2008
0

extended av on ssg 140

I tried moving to the extended AV pattern on our SSG 140 and started to get "AV pattern file size too large" messages on the firewall.  'get file info' output is 'There are 98674688 bytes free (120975360 total) on disk "flash:"', which I believe is sufficient for the extended signatures, so what could be causing this?
Trusted Expert
AndyC
Posts: 441
Registered: ‎07-08-2008
0

Re: extended av on ssg 140

Hi,

 

What version of code are you running?

 

Regards

 

Andy

JNCIS-FWV
JNCIA-WX
JNCIA-SSL
JNCIA-ER
Contributor
dcruz
Posts: 30
Registered: ‎03-04-2008
0

Re: extended av on ssg 140

6.1R3
 

Trusted Expert
AndyC
Posts: 441
Registered: ‎07-08-2008
0

Re: extended av on ssg 140

Hi,

 

I have just tried it on my SSG20 as getting the same error message. I know the the firewalls used to be limited to a 10mb max for the pattern size and the extended pattern size is about 30mb. So I dont know if you have to do something to allow it to save the 30mb, you would have though it would do that when you set it to Extended mode.

 

Had a look in the message log guide and it recommend opening a TAC case if you get the message. Hope fully one of the other forum people might be able to shed some light.

 

Regards

 

Andy

JNCIS-FWV
JNCIA-WX
JNCIA-SSL
JNCIA-ER
Super Contributor
oldtimer
Posts: 227
Registered: ‎11-06-2007
0

Re: extended av on ssg 140

It's a known Kaspersky issue.  They are going to try to stay within the 30 MB limit, but we'll see how that goes.
Contributor
dcruz
Posts: 30
Registered: ‎03-04-2008
0

Re: extended av on ssg 140

... so what I'm hearing is that I'm better off just setting it down to standard.

 

Thanks!

Copyright© 1999-2013 Juniper Networks, Inc. All rights reserved.