From: (no name) (no email)
Date: Fri Feb 27 2004 - 14:46:56 EST
On Fri, 27 Feb 2004, Joshua E Warchol wrote:
> I agree that it sounds most like a firewall mucking things up. I can only
> guess then that the firewalling device must be before my data gets onto
> the internet. I'll check with our Network Engineers, but they usually don't
> do things more detailed than blocking a port used by Worms/Virii.
>
Look for a NAT device running out of memory for connection state. Also
look for assymetric paths accross stateful firewalls, the inbound traffic
will be allowed only after you send outbound traffic, so if you have
redundant stateful firewalls and route flaps, the inbound traffic might
periodically switch to a firewall that has not seen any outbound traffic.
-- Viktor.
|
|
|