Quantcast
Channel: ScreenOS Firewalls (NOT SRX) topics
Viewing all articles
Browse latest Browse all 763

SSG550 VIP: TCP connection all Reset.

$
0
0

We setup new server(192.168.53.47) in "Trust" zone with VIP to port 443 but all TCP connection(Untrust to Trust) was reset due to sequence number error (I analyzed from Wireshark), TCP connection was reset from client to server after [SYN, ACK] from Server. But we have other servers(HTTPS service) in the "Trust" zone with same subnet, using MIP is working fine. I found an article about the Bug in Juniper kb, I also tried the workaround but failed.

Juniper KB

 

From this screenshot, I can see the traffice successfully translated to Server but connection was Closed. When I moved the server to DMZ zone, its working fine..

VIP.jpg

Juniper OS Firmware 6.1.0r2.0

Any help appreciated.


Viewing all articles
Browse latest Browse all 763

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>