NG FP3 (HFA316)
On Nokia IP350
We have An AIX server running Websphere in one DMZ communicating with a Datastore running in another DMZ
After an initial session is established the websphere server sends an ICMP request every 12 minutes. this is rejected by the firewall as ICMP packet to large. If the websphere server tries to communicate with the datastore after 1 hours idle (has been sending icmp request every 12 minutes) the is rejecting the requests as "out of state"
i am assuming that after 3600 seconds - session timeout setting in peramiters that the firewall is closing the session but the websphere server is unaware.
i have adjusted the Max ping size setting in smart defence from FP3's default 64 bytes to AI's default of 548 (RFC recomended) but this hasnt cured the problem i am still getting ICMP packet too large.
On Nokia IP350
We have An AIX server running Websphere in one DMZ communicating with a Datastore running in another DMZ
After an initial session is established the websphere server sends an ICMP request every 12 minutes. this is rejected by the firewall as ICMP packet to large. If the websphere server tries to communicate with the datastore after 1 hours idle (has been sending icmp request every 12 minutes) the is rejecting the requests as "out of state"
i am assuming that after 3600 seconds - session timeout setting in peramiters that the firewall is closing the session but the websphere server is unaware.
i have adjusted the Max ping size setting in smart defence from FP3's default 64 bytes to AI's default of 548 (RFC recomended) but this hasnt cured the problem i am still getting ICMP packet too large.