Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

pro 3060 ack syn block

Status
Not open for further replies.

thompom

Technical User
Dec 4, 2006
395
0
0
GB
Hi - my sonicwall pro 3060 had a s/ware upgrade to ver 4.2.1.0 on Friday and now blocks LAN > LAN packets to webserver, below is the message from the log:

1 08/08/2010 17:44:56.688
Debug Network TCP packet received on non-existent/closed connection;

TCP packet dropped 10.48.180.136, 80, X0, SERV1 (admin) 10.80.159.20, 1753, X0 TCP Flag(s): ACK SYN

any ideas how to handle this?
 
Do you have any UTM services filering traffic?

How does 10.48.180.136 pass through the sonicwall to get to 10.80.159.20? What are the subnet masks? Are you using VLANs?
 
Hi - thanks for your reply
I have CFS standard subscription - but this should only do WAN traffic?

"How does 10.48.180.136 pass through the sonicwall to get to 10.80.159.20?"

this is a good question as a tracert shows it going nowhere near the sonicwall - but to sort this issue I rolled back the sonicwall config to the old version and it started working again???

 
...also the working version of firmware is 4.2.0.1-12e
 
and I did manage to sort the web server issue by adding static return routes on the server to my remote sites - however I cant install my new wirlessN until I upgrade the firmware
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top