FirewallWizards
[Top] [All Lists]

[fw-wiz] PIX 520 webtraffic very slow

To: firewall-wizards@listserv.icsalabs.com
Subject: [fw-wiz] PIX 520 webtraffic very slow
From: Sri <jaadhoo@yahoo.com>
Date: Wed, 7 Feb 2007 23:58:35 -0500 (EST)
Delivered-to: sp-com-lists@consult.net
Delivered-to: fwwizards-list2@consult.net
Delivered-to: firewall-wizards@listserv.cybertrust.com
List-archive: <https://listserv.icsalabs.com/pipermail/firewall-wizards>
List-help: <mailto:firewall-wizards-request@listserv.icsalabs.com?subject=help>
List-id: Firewall Wizards Security Mailing List <firewall-wizards.listserv.icsalabs.com>
List-post: <mailto:firewall-wizards@listserv.icsalabs.com>
List-subscribe: <https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards>, <mailto:firewall-wizards-request@listserv.icsalabs.com?subject=subscribe>
List-unsubscribe: <https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards>, <mailto:firewall-wizards-request@listserv.icsalabs.com?subject=unsubscribe>
Reply-to: Firewall Wizards Security Mailing List <firewall-wizards@listserv.icsalabs.com>
Sender: firewall-wizards-bounces@listserv.icsalabs.com
Hi All,
I have very unusual problem and been trying for the last two days but no luck, hopefully someone here can help me.
I need to access a host on the internet which is hosting mail server and website. In PIX I configured ?access-list inside permit tcp any host 1.2.3.4 255.255.255.255 eq www? and on the router I have ?ip route 1.2.3.4 255.255.255.255 10.100.101.254? (254 is my PIX inside interface).
Setup1, Email and website worked except that each webpage takes anywhere from 40-60 seconds to load, worst than the dialup internet connection. I made sure nothing wrong with website by accessing it from the same desktop by routing the traffic via proxy server.
Setup 2, I removed the ip route statement on router and applied using route-map, router ACL access-list 101 permit tcp any host 1.2.3.4 255.255.255.255 eq www. Same result, email application works perfectly fine, but not the website.
Setup3, Configured the host directly on the desktop and PIX inside interface as the gateway, route ADD 1.2.3.4 MASK 255.255.255.255 10.100.101.254, but yet again same result.
But I have another subnet on the same router working perfectly fine using setup 2 and another interface on the PIX. But all traffic goes out in one internet connection.
I couldn?t find any resources on Cisco website, any help to resolve this issue would be greatly appreciated.
Thanks
Sri
_______________________________________________
firewall-wizards mailing list
firewall-wizards@listserv.icsalabs.com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards
<Prev in Thread] Current Thread [Next in Thread>