Forum Discussion

Gabriel_Basson's avatar
Gabriel_Basson
Icon for Nimbostratus rankNimbostratus
Mar 10, 2020

According to Cisco F5 does not close connections to the Cisco FirePower Firewall..

Good day F5 Experts

 

According to Cisco F5 does not close connections to the Cisco FirePower Firewall.

They say that the BigIP does not always send RST packets to close the connection, thus the firewall sits with 60000 connections and the BigIP with 20000, so there are 40000 stale connections on the firewall.

The F5 BigIP is sanwidged between the External Zone and Internal Zone of the Cisco FirePower.

 

The BigIP is running on 13.1.1.4 Build 0.116.4.

 

Did you ever experience something like this and is there a solution for it?

 

Kind Regards

Gabriel

1 Reply

  • What sort of connections?

     

    What is the BigIP doing to terminate the connection?

    A reset isn't a normal way to close a valid connection

     

    We need some more information ...