SonicWall, alert message

SonicWall, alert message

am 10.01.2007 04:02:58 von Woody

Im getting an alert on my sonicwall as follows:

The cache is full; 32768 open connections; some will be dropped

I'm experience a LOT of network issue, pages timing out or failing to
load. I restart the firewall, but it doesn't seem to make a
difference. 5 mins after a restart the same symptoms show up.

Any suggests if this could be the problem? And if so, what could be
causing it?

Thanks

Re: SonicWall, alert message

am 10.01.2007 04:53:45 von Wolfgang Kueter

woody wrote:


> Im getting an alert on my sonicwall as follows:
>
> The cache is full; 32768 open connections; some will be dropped

What particular model do you use, how many computers are behind it?

> I'm experience a LOT of network issue, pages timing out or failing to
> load.

Well, that is pretty normal when the device has reached its limits.

> I restart the firewall, but it doesn't seem to make a
> difference. 5 mins after a restart the same symptoms show up.
>
> Any suggests if this could be the problem?

The number of connections is limited to some 32000.

> And if so, what could be causing it?

Too much connections are caused by too much machines behind it causing too
much traffic etc. Get a bigger device, the one you own is obviuosly too
small Besides that a faster uplink might also help because connections get
closed quicker since the transfer time is shorter on a faster line which
will make connections disappear from the connection state table faster.

In general I'd say that you need more ressources ...

Wolfgang

Re: SonicWall, alert message

am 10.01.2007 16:43:49 von Woody

I've got the SonicWall 2040 firewall.

At any given time there are usually between 28 and 32 computers behind
the firewall.

Thanks for the input. I figured it was a network traffic issue, just
wanted to verify the connection limit. 32768 seems to be when we start
dropping packets and getting the errors.

No more internet music and chatting for our users! ;-)

Thanks, again, for the input. As I said, just wanted to get
verification.

Thanks

Wolfgang Kueter wrote:
> woody wrote:
>
>
> > Im getting an alert on my sonicwall as follows:
> >
> > The cache is full; 32768 open connections; some will be dropped
>
> What particular model do you use, how many computers are behind it?
>
> > I'm experience a LOT of network issue, pages timing out or failing to
> > load.
>
> Well, that is pretty normal when the device has reached its limits.
>
> > I restart the firewall, but it doesn't seem to make a
> > difference. 5 mins after a restart the same symptoms show up.
> >
> > Any suggests if this could be the problem?
>
> The number of connections is limited to some 32000.
>
> > And if so, what could be causing it?
>
> Too much connections are caused by too much machines behind it causing too
> much traffic etc. Get a bigger device, the one you own is obviuosly too
> small Besides that a faster uplink might also help because connections get
> closed quicker since the transfer time is shorter on a faster line which
> will make connections disappear from the connection state table faster.
>
> In general I'd say that you need more ressources ...
>
> Wolfgang

Re: SonicWall, alert message

am 11.01.2007 11:27:59 von Wolfgang Kueter

woody wrote:

> I've got the SonicWall 2040 firewall.

> At any given time there are usually between 28 and 32 computers behind
> the firewall.

That is not much for a device that can handle 32000 connections.

> Thanks for the input. I figured it was a network traffic issue, just
> wanted to verify the connection limit. 32768 seems to be when we start
> dropping packets and getting the errors.
>
> No more internet music and chatting for our users! ;-)

While it is in genneral totally OK to ban such applications in a company
network, these should not make that many connections. A device with a limit
of 32000 connections seems not too small for a network of about 30
computers. The intersting questions is why the connetions stay open in the
firewall. Normally a connection should be deleted from the connection state
table of the firewall when the transfer is completed.

Wolfgang