No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


Access in extranet through USG3000 catch long delay problem

Publication Date:  2012-09-20 Views:  80 Downloads:  0
Issue Description
Customer access in Internet very slow through our equipment,ping extranet also catch long delay and will drop packages
Alarm Information
Handling Process
telnet to customer equipment,after recognize that generating attack log,configure some ACL for equipment,and startup attack defense,but customer say access network was also very slow
then let customer round our equipment and test,customer say it is all right
then doubting problem is software version,the version is secospace USG3000 V100R002C01SPC002,while found a patch is for solution of drop packages
introduce of patch:upstream router sent not all FF ARP request  message was drop by firewall as an ARP deceive message,result in upstream router considered offline,and did not sent following message
suggesting customer upgrade to V100R002C01SPC100,if not use UTM,suggest degrade to V100R001C03SPC300 is more energy efficient. Then customer update to V100R002C01SPC100,problem was settled
Root Cause
Doubting configuration of customer,or to be attacked
If we found customer’s equipment is USG3000 V100R002C01SPC002,if want to use UTM function,suggest upgrade to V100R002C01SPC100,if not use UTM,suggest degrade to V100R001C03SPC300