This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Session Exceed On IPS Astaro 8.305

Hi..Greetings to All Astaro Sophos member.

I have problem with my Astaro IPS since upgrade from V7.10 to V8.305. IPS keep produce warning " Session Exceed configure max bytes to queue 1048576 using 1048945 bytes [client queue] 180.214.232.26 9564 --> 192.168.100.102 80 LWstate 0x9 LWFlags 0x6007". Please see attachment for log detail.

Is it Astaro Bugs ? Please Advice. Thx [:)]


This thread was automatically locked due to age.
Parents
  • Do a google on site:astaro.org "Exceeded configured max bytes to queue" and you'll see that that is a known issue that affects very few installations.  Support should be able to increase your max bytes to queue setting.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Hi, BALfson.

    Thx for your reply, i will contact our support immediately.
  • It would be interesting to know what Sophos support is doing and how they do it so home users with the same issue can fix it.
  • Hi BAflson,

    Unfortunately, our local support don't know what to do. And they asking to remote our firewall. Our Policy don't allow that activities. Could you help us, what should we do ? . I'm sure maybe this is snort default configuration problem.

    Thx [:)]
  • You have to go the way with the Sphos Support. If you change settings via shell on your own, you will loose support...

    So if your policies don't allow remote support, you will hav to ask for an exception... [;)]

    ----------
    Sophos user, admin and reseller.
    Private Setup:

    • XG: HPE DL20 Gen9 (Core i3-7300, 8GB RAM, 120GB SSD) | XG 18.0 (Home License) with: Web Protection, Site-to-Site-VPN (IPSec, RED-Tunnel), Remote Access (SSL, HTML5)
    • UTM: 2 vCPUs, 2GB RAM, 50GB vHDD, 2 vNICs on vServer (KVM) | UTM 9.7 (Home License) with: Email Protection, Webserver Protection, RED-Tunnel (server)
Reply
  • You have to go the way with the Sphos Support. If you change settings via shell on your own, you will loose support...

    So if your policies don't allow remote support, you will hav to ask for an exception... [;)]

    ----------
    Sophos user, admin and reseller.
    Private Setup:

    • XG: HPE DL20 Gen9 (Core i3-7300, 8GB RAM, 120GB SSD) | XG 18.0 (Home License) with: Web Protection, Site-to-Site-VPN (IPSec, RED-Tunnel), Remote Access (SSL, HTML5)
    • UTM: 2 vCPUs, 2GB RAM, 50GB vHDD, 2 vNICs on vServer (KVM) | UTM 9.7 (Home License) with: Email Protection, Webserver Protection, RED-Tunnel (server)
Children
No Data