SSL inspection getting to 2000 concurrent sessions

Options
kelmi
kelmi Posts: 33 image  Freshman Member
First Comment Friend Collector Eighth Anniversary

Hello,

Seems to be a bug in Flex USG 100 5.41 firmware. The amount of SSL inspection sessions is getting to 2000 and not lowering even if all the computers are removed from the network. Log file also indicates max amount is reached and sessions are passed through. Rebooting USG removes the issue and SSL session statistics goes up and down in realistic manner.

Regards

K

All Replies

  • Zyxel_Melen
    Zyxel_Melen Posts: 4,367 image  Zyxel Employee
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - Switch Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate

    Hi @kelmi

    We are clarifying this issue and I will keep you posted once we have further info.

    During the period, may you share the log "Log file also indicates max amount is reached and sessions are passed through."? Thanks!

    Zyxel Melen


  • kelmi
    kelmi Posts: 33 image  Freshman Member
    First Comment Friend Collector Eighth Anniversary

    Sorry, I don't have the logs anymore. The log file entry was only telling limit for 2000 has been reached and the session is passed through. Normal amount of SSL sessions in my LAN is between 200 - 300 during busy hours.

  • Zyxel_Melen
    Zyxel_Melen Posts: 4,367 image  Zyxel Employee
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - Switch Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate

    Hi @kelmi

    No worry, I have checked this issue with our engineer, but since this is the first case, is it possible for you to provide us a remote PC or remote access to monitor this issue? This could help us to find the root cause of this issue.

    If not, please help to collect the diagnostic file when the issue happens.

    I will send you a private message for this case.

    Zyxel Melen


  • kelmi
    kelmi Posts: 33 image  Freshman Member
    First Comment Friend Collector Eighth Anniversary

    Yes, there seems to be an issue. In the statistics "SSL inspection" menu, the amount of "Concurrent Sessions" is slowly but continuously increasing. E.g after Speedtest is applied or there is Game downloads from Steam. Rebooting the computes do not solve the issue, only rebooting Zyxel.

    I will provide you access after Christmas period But really an annoying issue.

    K