Hi,
I have some problems when managing the ISG1000 using NSM.
1) The Web UI access to Firewall console is sluggish & it is signaficantly slower than expected. It taks about 10seconds to fully load a page. The cpu usage is very low. What could have cause this problem?
2) IDP (IPS) function is turned on (only for ONE firewall policy) for testing & event logging, however the network packet which matchs this firewall rule become very slow and with the ping test pattern as shown below.
C:\Documents and Settings\user>ping 10.25.1.35 -t
Pinging 10.25.1.35 with 32 bytes of data:
Request timed out.
Request timed out.
Request timed out.
Request timed out.
Reply from 10.25.1.35: bytes=32 time<1ms TTL=127
Reply from 10.25.1.35: bytes=32 time=1ms TTL=127
Reply from 10.25.1.35: bytes=32 time<1ms TTL=127
Request timed out.
Request timed out.
Request timed out.
Reply from 10.25.1.35: bytes=32 time<1ms TTL=127
Reply from 10.25.1.35: bytes=32 time=2ms TTL=127
Is it normal after enable IDP?
3) When I try to update device in the NSM it will earse my modified configuration in the firewall and apply the configuration in the NSM. Is there any ways to update the NSM from the firewall? I highlighted this because NSM is running on Java & it is slow to amend firewall configuration & need to put extra effort to update device setting.
4) There is error when I update the device after enable IDP and "All attack" was select.