[nsp] Router running out of memory

Jon Lewis jlewis at lewis.org
Tue Jul 6 23:35:53 EDT 2004


On Thu, 2 Dec 1999, Krzysztof Adamski wrote:

> No NAT on the router, the worm is scanning for port 135, I can't block
> that since they are using it.

If it's not doing CEF, you're probably eating and or fragmenting all the
memory with the route-cache.  You might tune the iomem % (can you do that
on a 2600?) but that's just going to delay the inevitable.  As suggested,
if you can block the worm spreading traffic, that may help.  You could
also turn off route-cache on the ethernet interface...but that's going to
hurt processor load.

----------------------------------------------------------------------
 Jon Lewis                   |  I route
 Senior Network Engineer     |  therefore you are
 Atlantic Net                |
_________ http://www.lewis.org/~jlewis/pgp for PGP public key_________


More information about the cisco-nsp mailing list