Configuration changes requires long time to be applied to access gateways

  • 7009455
  • 30-Sep-2011
  • 26-Apr-2012

Environment

Novell Access Manager 3.1 Access Administration
Novell Access Manager 3.1 Linux Access Gateway
Novell Audit Server

Situation

Symptoms:

Every configuration modification that requires an update of the Access Gateways takes a very long time to be applied and create a lack of service for the involved device.

Resolution

Novell Audit logging is enabled for the problem device, but the port 289 on the Novell Audit Logging Server is not reachable as blocked by firewall rules.

Taking a lan trace while updating the configuration on the problem device, and then filtering the trace for the audit server port (default=289) will show the following pattern:



The Access Gateway is trying to communicate with the Audit Server on port 289 without getting any response to its [SYN] requests and this slows down the time needed to complete the configuration updates.

Opening the port 289 between the Access Gateways and the Novell Audit Server will clear the issue and allow the configuration updates to be completed faster.