Nagios XI https Deny TCP every now and then
-
michal.nastaly
- Posts: 59
- Joined: Tue Jun 02, 2015 9:24 am
Nagios XI https Deny TCP every now and then
Hi,
I have multiple Nagios XI servers withing the environments and a centralized Nagios Fusion serve that pulls information from all the XI servers.
Up to now the connection between the Nagios XI and Nagios Fusion has been http, but we want to change it to https for fairly obvious reasons.
I have used the following guide to set it all up https://assets.nagios.com/downloads/nag ... s%20XI.pdf.
I can browse the Nagios XI server using https, Nagios Fusion can talk to it as well but when monitoring the traffic between two boxes on my asa 5505 i can see that every now and then i get the following message: "Deny TCP (no connection) from <-NagiosXi->:443 to <-NagiosFusion->:<-RandomPort-> flags ACK in interfcae inside"
So from what i can understand is that the Nagios XI box is trying to send packet for a transaction that the firewall already closed.
Can anyone help with this please?
Regard
Michal
I have multiple Nagios XI servers withing the environments and a centralized Nagios Fusion serve that pulls information from all the XI servers.
Up to now the connection between the Nagios XI and Nagios Fusion has been http, but we want to change it to https for fairly obvious reasons.
I have used the following guide to set it all up https://assets.nagios.com/downloads/nag ... s%20XI.pdf.
I can browse the Nagios XI server using https, Nagios Fusion can talk to it as well but when monitoring the traffic between two boxes on my asa 5505 i can see that every now and then i get the following message: "Deny TCP (no connection) from <-NagiosXi->:443 to <-NagiosFusion->:<-RandomPort-> flags ACK in interfcae inside"
So from what i can understand is that the Nagios XI box is trying to send packet for a transaction that the firewall already closed.
Can anyone help with this please?
Regard
Michal
-
scottwilkerson
- DevOps Engineer
- Posts: 19396
- Joined: Tue Nov 15, 2011 3:11 pm
- Location: Nagios Enterprises
- Contact:
Re: Nagios XI https Deny TCP every now and then
It's possible that Fusion was trying to poll data from the XI server but reached the timeout and closed the connection
-
michal.nastaly
- Posts: 59
- Joined: Tue Jun 02, 2015 9:24 am
Re: Nagios XI https Deny TCP every now and then
Just got it working, It dint work in a first place because the active checks were disabled on the hosts.
Cheers
Cheers
Re: Nagios XI https Deny TCP every now and then
That'll certainly do it.
I'll close this topic. Thanks for letting us know.
Former Nagios Employee.
me.
me.
Re: Nagios XI https Deny TCP every now and then
Post unlocked at user's request.
Former Nagios Employee.
me.
me.
-
michal.nastaly
- Posts: 59
- Joined: Tue Jun 02, 2015 9:24 am
Re: Nagios XI https Deny TCP every now and then
Sorry for the confusion, this is still ongoing issue.
I have changed the timeout from 60 to 120 without any result.
I have included a firewall output of what i can see when using HTTPS instead of HTTP for the fused servers. This is the output from firewall close to the Nagios XI server(192.168.6.10).
The address of Nagios Fusion is 10.27.40.4
Does anyone know why that is?
Regards
Michal N
I have changed the timeout from 60 to 120 without any result.
I have included a firewall output of what i can see when using HTTPS instead of HTTP for the fused servers. This is the output from firewall close to the Nagios XI server(192.168.6.10).
The address of Nagios Fusion is 10.27.40.4
Does anyone know why that is?
Regards
Michal N
You do not have the required permissions to view the files attached to this post.
-
michal.nastaly
- Posts: 59
- Joined: Tue Jun 02, 2015 9:24 am
Re: Nagios XI https Deny TCP every now and then
Anyone? Any ideas?
- Box293
- Too Basu
- Posts: 5126
- Joined: Sun Feb 07, 2010 10:55 pm
- Location: Deniliquin, Australia
- Contact:
Re: Nagios XI https Deny TCP every now and then
On the Fusion server, is anything logged in /var/log/httpd/error_log when the timeout occurs?
As of May 25th, 2018, all communications with Nagios Enterprises and its employees are covered under our new Privacy Policy.
-
michal.nastaly
- Posts: 59
- Joined: Tue Jun 02, 2015 9:24 am
Re: Nagios XI https Deny TCP every now and then
[Wed Mar 16 09:42:19 2016] [error] [client 10.64.110.18] PHP Warning: Invalid argument supplied for foreach() in /usr/local/nagiosfusion/html/includes/dashlets/servicegroup/servicegroup.inc.php on line 177, referer: http://10.64.110.20/nagiosfusion/dashbo ... ?id=rq7k65
[Wed Mar 16 09:42:43 2016] [error] [client 10.64.110.18] PHP Warning: Invalid argument supplied for foreach() in /usr/local/nagiosfusion/html/includes/dashlets/servicegroup/servicegroup.inc.php on line 177, referer: http://10.64.110.20/nagiosfusion/dashbo ... ?id=55edc9
[Wed Mar 16 09:42:51 2016] [error] [client 10.64.110.18] PHP Warning: Invalid argument supplied for foreach() in /usr/local/nagiosfusion/html/includes/dashlets/servicegroup/servicegroup.inc.php on line 177, referer: http://10.64.110.20/nagiosfusion//dashb ... ?id=rq7k65
[Wed Mar 16 09:43:15 2016] [error] [client 10.64.98.47] PHP Warning: Invalid argument supplied for foreach() in /usr/local/nagiosfusion/html/includes/dashlets/servicegroup/servicegroup.inc.php on line 177, referer: http://10.64.110.20/nagiosfusion/dashbo ... ?id=rq7k65
[Wed Mar 16 09:43:18 2016] [error] [client 10.64.110.18] PHP Warning: Invalid argument supplied for foreach() in /usr/local/nagiosfusion/html/includes/dashlets/servicegroup/servicegroup.inc.php on line 177, referer: http://10.64.110.20/nagiosfusion/dashbo ... ?id=rq7k65
[Wed Mar 16 09:43:44 2016] [error] [client 10.64.110.18] PHP Warning: Invalid argument supplied for foreach() in /usr/local/nagiosfusion/html/includes/dashlets/servicegroup/servicegroup.inc.php on line 177, referer: http://10.64.110.20/nagiosfusion/dashbo ... ?id=55edc9
this are the errors i get in error_log file. it logs few lines per minute.
[Wed Mar 16 09:42:43 2016] [error] [client 10.64.110.18] PHP Warning: Invalid argument supplied for foreach() in /usr/local/nagiosfusion/html/includes/dashlets/servicegroup/servicegroup.inc.php on line 177, referer: http://10.64.110.20/nagiosfusion/dashbo ... ?id=55edc9
[Wed Mar 16 09:42:51 2016] [error] [client 10.64.110.18] PHP Warning: Invalid argument supplied for foreach() in /usr/local/nagiosfusion/html/includes/dashlets/servicegroup/servicegroup.inc.php on line 177, referer: http://10.64.110.20/nagiosfusion//dashb ... ?id=rq7k65
[Wed Mar 16 09:43:15 2016] [error] [client 10.64.98.47] PHP Warning: Invalid argument supplied for foreach() in /usr/local/nagiosfusion/html/includes/dashlets/servicegroup/servicegroup.inc.php on line 177, referer: http://10.64.110.20/nagiosfusion/dashbo ... ?id=rq7k65
[Wed Mar 16 09:43:18 2016] [error] [client 10.64.110.18] PHP Warning: Invalid argument supplied for foreach() in /usr/local/nagiosfusion/html/includes/dashlets/servicegroup/servicegroup.inc.php on line 177, referer: http://10.64.110.20/nagiosfusion/dashbo ... ?id=rq7k65
[Wed Mar 16 09:43:44 2016] [error] [client 10.64.110.18] PHP Warning: Invalid argument supplied for foreach() in /usr/local/nagiosfusion/html/includes/dashlets/servicegroup/servicegroup.inc.php on line 177, referer: http://10.64.110.20/nagiosfusion/dashbo ... ?id=55edc9
this are the errors i get in error_log file. it logs few lines per minute.
Re: Nagios XI https Deny TCP every now and then
When this happens, do you notice anything on the error_log with the XI machine?
Are these systems on the same LAN?
Are these systems on the same LAN?
Former Nagios Employee