by saubrey » Aug 05 04 5:31 pm
>Was kavss.exe also running on minimal CPU useage ?
Yes. There were no processes consuming abnormal cpu. This included Wingate.exe and the two kavss.exe processes
>Now, at the time it locks like that - FTP and SOCKS can still go
>through, correct ?
Yes, FTP, Socks, and NAT all continue to work. Only www server hangs. I also have POP3 proxy and RSTP proxy configured, but I did not notice if they still worked
>I'm going to try to work out where this happens - because it doesn't
>sound as if it's connectivity from the client to the WinGate Server OR
>from the WinGate Server to the outside world.
>You can still lookup names, download files, etc. through the FTP proxy, >correct ?
OK, I admit that this time I did not try FTP to see that it was still working. I am also not certain this time that socks was working. Previous times with 5.2.3, FTP & socks continued to work when www proxy hung as previously I did specifically try them, but I did not try socks and ftp this time. This time I am only certain that NAT continued to work. I suspect that socks continued to work only becuase AOL IM continued to work and most of my computers have AOL IM configured to use socks proxy. However one computer is still configured not to use any proxy for AOL IM...I"m not sure which computer(s) were being used to run AOL IM at the time www proxy hung.
>Also, you can go offline and online in GateKeeper, with no problems, >correct ?
This time, yes. I was able to go offline then online with Gatekeeper. Also I was able to successfully stop, the restart Wingate engine. Howerver, other times with 5.2.3 and pervious versions, only sometimes could I successfully go offline/online with GateKeeper and only sometimes could I successfully stop/starte Wingate engine. Ususally with 5.2.3 after 3 or 4 days of running the www proxy would hang and I could stop/start Wingate engine. Then Wingate would run for another few days, and then www proxy would hang again. Usually with the 2nd hang, I could not stop Wingate engine, I would have to reboot win2k.
>can you see
>what happens if you create a secondary HTTP Proxy Service at the
>time when it fails and try to connect one of the clients through that ?
OK, no problem I will try this. BTW I already have two www proxies configured...both stopped working this time. The 2nd www proxy is new for me...I've only been using it for the past month. The 2nd www proxy is configured to accept connections on my external NIC card...when the 1st proxy hung, I tried to connect to the 2nd proxy via the external interface and was unable to, so I assumed that it hung as well. Previously with 5.2.3, when I only had 1 www proxy configured, that single www proxy would hang after 4 - 10 days of running.
>What else might distinguish your setup
I run IIS 5.0 with www server and FTP server.
I run Argosoft smpt/pop3 email server
I run BlackIce Server Protection
All are run on the same win2k server as Wingate.
I run Win2k w/Active Directory
I don't run Puresight. I don't run WG's VPN. I have turned off WG's: DHCP, DNS, Winsock redirector service, pop3 and smtp server . I've got about 20 items defined in WG's port security firewall either to explicitly deny some ports or explicity open them, or to redirect them. I could send you my WG registry entries if you like