I raised the issue with TAC. But I was wondering if someone has ever observed that sessions fail due to the gateway mishandling the packet.
I observice this in a pcap gathered with fw monitor.
On the (i) stage I have a Normal SYN packet for the new session inluding a MSS value of 1460.
On the (I) stage the SYN flag is gone and an ACK flag appeared out of thin air.
Everything else looks the same. A redacted screenshot is attached.
The mishandling is consistent for this particular session. The next connection from the same client to the same host hapens without incident.
It happens on a minority of the sessions.
<< We make miracles happen while you wait. The impossible jobs take just a wee bit longer. >>