Hello, i know this is an old post but hoping you might be able to help.
i am having some issues pin pointing connection resets for a payment application. trying to find out if the firewall is at fault so something else is along the path.
i'm seeing First Packet isn't SYN being dropped by the firewall with the flag -FIN-PUSH-ACK. the timings of these drops don't match exactly with the connection errors seen for the payment application but there are some of these drops around the same time as connection problems. we also see them regularly throughout the day.
not done any work to resolve just yet as not sure what the best approach would be seen various 'solutions': change TCP end Timeout, exclude IPs from SecureXL. disable HTTPsi, its enabled but connection is already excluded as its payment related. Failover firewalls.
would you have any suggestions based on the flag we see, FIN-PUSH-ACK
Many thanks,
Anette