System Limitations on Accessing Remote TCP/IP Ports

arrow Microsoft introduces a limit (of 10) to restrict number of allowed simultaneous outgoing half-open TCP connections in Windows XP SP2(x86,x64)/SP3, 2003 Server SP1(x86)/SP2(x86,x64), Vista without SP(x86,x64) and with SP1(x86,x64) to prevent virus or malicious program to make unlimited infectious connections to other systems. These operating systems slow down the IP address range scanning through the connection to a TCP port for all running applications (the ICMP ping is not affected) on a PC.

This limitation can effect negatively on the traffic sensor operation: remote agents and packet sniffer causing the "Failed to connect to remote agent: Connect timed out" error.

arrow When this limitation occurs, you will see the event ID 4226 with error message "TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts" in the application Event Log.

The network scanning and the bandwidth monitoring results provided by our program can be affected by this limitation. Some hosts can not be found and the program can be locked by the system for 10 seconds or more periodically.

arrow If this does happen, please consider the following solutions:

arrow The complete removal of the limit for half-open outbound TCP connections, which is defaulted to 10, was finalized with the release of Windows Server 2008 and Vista SP2 Build 17506. In fact, the half-open outgoing TCP connection limit has been bypassed by default since Windows Vista SP2 RC Build 16670.

Microsoft adds a registry key that allows user or administrator to enable (turn on) or disable (turn off) the half-open TCP connections limit in Windows Vista with Service Pack 2 and in Windows Server 2008 with Service Pack 2.

arrow There are a lot of patches for the tcpip.sys driver that disable the limit or raise the number of allowed connections. You can search the Internet for the "half-open TCP connections limit " phrase and find the patches.

 

Download Network Bandwidth Monitor 30-day trialDownload Network Bandwidth Monitor - Free 30-Day Trial Version

Order Network Bandwidth MonitorBuy Now! (from $149.95)

 

 

Products:
Network Inventory Explorer
Inventory Hardware and Software on Network Computers

Network Monitor
Monitor Network Hosts, Servers, Switches, and Other Devices

LANState
Monitor Network Servers, Create Visual Network Maps

Bandwidth Monitor
Monitor Network Bandwidth and Traffic Usage

Network Diagram
Create Network Diagrams and Maps Automatically

Network File Search
Search Files on Local Network and FTP Servers

Connection Monitor
Monitor and Audit Access to Your Shared Folders and Files

SearchMyDiscs
Catalog Discs, Create CD/DVD Database, Search Files on Discs

Log-Analyzer
Analyze Your Apache/RAW Log Files

Site Map | Privacy Policy | Links
Copyright © 1999-2012, 10-Strike Software