[FW-1] Checkpoint dns trouble

2006-12-22 Thread Lars Troen
I've been trying to reach usercenter.checkpoint.com today (and last night), but it's not working. $ ping usercenter.checkpoint.com ping: unknown host usercenter.checkpoint.com $ nslookup usercenter.checkpoint.com Server: 158.38.48.10 Address:158.38.48.10#53 ** server can't

Re: [FW-1] Problems Configuring Site-to-Site VPN

2006-12-22 Thread fwguru
Make sure that you have Hub Mode enabled on the vpn client and enable hub mode on the gateway. all traffic from the client will travel thru the tunnel. once received, the firewall's routing table will handle the rest. Neil Delacruz On 12/21/06, Brooks, George CTR [EMAIL PROTECTED] wrote: I

[FW-1] modprobe: Can't locate module n and insmod in diskwait

2006-12-22 Thread David Landgren
Hello list, I'm puzzled by the following behaviour. I have a SecurePlatform (the hardened RH Linux) and it's trying to load a module and not succeeding. I noticed it because run queue is permanently jammed at 1.00. For starters, if I run top and filter out the non-idle processes I see:

[FW-1] Port Scan(sweep scan) traffic blocking

2006-12-22 Thread P.V.Sankar
Hi List, We have our network setup like this for accessing internet. client squid proxyNGX Firewallinternet Ours is a heterogeneous environment with hundreds of Windows, Linux, Solris clients. Our squid proxy version is 2.5 running on Fedora. Squid proxy accepts traffic on port

[FW-1] checkpoint dns

2006-12-22 Thread pkc_mls
Hello, I have some dns troubles to reach www.checkpoint.com. could anybody give me the ip address of www.checkpoint.com and secureknowledge.checkpoint.com ? thanks ___ Découvrez une

[FW-1] Blocking Port Scan packets

2006-12-22 Thread P.V.Sankar
Hi List, We have our network setup like this for accessing internet. client squid proxyNGX Firewallinternet Ours is a heterogeneous environment with hundreds of Windows, Linux, Solris clients. Our squid proxy version is 2.5 running on Fedora. Squid proxy accepts traffic on port

Re: [FW-1] OWA Outlook Web Access in DMZ...need access to Active Directory...

2006-12-22 Thread Ray
Yep, that's precisely what I do. http://www.isaserver.org has a lot of articles that will help you. I've got the ISA external interface on a CP DMZ and the ISA internal interface on a subnet that will take it to the LAN. ISA 2004 is a pretty respectful box (when it's behind FW-1, that is) :-)

Re: [FW-1] Problems Configuring Site-to-Site VPN

2006-12-22 Thread Chris H
You are trying to use a VPN client outside of your network to connect to your R55 FW then from your R55 FW back into a VPN tunnel to another FW? CGH --- Brooks, George CTR [EMAIL PROTECTED] wrote: I am trying to configure a Site-to-Site VPN on a Nokia IP380 running Checkpoint R55. I want to