Sitting behind a Cisco 7206 perimeter router and 2
load balanced Gauntlet FWs on Solaris, internal client
browsers cannot access a few distinct, unrelated web
sites.  Either 403 errors (Netscape) or blank page
(IE) returned.  Our upstream provider is unable to
access these particular sites as well.

>From an unadvertized host in our DMZ (directly off the
perimeter router) I am able to access the sites 80% of
the time.  Had a similar problem a while back when it
was determined that a device hosting the remote web
server was limiting MTU size.  Our upstream provider
put in place a workaround to match max MTU size
between us and remote site.   

1) Does this sound like an MTU-related problem or more
a DNS issue if remote site is attempting to do
resolution to determine if we are coming from a
particular domain?

2) Is there anything we can do at our site either on
router or firewalls to at least give us the same,
albeit less-than-stellar, results we get from our DMZ?

If more info is needed I will attempt to supply, but
cannot give too many specifics.

Any thoughts appreciated.

Joe Volk

__________________________________________________
Do You Yahoo!?
Make a great connection at Yahoo! Personals.
http://personals.yahoo.com
_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
http://lists.gnac.net/mailman/listinfo/firewalls

Reply via email to