>From Checkpoint's KB:

Unable to sucessfuly install security policy on firewall modules
Error messages are displayed in the Policy Install window during the
security policy install
Error: "TCP connectivity failure on port 18191"
Error: "SmartCenter server aborted connection with peer due to timeout =
300,000 (ms) pot 18191"


 Solution

In order to correct the anti-spoofing settings for a particular interface,
proceed with the following:

On the SmartDashboard
1. Select Manage > Network Objects
2. In the Network Objects manager, select the firewall module network object
from the network objects list
3. Click on Edit
4. In the Check Point Gateway dialog box, select the Topology branch from
the left pane
5. In the Topology page, select the appropriate internal interface from the
interfaces list
6. Click on Edit
7. In the Interface Properties dialog box, select the Topology tab
8. In the Topology tab, verify that the "Internal (leads to the local
network)" option is selected
9. Verify that the "Specific" option is selected in the "IP Addresses behind
this interface" section
10. Select the correct network object or group object representing all of
the subnets behind this internal interface from the "Specific" drop down
list
11. Click on OK in the Interface Properties dialog box
12. Click on OK in the Check Point Gateway dialog box
13. Click on Close in the Network Objects dialog box
14. Reinstall the security policy

HTH

-Will


> -----Original Message-----
> From: Mateo Cabrera - Easynet SRL [mailto:[EMAIL PROTECTED]
> Sent: Wednesday, January 07, 2004 8:16 AM
> To: [EMAIL PROTECTED]
> Subject: [FW-1] OPSEC ERROR...!!!
>
>
> When i try to install a policy, the following error appears:
>
> Reason: TCP connectivity failure ( port = 18191 )( IP =
> (<Gateway_IP>)[
> OPSEC error no. 10 ]
>
> ....any ideas?
>
>
> Saludos,
>
> Mateo Cabrera - Technical Support
> EASYNET S.R.L.
> Network Security Solutions
> Edificio Torre El Gaucho
> Constituyente 1467 of. 802
> Tel/Fax: (598 2) 4004378
>
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to [EMAIL PROTECTED]
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http://www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> [EMAIL PROTECTED]
> =================================================
>

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to