I have a situation where two firewalls are connected via a VPN tunnel.
Traffic is flowing through the tunnel, except for SNMP.  For some
reason, the sending firewall is accepting SNMP, but not encrypting it.
Here are some of the stats for the two firewalls;

Firewall A (sending side)
NG AI Hotfix .218 build 07
IPSO 3.7 on an IP650

Firewall B (receiving side)
NG FP3 Build 53912
IPSO 3.5.1-FCS3 on an IP330

The sending firewall shows our SNMP packets being accepted but not
encrypted.  Other traffic with the same source and destination Ips is
accepted on the same rule, but the other traffic is encrypted.  This
includes ping, http, telnet, dns, etc..  I've searched the rulebase for
anything handling SNMP differently and am not finding anything.  Is
there something within Checkpoint itself that causes SNMP traffic to be
handled differently over VPN tunnels than other traffic?

Thanks for your help.

Jeff Jarmoc - CCSA, CCNA, MCSE
Sr. Network Analyst - Grubb & Ellis
847.753.7617 - [EMAIL PROTECTED]

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to