Neil,

--On Montag, 7. Februar 2005 00:00 +0000 "Neil Kemp (mobile)"
<[EMAIL PROTECTED]> wrote:

The new server has the same ip addressing completely. I made sure that
the node secret was unchecked, like I say, first authentication is fine,
it is every subsequent attempt.

does the ACE/Server check the node secret entry after this first authentication?

I had similar probs in the beginning but do not remember exactly what
happened. One thing I do remember is that at some point I had to remove
/var/ace/sdstatus.12 to make it work.

One thing though - the ng firewall is using its internal IP address, and
the ace server has a slightly different entry both on the hostname and
the fact it is using the external ip address of the firewall and the
internal address is configured as a secondary node.

The secondary node should work but if the setup stays as it is you might change the client definition as well.

regards

Joachim Bassmann, Fellbacher Str. 37, 71394 Kernen
------------------------------------------------------------
Erst wenn das letzte Counterstrike indiziert, der letzte Videofilm verboten,
und das Internet geschlossen ist, werdet Ihr merken, da� Ihr Eure Kinder
doch erziehen m�sst. - [EMAIL PROTECTED]

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to