Hi,

> I realised that every time I install the security policy on 
> FW server, the
> IP forwarding status will change to 1. I have to manually 
> change the IP
> forwarding to 0 (ndd -set /dev/ip ip_forwarding 0). I'm 
> running FW v4.0
> build 4094 on solaris. Does anybody know why the status 
> changes to 1? And
> how do I rectify this problem?

as far as I know FW-1 needs the routing function of the kernel BUT controls
traffic at the NICs.

At boot time it should be "0" and after FW-1 is started it is set to "1".
You can verify that by checking /proc/sys/net/ipv4/ip_forward (for Linux :-)
when FW-1 ist running and after "fwstop" you�ll see that it�s back to "0".

Regards,

Marco


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to