The firewall that I use to authenticate ftp/telnet to outside world caches
the 
DNS name and tries to connect to the old IP address whenever someone changes
their IP. 
This happens only when I try authenticating through the firewall. When I do
an nslookup
from the firewall it gives the new IP and I am able to ftp from the firewall
directly to the
new IP but for authenticated sessions it tries to go to the old IP (
snoop/tcpdump shows it)
I faced this before and when I do an fwstop & fwstart it goes to the new IP.

Is there any other way to make the firewall connect to the new IP and not
the OLD one
without an fwstop and fwstart ?

Preet


***********************************************************************
Bear Stearns is not responsible for any recommendation, solicitation, 
offer or agreement or any information about any transaction, customer 
account or account activity contained in this communication.
***********************************************************************



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to