On Wed, 23 Aug 2000, Jack Coates wrote:

> I suspect that it's looking at sequence number and throwing the error
> message if sequence numbers aren't neatly in order, because we usually
> see the error in mid data-stream after a VIP moves.

as far as i know, firewall-1 doesn't track tcp sequence numbers - except
when doing nat for ftp connections.

- brett




================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to