Hello All,

I have a problem with a customer firewall, it says that one of the nets
that are directly connected are "unreachable".

        External
        x.x.x.x

                        DMZ - 172.16.254.x

        Internal
        192.212.123.x

Traffic from DMZ to Internal works fine, but on the internal net,
traffic to the DMZ gets a response back from the FW with destination
unreachable.

No anti-spoofing is in place, address translation for internal to dmz is
ANY ANY ORIGINAL, the route on the fw says anything for the 172.16.254.x
net go to that interface of the fw.

Traffic the other way works without problem.

FW module: 4.1 Sp2 on NT

I have never seen NT spit up a destination unreachable for a connected
network before...any ideas?

Chuck.


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to