I don't see FQDN changing much, so just do an nslookup and put
the ip range in your rules.

Once a month or if users complain do an nslookup and put the
new ip in or remove dead ones.

Or just put a single ip, if it goes down or is busy tell the
ignorant admin to fix his machine or run a real load distributer
instead of round robin dns. (Just my opinion)


-----Original Message-----
From: Ivan Fox [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, August 23, 2000 5:41 PM
To: fw1-wizards; Firewall-1
Subject: [FW1] using hostname in a workstation object?!



We need to use a FQDN, instead of IP address, to access a ftp server.  It is
because there are a number of hosts/ip addresses behind the FQDN for
fail-over. The ftp server operator refuses to update us if there is any IP
address change for that FQDN.

How can I construct a FW-1 rule to accommodate it?

Any pointers are appreciated.

Ivan



============================================================================
====
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
============================================================================
====


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to