I don't see FQDN changing much, so just do an nslookup and put
the ip range in your rules.
Once a month or if users complain do an nslookup and put the
new ip in or remove dead ones.
Or just put a single ip, if it goes down or is busy tell the
ignorant admin to fix his machine or run a real load distributer
instead of round robin dns. (Just my opinion)
-----Original Message-----
From: Ivan Fox [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, August 23, 2000 5:41 PM
To: fw1-wizards; Firewall-1
Subject: [FW1] using hostname in a workstation object?!
We need to use a FQDN, instead of IP address, to access a ftp server. It is
because there are a number of hosts/ip addresses behind the FQDN for
fail-over. The ftp server operator refuses to update us if there is any IP
address change for that FQDN.
How can I construct a FW-1 rule to accommodate it?
Any pointers are appreciated.
Ivan
============================================================================
====
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
============================================================================
====
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================