My firewall has 3 interfaces - one external, one internal, and one for a DMZ where I 
have two servers sitting.

In my log file, I continue to see requests from external hosts and internal hosts to 
the DMZ interface (we are on a 10.x network, and the DMZ interface is 192.168.x).  The 
requests are typically nbname drops on rule 0 where the source is the DMZ NIC card, 
and icmp drops on my stealth rule where the source is external.

Should my DMZ interface be receiving any requests at all?  Why is it receiving and 
sending (or at least trying) packets to my 10.x network?  How would an internal or 
external host know of this interface, and should I worry about this?

Rodney Lacroix



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to