It might seem a dumb question but do you have a license?
Check what (if) errors are appearing in FWDIR/log/*.elg
Do a stop/start check again.
Paul
--------------------------------------------------------------------------------------------
C. Paul Simons
Corporate Network Services
IHS Energy Group, Englewood, CO.
Main: +1 303 736 3000
Direct: +1 303 736 3451
Fax: +1 303 736 3860
Mobile: +1 303 748 5242
"jeff Crawley"
<[EMAIL PROTECTED]> To:
[EMAIL PROTECTED]
Sent by: cc:
[EMAIL PROTECTED] Subject: [FW1]
Inappropriate policy with Secure Client
kpoint.com
13-11-00 08:03
Hello,
I have seen this problem posted before but not seen a clear answer to the
problem so far.
I seem to be in the strange position where my client cannot download a
policy from my policy server because the current policy is incorrect.
The policy selected (and which can't be changed on the client, this remains
greyed out) is allow all, but
the policy I wish to enforce is "Allow Outgoing Only".
If I check "Desktop is Enforcing Required Policy", under
"Policy/Properties/Desktop Security", the SecuRemote client on trying to
download the policy replies "User successfully authenticated by VPN-1.
You are using an inappropriate policy. Load a new policy from your Policy
Server."
The Policy Server is installed on the same host as the firewall.
FW-1 4.1 SP-1 firewall on solaris 2.6
-The domain is exportable to SecuRemote
Encryption schemes - FWZ
Any ideas?
Thanks & Regards,
Jeff
_________________________________________________________________________
Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.
Share information about yourself, create your own public profile at
http://profiles.msn.com.
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================