|
I ran
into exactly the same situation when I upgraded to SP3. Check out http://www.phoneboy.com/faq/0408.html.
As of SP3, the default is to drop packets for connections not in the connection
table. Prior to SP3, it would try to match up the connection with an existing
rule. The FAQ has you uncomment the line "#define ALLOW_NON_SYN_RULEBASE_MATCH"
in fwui_head.def, and re-push the policy.
Now,
if someone could tell me why the connections are falling out of the connection
table so soon, that would help.
Ray Lodato
|
- [FW1] Fw: unknown established tcp packet Dorny
- Re: [FW1] Fw: unknown established tcp pack... Bernard RAOUL
- Re: [FW1] Fw: unknown established tcp pack... Ray Lodato
- Re: [FW1] Fw: unknown established tcp ... Aylton Souza, CISSP
- RE: [FW1] Fw: unknown established tcp ... MikeCC
- Re: [FW1] Fw: unknown established ... Aylton Souza, CISSP
- RE: [FW1] Fw: unknown established tcp pack... Paul Daley
- RE: [FW1] Fw: unknown established tcp pack... Smith, Andrew
- RE: [FW1] Fw: unknown established tcp pack... Greene, Todd
- Re: [FW1] Fw: unknown established tcp ... Aylton Souza, CISSP
- RE: [FW1] Fw: unknown established tcp pack... Dunn, Daniel, CTR, OSD-ATL
