Re: [FW-1] HA - high traffic on port 8116

2005-01-07 Thread Mónica Salvia
Hi Aaron, This port is not used for sync, it's used to check the state of all the interfaces and the status of other HA members. So, this kind of traffic is normal, but in my case I believe it's being excesive. Did somebody experience this kind of behaviour before? Thanks, Mónica Aaron

Re: [FW-1] HA - high traffic on port 8116

2005-01-07 Thread Brockhoven, Werner
Hi, It's also used for synchronization. Solution ID: skI4008 Solution ID: sk23208 Solution ID: sk21552 Werner -Original Message- From: Mailing list for discussion of Firewall-1 [mailto:[EMAIL PROTECTED] On Behalf Of Mónica Salvia Sent: Friday, January 07, 2005 13:02 To:

Re: [FW-1] HA - high traffic on port 8116

2005-01-07 Thread Roger P Herr
Actually, I believe you are both correct and incorrect. I believe it is used to check the state of HA members on all interfaces and for sync on the sync network. Roger Herr WhyNot? Consulting Services 24165 IH 10 West Suite 217-183 San Antonio, Texas 78257 210-860-3990 Some men see things as they

Re: [FW-1] HA - high traffic on port 8116

2005-01-07 Thread Mónica Salvia
ok, it's used for both purposes, but my problem is with the packets sent for checking interfaces states. any idea? Roger P Herr [EMAIL PROTECTED] Sent by: Mailing list for discussion of Firewall-1 FW-1-MAILINGLIST@AMADEUS.US.CHECKPOINT.COM 07/01/2005 11:12 Please respond to Mailing list

Re: [FW-1] HA - high traffic on port 8116

2005-01-07 Thread Crist Clark
Salvia wrote: ok, it's used for both purposes, but my problem is with the packets sent for checking interfaces states. any idea? What makes you think it is the traffic rate? 12 pps per second is not a lot. You're in much bigger trouble if your network can't handle that. I would guess that

[FW-1] FW: ccm_post drops

2005-01-07 Thread Quick, Richard A.
I sent this last week but a lot of people were out. I would appreciate any help I can get. Thanks, Rick -Original Message- From: Quick, Richard A. Sent: Thursday, December 30, 2004 12:03 PM To: 'Mailing list for discussion of Firewall-1' Subject: ccm_post drops I'm having a problem

[FW-1] Cannot ADD IPs on the Management station (access IPs)

2005-01-07 Thread Erik Widholm
Using the WebUI, I don't have a tab, as admin or any admin user, to add any IP addresses to the FW1 enforcement module for ssh or other connection access. I need to allow three more IPs access via ssh to the box, and need to find out how to add it. I used the WebUI when we first set up the box,

Re: [FW-1] FW: ccm_post drops

2005-01-07 Thread Quick, Richard A.
Thanks for the fast response. I set option to optimized and I'm still seeing drops. Any other ideas? -Original Message- From: Salisbury, Chad [mailto:[EMAIL PROTECTED] Sent: Friday, January 07, 2005 1:34 PM To: Quick, Richard A. Subject: RE: [FW-1] FW: ccm_post drops 1) In

Re: [FW-1] FW: ccm_post drops

2005-01-07 Thread Gary Scott
Straight from CP... To resolve the error: 1) In SmartDashboard, click the SmartDefense Tab. 2) Under Application Intelligence, click to open the Web menu tree. 3) Click HTTP Protocol Inspection. 4) If Configurations apply to all connections is enabled, choose Perform optimized protocol