NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [FW1] encryption being denied



Kristin,
How are your rules defined.  Do you have separate rules for each site?  What
services do you allow to each?

Thanks,
CT

Kristin Sutter wrote:

> I'm using checkpoint firewall-1 sp1.  I'm running secure remote on a laptop
> dialed into a random ISP.  The encrypting management console manages 2
> separate firewalls located at different sites (1 corp, 1 branch office).
> Both have client-encrypt rules set up for all internal networks that are
> first in the rule base and both have defined D-H keys.  Both firewalls are
> utilizing FWZ and see the management console as the CA.  When I try to
> access a website protected by the local firewall (mgmt console and firewall
> for corporate are located in 1 office with 2nd firewall in branch office), I
> obtain access fine.  However, when trying to access a website at the remote
> office I get rejected.
>
> My secure remote client can access most services in the corp encryption
> domains, however, netbios resolution (nbname) is still being rejected.
>
> In both situations, the service is being rejected by the last rule in rule
> base (reject any-any).
>
> thanks for you help,
> Kristin
>
> ================================================================================
>      To unsubscribe from this mailing list, please see the instructions at
>                http://www.checkpoint.com/services/mailing.html
> ================================================================================



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.