NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[FW1] Code red resource and http security server



Hi,

after applying a rule to catch Code Red traffic (as per Check Point
Knowledge) all outgoing http request now originate from the external
address of the firewall (ie. the security server).

Why is that so when my second rule accepts all "non code-red" traffic ???

By the way, the log shows "reject" on the code red traffic even though the
rule defines "drop". Fortunately the firewall does not seem to send any
"icmp destination unreachable" packets. So the log seems to be inconsistent
with the action.

Rule base:
... snip ...
internal-net   any  http->codered  drop
internal-net   any  http      accept
... snip ...

With regards,

Nicolai Andersen - Support Manager
Network Technologies A/S
Islands Brygge 43, 2300 Copenhagen S
Tel: +45 7027 0780, Mobile +45 2161 3280





================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.