NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [FW-1] Pain of Websense



For what it's worth, I'm seeing the same problem here, but I may have a bit
more information.

All connections going to AOL's site are allowed as shown in the logs.  There
are several http requests, followed by an HTTPS request just before the page
fails to load.

Clearing cookies sometimes helps.  After clearing cookies, the page will
sometimes load and work properly, but sometimes not.    I'll alternately
receive the following errors, seemingly at random;

"Sorry, an error occured"  This seems to be generated by AOL's server, as
it's an HTML page.  It says to try again later.

"Page cannot be displayed"

With either of these error pages, IE sometimes shows the error logo in the
bottom left corner of the screen.  Clicking it for details shows some
interesting things.  Usually it's either 'expected }' or 'Unterminated
string constant.'  These errors make me think the page isn't loading in it's
entirety.

If that's the case, why?  Do the security servers only accept HTTP packets
of a certain size?  I've tried adding :http_buffer_size (32768) in objects.C
to no avail.  Is there any way to ensure the security server is not
truncating HTTP packets?

As mentioned previously by another poster, bypassing the security servers
alleviates the symptoms, but that's a messy fix and if AOL's server IPs were
to change we'd be right back where we started, so I'd like to avoid that in
the longterm.

-----Original Message-----
From: Gasaway, Troy [mailto:[email protected]]
Sent: Tuesday, February 12, 2002 2:44 PM
To: [email protected]
Subject: Re: [FW-1] Pain of Websense


No, I am trying to login to AOL's website. When I try I get a error
saying "Page cannot be displayed"

-----Original Message-----
From: Maria del Carmen Angulo [mailto:[email protected]]
Sent: Tuesday, February 12, 2002 2:08 PM
To: [email protected]
Subject: Re: [FW-1] Pain of Websense


Hello Troy,
I understand that you are talking about AOL messenger. Websense can't
filter
no http traffic.
See you firewall log and seek for drop or reject trafic.
Might be you're blocking the necessary  service for AOL (port 5190).

I hope this help,

Carmen


----- Original Message -----
From: "Gasaway, Troy" <[email protected]>
To: <[email protected]>
Sent: Tuesday, February 12, 2002 10:28 AM
Subject: [FW-1] Pain of Websense


> I have Checkpoint FW 4.1 SP3 running on a Nokia IP650. My Websense
> Server is on a Windows 2000 Server in the DMZ. My problem is I can not
> log-into AOL all of the sudden. I can get to other sites just fine,
but
> AOL is history. When I call Websense they tell me it is a problem with
> Checkpoint's Security Server. Has anyone seen this problem? If so I
> would love someone to help me figure this on out.
>
> Thanks,
> Troy
>
> =================================================
> To set vacation, Out Of Office, or away messages,
> send an email to [email protected]
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http://www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> [email protected]
> =================================================

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.