[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] [FW-1] Strange messages on NG firewall
Hi all, I am also getting strange messages when I try to download policy to a NG FP1 firewall running on Nokia. I have recently upgraded from 4.1 SP5. the management server was already at NG FP1. when i push policy down to the firewall from the server i get the following error messages: WARNING : cannot get address of host <other-fw-1> will not create value table for <target_list41> WARNING : cannot get address of host <other-fw-2> will not create value table for <target_list41> WARNING : cannot get address of host <other-fw-3> will not create value table for <target_list41> add_ca_cert_hash:failed corrupt internal_ca object .... 4 times and then the policy downloads successfully. --- On the firewall side there is not error message. but when i restart the fw i get this error message DEPRECATED FORM OF INSPECT -ML "hostname" directive not supported ------------- Any help on this issues is greatly appreciated. Thanks in advance. Regards, Aqanshaa --- Brendan Laws <[email protected]> wrote: > Hi people, I am hoping someone may have seen this > before and know a fix. > > Nokia IP330 - IPSO3.4.1FCS10 > > I am unable to connect to the box to edit the fw > policy via the GUI - it > is unable to contact the server. > > When I jump on the console and issue and fwstop or a > fwstart I get this > info on screen . > > FireWall-1: Starting fwd > FireWall-1: Starting fwm (Remote Management Server) > > FireWall-1: Fetching Security Policy from localhost > Failed to load objects in setup.C: > "setup.C", line 26: ERROR: Cannot use > <ClntAuthDefault::Auth>: Not in > Scope > > Failed to load objects in wellfleet.C: > "wellfleet.C", line 93: ERROR: Cannot use > <::accept>: Not in Scope > > Trying to fetch Security Policy from localhost: > > Installing Security Policy fw01-270202-01 on > all.all@fw01 > Using external interface 'eth-s2p1c0' > FW-1: setting external interface to eth-s2p1c0 > Apr 9 17:19:54 fw01 [LOG_CRIT] kernel: FW-1: > setting external interface > to eth-s2p1c0 > Fetching Security Policy from localhost succeeded > > FireWall-1: Starting cpmad (Malicious Activity > Detection) > FireWall-1 started > > From here the fw seems to start and traffic passes > through it without a > problem however I am unable to connect via the GUI > to manage the box:( > > Any ideas would be much welcomed!:) > > Cheers > > Brendan > __________________________________________________ Do You Yahoo!? Yahoo! Tax Center - online filing with TurboTax http://taxes.yahoo.com/ ================================================= To set vacation, Out Of Office, or away messages, send an email to [email protected] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [email protected] =================================================
|