NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [FW-1] [fw1-wizards] stream dns requests originating from firewall



<Snip>
However, later inspection of the
log reveals that during the same period, the firewall itself has started
initiating dns requests (UDP) at the speed of about 200 per second!
</Snip>

Perhaps someone tried to enable a domain network object.  This causes
reverse DNS resolution requests for every packet passing through the
firewall which in turn causes a busy firewall to appear hung.  At best, use
of domain network objects is discouraged.  In practice, I've found the
domain network objects to be unusable.

Thanks,
-Steve-


Steve Palmer
Unix Technologies
Verizon Enterprise Solutions Group -
Verizon Services Corporation
http://www.verizon.com/esg

Voice: 01/Fax: 01/610/993-0185
mailto:[email protected]

-Affect versus Effect.-
Affect with an a is usually a verb; effect with an e is (usually) a noun.
When you affect something, you have an effect on it. The usual adjective is
effective.
---http://newark.rutgers.edu/~jlynch/Writing/a.html

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.