[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] Re: [FW-1] [fw1-wizards] stream dns requests originating from firewall
<Snip> However, later inspection of the log reveals that during the same period, the firewall itself has started initiating dns requests (UDP) at the speed of about 200 per second! </Snip> Perhaps someone tried to enable a domain network object. This causes reverse DNS resolution requests for every packet passing through the firewall which in turn causes a busy firewall to appear hung. At best, use of domain network objects is discouraged. In practice, I've found the domain network objects to be unusable. Thanks, -Steve- Steve Palmer Unix Technologies Verizon Enterprise Solutions Group - Verizon Services Corporation http://www.verizon.com/esg Voice: 01/Fax: 01/610/993-0185 mailto:[email protected] -Affect versus Effect.- Affect with an a is usually a verb; effect with an e is (usually) a noun. When you affect something, you have an effect on it. The usual adjective is effective. ---http://newark.rutgers.edu/~jlynch/Writing/a.html ================================================= To set vacation, Out Of Office, or away messages, send an email to [email protected] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [email protected] =================================================
|