[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[FW-1] VRRP packets dropped by Spoofing



Hey all,

I have a quick one - customer has a VRRP cluster (IP440 and IP530)
with a Win2k Server Mgmt Server. Everything is NG-FP2.

He set the External Interface as "external" in Topology on the Backup
Enforcement Point, and turn on Spooofing.  At that point, his VRRP
broadcast packets sent from FW-A get dropped by FW-B, claiming it
to be an address spoofing drop.

The packet shows source of the External IF of FW-A and should be
considered External when it arrives on FW-B.

Anyone else see this before?

Thanks
Scott

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================