I have just built a new system (XP Pro SP2)however when I drag the mouse it stops for a fraction of a second and then catches up. The same thing happens with audio which is really annoying and rules out watching DVDs or listening to music.
Any ideas for where to start looking?
B-)
Brian...
cheers for the help guys
I removed the ethernet NIC and reinstalled the wireless one - traffic now routes fine.
thanks
B-)
Brian, CCSE
brian@domain-integrity.com
I have installed a wireless NIC in my daughters PC to connect to my 802.11g access point. The card picks up the SSID and shows 99% for the signal strength however when I look at the statistics on the NIC I get 0 packets in and 0 packets out. No tools seem to use the NIC, ping dies as does...
Yep, having trouble here also.
My 3 boxes talk fine (w2k pro). When I boot one of them into w98 it picks up its DHCP address but the gateway cant ping it and it cant see the rest of the workgroup.
I can find it if I search for computers on a w2k box but cant explore it thereafter. Spooky...
You only need a rule if you have a distributed implementation and your management traffic has to go over the firewall to get to the management station. Otherwise its just the addition of the GUI through CP Config. B-)
Brian, CCSE
brian@domain-integrity.com
It must be checked in your Global properties under implied rules. Check the box for accept ICMP requests.
This is not required for the policy editor as it operates over port 18190. Add your IP as a GUI client, using cpconfig locally on the box unless you have netop or suchlike installed...
Do your servers have a static route back to the firewall? what traffic do you actually see leaving the interfaces? You dont say what platform you are using.
You should see tunnel traffic between the client and firewall on the way in and the internal legal address to the server. this will be...
Have you checked that you are using the same IKE phase 1 settings for Diffie Helman. the error suggests a key exchange error. B-)
Brian, CCSE
brian@domain-integrity.com
Gotta agree with the securemote approach. Dial in over the ADSL link to the firewall. Allow pcAnywhere connections form your boss's IP and back again. (Internal IP on your network allocated as a static during the dialup process). this gives you a VPN from your boss to the firewall and only...
Objects.C get re-written with every rulebase install!!
Register on the Nokia support website, have your box serial handy. support.nokia.com. B-)
Brian, CCSE
brian@domain-integrity.com
Brian,
As described by email you will need to use a nokia cable for a console session. The ONLY way to change an unknown admin password is from a local console session (unless you have out of band management like an Arula connected to the console port already).
This is the Nokia resolution...
Your workstation object for the site could be at fault, as could be your rules. Is your site object defined as internal or external?
Do you have a stealth rule? and is the rule for IKE above it?
Ignore the routing, it is almost certainly the setup of the workstation object/rules/site.
Cheers...
Have you included your external address in the anti spoofing for your internal interface? Try dumping on both your inner and outer interfaces and see where it is getting dropped on the way back in. If it gets through the outer but not the inner then it is almost definately anti spoofing...
I dont think you understood my earlier message. When you click on File/open, how many policies do you get to choose from?
I am guessing it is quite a few!!
B-)
Brian, CCSE
brian@domain-integrity.com
leehk,
You have too many policies on your management server. The rulebases file is a compilation of all you .W files. Delete them from the GUI and this should reduce your .fws file. If this doesnt do the trick then follow the instructions on the following page...
Look up vm stat and compare it with the output from "fw tab -t connections -s" which will show your active connections in the state table.
Gotta say that 4 users is hardly any for a 330. Probably not the problem!! B-)
Brian, CCSE
brian@domain-integrity.com
Sounds very like anti spoofing to me. I take it you have defined your encryption domain and applied it to your firewall interfaces (s1p1 and s6p1 on a Nokia)? B-)
Brian, CCSE
brian@domain-integrity.com
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.