Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Dropped ICMP

Status
Not open for further replies.

sinyce

IS-IT--Management
May 27, 2002
57
0
0
US
Checkpoint NG FP3 / Nokia IP350

Firewall with 2 subnets

NET172 NET192 --- ROUTER
| |
F I R E W A L L

Trying to configure a Server(SRV1) in NET172 to connect to router (RT1) in NET192. RT1 also handles DNS resolve for SRV1.

RULE:
SOURCE: SRV1
DESTINATION: RT1
ANY ANY ACCEPT

Log Tells me that ICMP is dropped because of Large packet size. Turned off ping of death. Everyting ..still packets are dropped.

Help.

 
Under "Policy" and "SmartDefense" click the plus next to "IP and ICMP". Look at the options under there. The 3rd option is "Max Ping Size". Default is 64bytes, you can disable this, or (Best idea) raise the packet size....


-Mike
 
Legend:

Been there done that. I have it turned up to 1024 bytes, still the same. Even with the Max Ping Size unchecked, still the same.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top