Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

having to recycle firewall... HELP!!!

Status
Not open for further replies.

kprowell

MIS
Sep 1, 2000
10
US
The problem I am having is that I have to recycle the firewall at least once a day because if I don't some users get an error message when they try to browse saying something like it is unavailable please see your system administrator and some of my outside users cannot connect to our mail server until I recycle it. Any ideas anyone?
 
Check the firewall log file. That should tell you what is going on.
 
I have checked the logs and what I have found is this... Error #611. User count limit reached. We are well below our purchased user limit for interal users/machines with IP addresses which is what I was told how this product is licensed. So, when I recycle the fiewall, it obviously clears that list and all well. Any thoughts?
 
Are you using DHCP behind the FW? If so what is your lease time on the DHCP server. It should be set for 7 days when using raptor. Raptor caches a hosts ip address for seven days. So I would check that. What do you have behind FW? Are you serving web pages? These outside connections also account for license use. You may have misconfigured your interfaces or have your cables reversed and that may be causing the problem. Make sure that your outside cable is in the right NIC and vice versa for inside. This could also account for your using up licenses. These are just a couple instances where your license count could be affected. If you look in your resource guide you can find how to count your license usage and account which are server or client counts. Good luck.
 
a fast way of recycling is to use net stop raptor security gateway and net start raptor security gateway. This will release all liscense. And do you have all of your interfaces set as internal except the 1 external. I am just starting to play with this software and I have found that if you have your DMZ set as an external NIC it kills liscenses real fast. I set 1 external and 3 internal (2 subnets and 1 DMZ) and this solved my liscense probles real fast.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top