Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

how to solve address spoofing dropped from firewall

Status
Not open for further replies.

a208

MIS
Oct 26, 2003
33
HK
Hi,

I have set the checkpoint NG firewall rule to enable some host in DMZ to connect destination network host, I have try to use telnet using special port no 3222 from host in DMZ to destination host, I found the log it is allow source host to connect to destination host , but another interface(eth-xx02) in firewall has dropped, how can I solve this problem.

the log like below

No. Date product interface origin type Action Service
=== ==== ==== ======= ========= ====== ==== ====== =======
xx xx xx FW-1 eth-xx01 10.1.1.1 log accept https_3222
xx xx xx FW-1 eth-xx02 10.1.1.1 log drop https_3222

thanks in advance.
MIS
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top