[fw-wiz] I am having a problem with check point and I need a little help

From: Pettus, Duane R. (dpettus_at_GryphonLC.com)
Date: 06/26/03

  • Next message: peter robinson: "RE: [fw-wiz] Blocking Kazaa"
    To: <firewall-wizards@nfr.net>
    Date: Thu, 26 Jun 2003 16:08:59 -0400
    
    

    Yeah, I was having a problem with this checkpoint crap.
    My firewall server when connected to the checkpoint services on any internal NIC Card will not open a web page.

    Let me give you the run down:

    1 2000 server (Running Check point) (10.0.0.100-internal network ; 127.0.0.1-external network ; 10.20.0.1 - DMZ )
    1 workstation (10.0.0.1 internal)
    1 workstation (10.20.0.2 web server)
    1 2003 server (10.0.0.3)
    1 workstation simulating the internet (172.0.0.2 & connection to the internet & DNS for the test environment)

    This is not a problem when I just have the Checkpoint service running on the external card ONLY.

    When I turn the service off of the internal cards (10.0.0.100 and 10.20.0.1), I can tracert, ping open a website and it opens correctly.

    When I turn the service on the internal cards (10.0.0.100 and 10.20.0.1), I can tracert, ping but I cannot open a web page.

    I am allowing everything on the firewall. It can resolves the web-site (I see that at the bottom), it has the ability of resolving the host name because I can resolve the name in the ping, but it will not open the web page. If I put in the ip address of the website it will not open that either

    I have a rule that states to all everything from the internal network
    I have a stealth rule and a cleanup rule that is it.

    Duane R. Pettus
    Gryphon Technologies
    Sr. Network Administrator
    dpettus@gryphonlc.com
    240-387-1000 x409 work
    301-675-0439 cell
    www.gryphonlc.com

    _______________________________________________
    firewall-wizards mailing list
    firewall-wizards@honor.icsalabs.com
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


  • Next message: peter robinson: "RE: [fw-wiz] Blocking Kazaa"

    Relevant Pages

    • RE: suggestions for proxy server to run on w2003 box..
      ... suggestions for proxy server to run on w2003 box.. ... If you are entirely in a Microsoft environment, ISA works fine, but does ... the BorderWare Firewall Server has secured ...
      (Focus-Microsoft)
    • RE: Synchronize Time Between Mainframe and Servers?
      ... It can sync up with the same FIREWALL server or the external source that ... themselves by asking the firewall server what time it is. ...
      (bit.listserv.ibm-main)
    • Re: Firewall Server
      ... I have 4 PCs, so I have to setup parental control for each computer. ... will cost you much less than the server you're thinking of. ... >> Firewall server for home networking of 4 PCs is "over-kill." ...
      (microsoft.public.windowsxp.general)
    • Re: Firewall Server
      ... I use Parental Control provided by my F-Secrure Internet ... I am looking for firewall server for XP. ... Firewall server for home networking of 4 PCs is "over-kill." ... A Windows Server requires a PC to bused to install the ...
      (microsoft.public.windowsxp.general)