Crist Clark wrote:

Utsav Ratti wrote:

Crist Clark wrote:

Unfortunately, any interfaces with anti-spoofing enabled are not going
to deal very well with dynamic routing for obvious reasons.

It actually works very well,

Really? How have you set up your "Topology" for the firewalls? What happens when traffic that usually goes out of interface1 to get to, say, 10.10.0.0/16, is now directed out of interface2? Or in the same vein, when traffic bound for 172.19.0.0/16 starts coming in on interface0 rather than interface3?

The way our routing environment is set up, this situation cannot arise. The same route will not be learned on multiple interfaces where the firewalls are concerned.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to