Hello,

 Using Firewall-1 with release R55...and I don't know much about this
 software.
 Using DSL with the Alcatel / Thomsom SpeedTouch 510. Running in PPPoA.

 Our organization is just installing another branch office, but we are
having
 problems with the firewall.
 The standard procedure is to the internet connection to be tested, then the
 firewall is sent to the place and connected, it's ip is informed to the
 central management people, then they connect to it and configure the
machine
 / rules / etc.

 Well, after some problems with the internet connection ( DSL type, modem
 specificities, etc ) , we finally got the firewall box to receive the valid
 ip in it's external netwrk card. The person in charge of the configuration
 could then run the management software and access the machine remotely. He
 was able to change the machine name, domain, other configurations, and even
 change the ip configuration ( dynamic to static, change netmask, things
like
 that ) . BUT he says that when he goes to apply the rules, he receives "an
 error". ( I was not informed about the word-by-word error message ) .

 He insists that the error is caused by blocked ports, and wants us to check
 if ports 256, 900, a bunch of ports over 18000 are open. From our tests,
 they are open. From talk with people from local telco, they are open. From
 the modem support people, they are open.
 What I don't understand is what would open / closed ports influence if he
 can connect and reconfigure other things in the machine. Why would a
program
 use some ports to configure some things, and then use some other strange
 port to send the rules ?

 Alas, aren't the upper ports ( up from 18000 ) allocate dynamically to
 programs, and so that they are not reserved?

 Thanks for your help..

 Silvio.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to