Hi,
Since applying HFA-05 to our Nokia platforms (Running IPSO 3.8.1 Build033 &
NG-AI R55 for IPSO 3.8)
we are experiencing lot's of "message_info: Line in HTTP request too long"
errors in the event log.
(Note: I did actually upgrade IPSO from 3.8.1 Build028 just prior the HFA05
installation if that has any bearing)
Sample Log entry.
Number: 1384604
Date: 20Jul2005
Time: 19:44:36
Product: VPN-1 & FireWall-1
Interface: eth1c0
Origin: gateway (x.x.x.x)
Type: Log
Action: Reject
Protocol: tcp
Service: http (80)
Source: Host-PC (10.0.1.1)
Destination: 205.157.85.40
Source Port: 4440
Information: message_info: Line in HTTP request too long
We also have numerous SPLAT boxes throughout the network (NG-AI R55 / HFA-15)
that do not have these
issues (managed by the same Management server (Windows 2000 SP4 / HFA-15)
I have amended the Smartdefence settings - Application Intelligence - web -
http protocol inspection - http format size, settings
and even the "http_max_url_length" within the global properties, all to no
avail.....
Any clues / workarounds greatly appreciated.
Cheers,
Wayne.
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================