Christian,

      We see it in the log itself. We are receiving the logs from the Edge
devices (remote) but very little logging from the IPSO devices (both local
and remote) other than the "log server went down". All VPN's are up and
running. Thanks again,

Jerry




                                                                           
             Christian ALT                                                 
             <[EMAIL PROTECTED]>                                                
 
             Sent by: Mailing                                           To 
             list for                  [EMAIL PROTECTED] 
             discussion of             INT.COM                             
             Firewall-1                                                 cc 
             <FW-1-MAILINGLIST                                             
             @AMADEUS.US.CHECK                                     Subject 
             POINT.COM>                Re: [FW-1] Errors while logging     
                                                                           
                                                                           
             08/16/2006 03:25                                              
             PM                                                            
                                                                           
                                                                           
             Please respond to                                             
             Mailing list for                                              
               discussion of                                               
                Firewall-1                                                 
             <FW-1-MAILINGLIST                                             
             @AMADEUS.US.CHECK                                             
                POINT.COM>                                                 
                                                                           
                                                                           




Do you see in the log itself, the log attempts from your Nokias?

Do you get the logs from the local firewall and not from the remote ones,
or
all of them.

Are the VPNs operationnal?

All those questions because I had similar issues on other versions and they
were more related to the log trafic flow than anything else.

Bye for now,

Christian ALT

Telecom and Logitics Associates
Network Security Company

http://www.tla.ch

-----Original Message-----
From: Mailing list for discussion of Firewall-1
[mailto:[EMAIL PROTECTED] Behalf Of Jerry
Eblin
Sent: mercredi, 16. aout 2006 20:59
To: [email protected]
Subject: [FW-1] Errors while logging


New problem has arisen here and was wondering if anyone has ran into it
before.

Management station is splat R61 managing multiple Nokia IPSO 4.0.1 w/ CP
R61 firewalls along with multiple Edge devices running the latest firmware.

Approximately one week ago, the log files were not purged and the /var
partition filled up. No big deal or at least we thought that. Cleaned out
the old logs and rebooted the system. The /var partition has over 9GB free
currently. Since then, the Edge devices are logging properly, but the IPSO
devices are not. They are generating the following error in the SmartView
Tracker --> "Information: sys_message: log server (IP of the management
station) went down" and, from the management station, the corresponding -->
"Information:FWD Error: failed to write log from (IP of IPSO devices)."

We can still modify the rulebases and objects, push policies, etc. We
cannot switch the log file. When we try it comes up with "Connection
Interupted" error and then we have to reconnect. Just wondering if anyone
has seen this or something similar before and could give me a point to
start at. Thanks in advance,

Jerry

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to