I have an issue that I don't know who to turn
to because both Nokia and Checkpoint TAC have
been absolutely useless other than asking me
to run some stupid debug commands with
no results.

I have Provider-1 NG Feature Pack 3 with 
HFA_318 running on solaris 9.  One of the 
CMAs is managing a pair of Nokia IP740s
running VRRP between them.  I also have
a standalone log server that the Nokia
send it logs to both the CMA and the 
standalone log server.  The nokia IP740s
is running ipso 3.7.1 build 20 with NG
Feature Pack 3 with HFA 327.

On the nokia, when I perform 
"netstat -an | grep 257", I can see
established connectivity from the Nokia
to both the CMA and log server and on the
CMA, I can see logs coming from the Nokias.
However, when I go into $FWDIR/log on the
nokia, I can see that the fw.log keeps 
going up.  The fw.log file is scheduled
to rotate every 24 hours and that the
average log file on the nokia is almost
500MB everyday.  It seems like some of 
the logs never make it to the CMA and
standalone log server.  This has been
going on for almost 5 months now.

I stopped and restart the CMA, reboot
the nokia, re-push the policy but 
the I keep getting logs on the nokia
itself.  I check other firewalls 
being managed by other CMAs and
the log file on the nokia firewalls
is about 8438 size which is nothing.

Has anyone run into this before and
if so, what is the fix?  

Thanks.
 
---------------------------------
Now that's room service! Choose from over 150,000 hotels 
in 45,000 destinations on Yahoo! Travel to find your fit.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to