This is from splat pro. If not using the pro features you can cut it off by 
doing a "pro disable". Now your netstat -rn will not show the multicast route.

-GS



-----Original Message-----
From: Mailing list for discussion of Firewall-1 [mailto:[EMAIL PROTECTED] On 
Behalf Of Crist Clark
Sent: Wednesday, March 26, 2008 4:58 PM
To: [email protected]
Subject: Re: [FW-1] Strange kernel routing table on SPLAT

>>> On 3/26/2008 at 6:55 AM, kazeka sho <[EMAIL PROTECTED]> wrote:
> Hi all,
> 
> I would like to upgrade my firewall by making a cluster.
> So I checked my current firewall (SPLAT R65) and I saw something
strange
> after doing a netstat -rn :
> 
> Destination     Gateway         Genmask         Flags Metric Ref   
Use
> Iface
> 224.0.0.2       0.0.0.0         255.255.255.255 UHD   0      0       
0 lo
> ....
> 
> What is strange is that I did not make any dynamic routing nor IGMP
group.
> So I should not have this multicast address.
> 
> Does somebody know why I have this?

Note the "D" flag. From a Linux system with manpages, the
route(8) page (who decided not to put manpages on SPlat?),

       Flags  Possible flags include
                  ...
              D (dynamically installed by daemon or redirect)

Is this a SPlat Pro box? I believe the routing daemon(s)
add this. I don't know if non-Pro systems get this too.

If you don't know what 224.0.0.2 is, BTW, its the all-routers
multicast address. It is perfectly proper for a router, like
your firewall, to believe it is a member of that group.

B¼information contained in this e-mail message is confidential, intended
only for the use of the individual or entity named above. If the reader
of this e-mail is not the intended recipient, or the employee or agent
responsible to deliver it to the intended recipient, you are hereby
notified that any review, dissemination, distribution or copying of this
communication is strictly prohibited. If you have received this e-mail
in error, please contact [EMAIL PROTECTED] 

Scanned by Check Point Total Security Gateway.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Scanned by Check Point Total Security Gateway.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to