Hello,

We saw an infected machine send out IP packets with a destination IP address of 
just  .  the Checkpoint passed the packet I guess because the rule is to allow 
any destination on HTTP, our internet rule.

But I'm surprised the IPSO (the internet FW is an IP Platform) v 4.2 routed the 
packet.

Has anyone seen this or have insight about how the routing in IPSO would 
respond to a destination IP address like that?


"The wild requires that we learn the terrain, nod to all the plants and animals 
and birds, ford the streams and cross the ridges and tell a good story when we 
get back home."
        Gary Snyder

Please consider the environment before printing this e-mail

Scanned by Check Point Total Security Gateway.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================

Reply via email to