Hi Scott,

I faced this problem today. I think there should be some settings to care of
this issue.
Lets find it out.

Regards,
-Girish

-----Original Message-----
From: Scott Friedman [mailto:sfriedman@;ADVNETWORKS.COM]
Sent: Thursday, October 17, 2002 9:11 PM
To: [EMAIL PROTECTED]
Subject: [FW-1] VRRP packets dropped by Spoofing


Hey all,

I have a quick one - customer has a VRRP cluster (IP440 and IP530)
with a Win2k Server Mgmt Server. Everything is NG-FP2.

He set the External Interface as "external" in Topology on the Backup
Enforcement Point, and turn on Spooofing.  At that point, his VRRP
broadcast packets sent from FW-A get dropped by FW-B, claiming it
to be an address spoofing drop.

The packet shows source of the External IF of FW-A and should be
considered External when it arrives on FW-B.

Anyone else see this before?

Thanks
Scott

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to