Mainly NAT issues, but I faced some weird problems (bugs?) with network
objects + radius + client authentication. (internalusers@internalnet ->
any -> client auth). One of our internal networks was supernetted
(x.x.8.0/24 and x.x.9.0/24 became x.x.8.0/23). Clients using x.x.9.* are
simply being dropped in the cleanup rule, despite their network
belonging to "internalnet" group. Replacing my module with a backup FP2
with the same rules and the same objects, I got no problems.
I don't know if this occurs because there is some incompatibility with a
FP3 managing a FP2 module. In principle, no.

Anyway, this specific problem with automatic static NAT is being highly
discussed in the list, so I think there is a real bug.

Regards,
Victor.

-----Original Message-----
From: Mailing list for discussion of Firewall-1
[mailto:[EMAIL PROTECTED]] On Behalf Of
Julian Burton
Sent: quinta-feira, 6 de fevereiro de 2003 10:09
To: [EMAIL PROTECTED]
Subject: Re: [FW-1] Downgrading from FP3 to FP2


Victor

I am currently trying to decide whether to migrate from FP2 to FP3 or
not. There are strong drivers to migrate, but having seen a lot of
traffic on this list concerning FP3 problems I need to know whether we
will be hit by any.

Could you please list your problems/bugs which are driving you to
downgrade?

TIA

Julian

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to