OK, everyone tells me I can't reach the Virtual IP addresses. Thanks to
those who responded. This makes testing a new firewall difficult since
almost all traffic routes through the old firewall.
Why is probably not important, but to satisfy my curiosity, can anyone tell
me why the Nokia will accept packets to these addresses, and then ignore
them? Is Nokia designed to /dev/null traffic to VIP, or is it a matter of
not knowing what to do with them once received, so they just get
lost? Sounds like a question for a Nokia designer.
hermit1
>-----Original Message-----
>From: hermit1 [mailto:[EMAIL PROTECTED]]
>Sent: Wednesday, May 17, 2000 1:12 PM
>To: [EMAIL PROTECTED]
>Subject: [FW1] VRRP
>
>I am trying to install a pair of Nokia 650's with VRRP. I can ping any
>interface with the actual IP addresses of either firewall, but not the
>virtual IP addresses. I see the packets arriving but no reply (using
>tcpdump). Doesn't matter if FW-1 is running or not - I checked that IP
>forwarding is on. Anyone have a suggestion?
>
>hermit1
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================