Hi Olaf

You were right: the problem was that our encryption domain was all our
internal network, whic obviously overlaps with the internal ip of firewall
module and firewall manager; once redefined the encryption domain to only
some machines, the ones needing encryption it is working.

Thanks for your help and have a nice day

Jesus Calvo

-----Original Message-----
From: Olaf Selke <[EMAIL PROTECTED]>
To: Jesus Calvo Hernandez <[EMAIL PROTECTED]>
Date: Monday, May 29, 2000 1:02 PM
Subject: Re: [FW1] overlapping encryption domains and securemote


>According to Jesus Calvo Hernandez:
>>
>> One internal firewall manager (with nat to the internet, so securemote
>> customers can retrieve keys), and two external gateways. Each gateway has
>> got its own internal and external nics with different  addresses from
each
>> other.
>
>hi Jesus,
>all internal, external, and dmz nics have different addresses? If you
>look into the interfaces tab of both firewall objects there're really no
>dublicate addresses?
>
>Olaf
>--
>Olaf Selke, [EMAIL PROTECTED], voice +49 5241 80-7069

------------------------------------------------------------------
This email is confidential and intended solely for the use of the individual to whom 
it is addressed. Any views or opinions presented are solely those of the author and do 
not necessarily represent those of Sema Group. 
If you are not the intended recipient, be advised that you have received this email in 
error and that any use, dissemination, forwarding, printing, or copying of this email 
is strictly prohibited. If you have received this email in error please notify it to 
Sema Group sae Helpdesk by telephone on number
+34 91 4408888.
------------------------------------------------------------------



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to