Thanks!!

It was a dns issue.  You kinda forget about the simple things sometimes and
make the problem more complicated than it is!  =)

Jeremy

-----Original Message-----
From: Rajeev Kumar [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, September 19, 2000 6:55 AM
To: Jeremy Finke
Cc: '[EMAIL PROTECTED]'
Subject: Re: [FW1] restricted network


This is probably Name resolution (DNS) resolution issue. Your machines in
protected network trying to resolve names somehow. Best way is to use tool
like
tcpdump/Windump to see what packets are flowing from your protected network.

Rajeev

Jeremy Finke wrote:
> 
> Hello all,
> 
> I am trying to set up a restricted network.  By this I mean a network
where
> people can come in on several ports, but the machines inside can only
reply
> to them.  They cannot initiate any connections by themselves outside of
> their network.
> 
> I have set up several rules that allow different services from different
> networks.  Then after that I have a rule that stops traffic from the
> protected network to anything.
> 
> I can telnet to it, but it takes about 1.5 minutes to respond back.  The
fw
> log tells me that the telnet session has been approved.
> 
> Any ideas how the best way to do this is??
> 
> Thanks!
> 
> Jeremy
> 
>
============================================================================
====
>      To unsubscribe from this mailing list, please see the instructions at
>                http://www.checkpoint.com/services/mailing.html
>
============================================================================
====

-- 
################################################################## 
     Rajeev  Kumar ([EMAIL PROTECTED])
        ==> Web:: http://www.rajeevnet.com  <== 
##################################################################


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to