Actually, this rules are dictated by the 'Policy--->Properties' config in
the Policy editor. They can be changed by selecting/deselecting the
checkboxes in there.
HTH
Russell Goodwin
-----Original Message-----
From: Claussen, Ken [mailto:[EMAIL PROTECTED]]
Sent: 24 October 2000 21:50
To: 'Michael J. Huber'; [EMAIL PROTECTED]
Subject: RE: [FW1] Sender:
[EMAIL PROTECTED]
Rule 0, means that your "Implied-Pseudo" rules are what has caused the
packet to be discarded. If you choose View\Implied Pseudo Rules from the
security policy manager it will make these rules visible. In ours we have a
rule for passive-ftp, which is probably what is causing your problem,
unfortunately I do not have a fix for you. These rules are chosen when you
apply a policy to your site (according to Checkpoint docs) and are not
directly editable. In other words you need to choose a new policy template
to change these rules. This is the information I came across while searching
for info on accessing remote subnets through a FW-1. HTH
Ken Claussen MCSE CCNA CCA
IT Coordinator
Retail Planning Associates
(614) 564-1000 x208
-----Original Message-----
From: Michael J. Huber [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, October 24, 2000 4:00 PM
To: [EMAIL PROTECTED]
Subject: [FW1] Sender: [EMAIL PROTECTED]
I tried to allow ftp from a mainframe system to one of our systems. We
are getting the following failure message in our log file. The failure
references Rule '0' (what is rule zero?) and has "reason: tried to open
other host port" in the Info field.
Any help would be greatly appreciated.
________________________________________________________________
/ Michael Huber Systems Administrator \
\_______________________Solipsys_Corporation_____________________/
============================================================================
====
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
============================================================================
====
============================================================================
====
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
============================================================================
====
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================