Ed,
go into your network objects and change the definition to allow broadcast.  If you 
then want to
disable it, set a rule before the last that says any <group of broadcast addrs> any 
drop no log

This kind of error is common in an NT networking arena with all the fancy NBT stuff 
that goes on.  You
could also create a simpler rule, any any NBT drop no log

HTH,
CryptoTEch

Ed Davidson wrote:

> Logging Rule 0 makes my logs unusable as I am getting all of my denied broadcasts 
>logged as rule0.
> This is 1000's of log entries per minute.
>
> Quote
> "To turn it off, go to Policy, then select properties, then click on the
> security tab and uncheck the log implied rule.
> then save your changes.
>
> Regards,
>
> Mohamed Hassan
> CCSA, CCSE"
>
> THIS DOESN'T WORK :(  I did this and I am still getting these log entries.
>
> HELP!
>
> Edwin Davidson
>
> http://www.primeinc.com
> **********************************************************************
> This email and any files transmitted with it are confidential
> and intended solely for the use of the individual or entity to
> whom they are addressed.  If you have received this email
> in error please reply to the sender of the message.
>
> The views expressed in this correspondence may not
> reflect the views of Prime, Inc.
>
> This footnote also confirms that this email message has
> been scanned for the presence of computer viruses.
> ***********************************************************************
>
> ================================================================================
>      To unsubscribe from this mailing list, please see the instructions at
>               http://www.checkpoint.com/services/mailing.html
> ================================================================================




================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to