Do you have a rule that allows for VRRP traffic to pass between the two
modules?  If not, that will definately cause a big problem for you.

Through Voyager, go to the Checkpoint FireWall-1 options and turn off the
"run ifwd to monitor interface changes".

What version of IPSO are you running?

-Jeff

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]On Behalf Of
MikeCC
Sent: Monday, January 29, 2001 10:43 AM
To: [EMAIL PROTECTED]
Subject: [FW1] FW's constantly changing state



Hello,

I am running two Nokia 650's with FW 4.1 running VRRP.

The issue I am having is that every couple of minutes both firewalls change
state, from installed to disconnected and back from disconnected to
installed.

When I look at the VRRP status, both firewalls think they are the
master.  The firewalls are connected for a Cisco 6509 switch, but I have
since put them on a simple hub and still see the same behavior.

Any suggestions?

MikeCC
http://atrek.org/mikecc



============================================================================
====
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
============================================================================
====



================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to