Hi All,

I have a web server in a DMZ. I want it to be front-end for OWA to an
Exchange server in the LAN. When entering username/password to access a
mailbox I see the following sequence of entries in the log repeated 3 times
follow by a failure to reach the OWA page:

NIC  Origin Action Service   Source    Destination   Proto Rule

DMZ  FW     accept epmap-tcp WebServer XchgServer       tcp     8
LAN  FW     reject epmap-tcp WebServer XchgServer    tcp   998
LAN  FW     reject epmap-tcp WebServer XchgServer    tcp   998
LAN  FW     reject epmap-tcp WebServer XchgServer    tcp   998

The related 2 rules allow any service in each direction. Anti-spoofing is
active. What might rule 998 be?

Larry


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to