I haven't seen this hands on yet, only helped to "debug" it over the
phone, but assuming they haven't misconfigured, has anyone seen/heard of a
bug whereby nfs/rpc portmapper (udp) packets are not encrypted/tunneled
even though there is a rule there to do it?  They get to the remote
firewall "in-clear", destined for the destination global address (rather
than the remote firewall interface) and are dropped by rule-0 because they
haven't been encrypted.
 
 NT/Firewall 4.1 SP3 on the local end and Nokia IPSO 3.2.1/Firewall 4.1 SP2
on the remote end.

 Neil Pike 
 Protech Computing Ltd

 


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to