Hello,

we have a problem with connecting a client to a load balancing cluster.
The cluster consists of three machines with ip 192.168.1.1, 192.168.1.2
and 192.168.1.3. The client always connects to the ip 192.168.1.1 but
gets the answer packet from 192.168.1.2. If I have only the rules :

Source          Destination             Service                 Action

                        192.168.1.1
CLIENT-IP               192.168.1.2             TCP-Destinationport
accept
                        192.168.1.3


, the fw drops the answer packet from 192.168.1.2. I don't want to allow
a rule like:

Source          Destination             Service                 Action

192.168.1.2             CLIENT-IP               TCP > 1023
accept


Is there any other possible solution for this problem ????


Best regards
Daniel Fitzner

------------------------------------------------------------------------
----
---------

Daniel Fitzner
IT-Services
T-Systems debis Systemhaus GEI GmbH / GS Berlin
debis Haus am Potsdamer Platz
10875 Berlin

mail: [EMAIL PROTECTED]
fon: +49 30 2554-3266
fax: +49 30 2554-3187

 


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to