View Single Post
  #5 (permalink)  
Old 2008-02-16
chuachongchee chuachongchee is offline
Senior Member
 
Join Date: 2007-09-17
Location: Singapore
Posts: 157
Rep Power: 1
chuachongchee has an average reputation (10+)
Default Re: Access Violation

Quote:
Originally Posted by avilT View Post
Yes, I do have the stealth rule and ssh is now allowed as I have access lists on the internet routers as well. Why the source IP is not logged?
Not too sure... i once encounter on R62 UTM-1, allowing checkpoint management connections opens up the ssh too!!...

Did you log the stealth rule?? Ensure the rules are right on top, but below your vpn rules, mgmt rules etc...

Are the other logging for the other rules working?? If so, i would think that stealth rule is not logged...

Try to ssh into your firewall... then do "fw ctl zdebug drop" then try run a ssh from internet see if its logged, you can oso do the same with tcpdump or fw monitor...
Reply With Quote