| CPUG | |
| The Check Point User Group | |
| A Resource For The Check Point Community. Fast. Useful. Independent. | |
|
| |||||||
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| We recently upgraded from NG R55 to NGX R60 (using the automatic procedure) in our Windows 2003 server. Now we can't apply the security policy , it gives the error: Operation failed, install/uninstall has been improperly terminated. In the log the only thing I see is that all connection attempts are dropped. TCP packet out of state: First packet isn't SYN; tcp_flags: SYN-ACK TCP packet out of state: First packet isn't SYN; tcp_flags: RST-ACK TCP packet out of state: First packet isn't SYN; tcp_flags: RST TCP packet out of state: First packet isn't SYN; tcp_flags: ACK TCP packet out of state: First packet isn't SYN; tcp_flags: FIN-ACK TCP packet out of state: First packet isn't SYN; tcp_flags: FIN-PUSH-ACK Has anyone been in this situation?. Do you know what can be happening?? Thanks. |
| |||
| Distributed or Standalone installation? If distributed, does its Win2003 on Gateway And SmartCenter? have you try "fw unloadlocal" on the gateway and then push the policy? Last edited by jeepee; 2005-11-17 at 06:28. |
| |||
| Also, make sure your license was upgraded properly... Just a thought... __________________ ==================== Aaron Vivo CCSE Plus, CCMSE, NSA ==================== |
| |||
| This problem is described in the article sk31193 in Check Point's KB. This error could be caused by changed SmartDefense licencing. HTTP application checks are now available only as a part of Web Intelligence "product" which is licensed separatedly. Try to clear all Web Server boxes in network objects (Host Node > General Properties > Products > Configure Servers). |
![]() |
| Thread Tools | |
| Display Modes | |
| |