| CPUG | |
| The Check Point User Group | |
| A Resource For The Check Point Community. Fast. Useful. Independent. | |
|
| |||||||
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| Every single implied rule shows up under the single number of zero. Disabling the implied rules will break a lot of things if you have not manually created the needed rules to replace them. Ray |
| |||
| Ray and kva already said it, but in case you need a 3rd opinion... If you don't know Check Point pretty well, don't disable the implied rules, especially the top 4 tick boxes. They exist and are ticked for a reason, they allow vital Check Point connections, you can lock yourself out, lose connectivity between modules, etc. |
| |||
| What is the purpose of this UDP_All_Ports in this VPN Tunnel? Number: 3522675 Date: 28Feb2007 Time: 16:54:12 Product: VPN-1 Pro/Express Interface: eth-s1p2c0 Origin: myfirewall Type: Log Action: Drop Protocol: udp Service: UDP_All_Ports (33524)Source: myfirewall Destination: Ext_Peer Rule: 4 Current Rule Number: 4-Houston2_20061205 Rule UID: {1A5BCE10-5B11-4803-9D27-45DDB8097F58} Rule Name: Implied Rules Outbound Source Port: 36998 Encryption Scheme: IKE VPN Peer Gateway: Ext_Peer Encryption Methods: ESP: 3DES + MD5 + PFS Community: EXT-Extranet Subproduct: VPN VPN Feature: VPN Information: service_id: UDP_All_Ports encryption fail reason: Packet is dropped because there is no valid SA - please refer to solution sk19423 in SecureKnowledge Database for more information |
| |||
| Quote:
Ray |
![]() |
| Thread Tools | |
| Display Modes | |
| |