CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. Come to CPUG CON 2008 EUROPE in Switzerland on September 8th - 9th!
    Two days full of technical content for Check Point administrators in the beautiful Swiss Alps!
    We already have sign-ups from twelve different countries!
2. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 7/14, 8/25, 10/6, 11/3, 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3, 9/7.
3. Corrent S3500 SecureXL Turbocards For Sale - Last Six Remaining - Get Your Spares!
4. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > Miscellaneous
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2007-09-27
desiac desiac is offline
Junior Member
 
Join Date: 2006-12-10
Posts: 8
Rep Power: 0
desiac has an average reputation (10+)
Default FTP Issues

Hi all,

having a really weird problem with our fw-1, ftp connections have been running fine through our perimeter firewall for months if not years without any problems. Starting early this week, basically no data commands are making it through our external firewall (ls,dir,put,get,mput....). Users can sucesfully connect in, establsh a session & traverse the directory structre, just no data commands.

Firewall policy hadn't changed in over a week, then problems out of no where. Nothing is shown as dropped or denied in tracker, showing accepts 99.99% of the time, recived a cpl SmartDefence "monitors" but very sparatic, maybe seen 2 or 3 of them. Everything in the policy is set to log.

Once i saw the smartdefence stuff i assumed it ws playing up or someone had been tinkering. We enabled smartdefence back in June, so in the policy, under the smartdefence tab, i have disabled all smartdefence features (confirmed nothing was ticked). reburnt the policy, and still the same problem.

Wondering if anyone has experianced anything similar or has any ideas?

really appreciate it,

thnx :)
Reply With Quote
  #2 (permalink)  
Old 2007-09-28
melipla melipla is offline
Senior Member
 
Join Date: 2006-01-25
Posts: 724
Rep Power: 3
melipla has an average reputation (10+)
Default Re: FTP Issues

Smart Defense updates have been known to cause problems. Have you updated your Smart Defense recently? If so, can you revert to a database revision control prior to the SD update [as reverting will restore the previous SD definitions]? Otherwise try updating the definitions again.
Reply With Quote
  #3 (permalink)  
Old 2007-10-09
hotice_ hotice_ is offline
Senior Member
 
Join Date: 2007-06-05
Location: Montreal,Canada
Posts: 135
Rep Power: 2
hotice_ has an average reputation (10+)
Default Re: FTP Issues

Sounds like SmartDefense to me...

try disabling the whole module just to test this and this will confirm it..


I've had problems in the past where even with that specific defense unchecked, I was still having issues until I completely disabled the module...
Reply With Quote
  #4 (permalink)  
Old 2007-10-24
reticent reticent is offline
Junior Member
 
Join Date: 2006-09-25
Posts: 3
Rep Power: 0
reticent has an average reputation (10+)
Default Re: FTP Issues

You could also consider using the "ftp-basic" tcp service rather than "ftp". It enforces some it's smart defense checks a little less stringently.
Reply With Quote
  #5 (permalink)  
Old 2007-11-05
desiac desiac is offline
Junior Member
 
Join Date: 2006-12-10
Posts: 8
Rep Power: 0
desiac has an average reputation (10+)
Default Re: FTP Issues

thanks all, once i disabled smart defence all systems functioning correctly :)
Reply With Quote
  #6 (permalink)  
Old 2007-11-19
hotice_ hotice_ is offline
Senior Member
 
Join Date: 2007-06-05
Location: Montreal,Canada
Posts: 135
Rep Power: 2
hotice_ has an average reputation (10+)
Default Re: FTP Issues

Quote:
Originally Posted by desiac View Post
thanks all, once i disabled smart defence all systems functioning correctly :)
This HAS to be the most used solution to most problems in R65 :)
Reply With Quote
  #7 (permalink)  
Old 2007-11-19
melipla melipla is offline
Senior Member
 
Join Date: 2006-01-25
Posts: 724
Rep Power: 3
melipla has an average reputation (10+)
Default Re: FTP Issues

Quote:
Originally Posted by hotice_ View Post
This HAS to be the most used solution to most problems in R65 :)
Better make that NGX :)
Reply With Quote
  #8 (permalink)  
Old 2007-12-26
vijayant vijayant is offline
Senior Member
 
Join Date: 2006-05-24
Location: India
Posts: 116
Rep Power: 3
vijayant has an average reputation (10+)
Default Re: FTP Issues

Hi All
Similar problem we faced regarding some windows Drive share and data transfer. The user was able to connect to the shared drive through firewall but could not put or get data. Finally we found it was a MTU issue. Allow ICMP in smart defence as it is used to find out MSS..
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 14:22.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.0.0