CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3.
2. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 Platforms > Nokia And IPSO
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2005-09-29
Junior Member
 
Join Date: 2005-09-29
Posts: 10
Rep Power: 0
genlee has an average reputation (10+)
Default Connectivity issue with new nokia 380

I am new to ipso so sorry if this is a dumb question(all of my firewalls currently run solaris), I did search but could not find any answers to this. It seems the only way I can connect(ssh, https) to the 380 is if my client is on the same network. Is there an option somewhere to allow connections from different subnets? With tcpdump, I see it establish a connection but then the 380 just stops responding(I can telnet to 80 but get no response afterwards). I tried this with a 2nd 380 and same problem. No checkpoint services were running at the time.
Reply With Quote
  #2 (permalink)  
Old 2005-10-06
Senior Member
 
Join Date: 2005-08-22
Location: Ottawa, Canada
Posts: 347
Rep Power: 4
Lackie has an average reputation (10+)
Default Re: Connectivity issue with new nokia 380

Quote:
Originally Posted by genlee
I am new to ipso so sorry if this is a dumb question(all of my firewalls currently run solaris), I did search but could not find any answers to this. It seems the only way I can connect(ssh, https) to the 380 is if my client is on the same network. Is there an option somewhere to allow connections from different subnets? With tcpdump, I see it establish a connection but then the 380 just stops responding(I can telnet to 80 but get no response afterwards). I tried this with a 2nd 380 and same problem. No checkpoint services were running at the time.
If you are trying this from an internal network that isn't directly connected to the Nokia, you will need to add in a static route on the Nokia to tell it how to get back to the distant network.

If it's from the external you are trying, check your default route.
Reply With Quote
  #3 (permalink)  
Old 2006-03-13
Junior Member
 
Join Date: 2006-03-13
Posts: 3
Rep Power: 0
ScottRD has an average reputation (10+)
Default Re: Connectivity issue with new nokia 380

If this is not simply a routing issue,a s suggested by Lackie, it is likely because IP Forwarding is disabled. Hwne the Check Point product is installed but not turned on, the defauly baheviour of the Nokia is to NOT forward between the interfaces. Try the following from the command line prompt:

ipsofwd on admin
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -7. The time now is 04:31.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0