CPUG: The Check Point User Group

Resources for the Check Point Community, by the Check Point Community.


First, I hope you're all well and staying safe.
Second, I want to give a "heads up" that you should see more activity here shortly, and maybe a few cosmetic changes.
I'll post more details to the "Announcements" forum soon, so be on the lookout. -E

 

Search:

Type: Posts; User: ShadowPeak.com

Search: Search took 0.00 seconds.

  1. Re: dropped by fw_filter_chain Reason: chain hold failed

    Thanks for the followup, interesting. Are you running R75.47 or R77.20? There were quite a few IA fixes included in those particular releases.
  2. Re: dropped by fw_filter_chain Reason: chain hold failed

    I'd say it is almost certainly IA causing the drops based on the output of enabled_blades, although based on the non-IA rules getting caught in this you could quickly try disabling IPS with an "ips...
  3. Re: dropped by fw_filter_chain Reason: chain hold failed

    The hold_table is used to keep track of packets that the firewall kernel has sent to a daemon process for handling. The classic case is of course DNS lookups for domain objects but it is used for...
  4. Re: dropped by fw_filter_chain Reason: chain hold failed

    I seem to remember that there are some limited scenarios where this can be caused by Identity Awareness, specifically if there are invalid or unreachable domain servers configured. Assuming you are...
Results 1 to 4 of 4