[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] RE: RE: [FW1] ICMP Stateful or NOT ?
I feel I'm obliged to reply on this thread to clarify. I'm very unfortunate at this moment that I don't have any resources to test and confirm or deny the suggestion that I relayed. I apologize for saying without confirming if it causes enough confusion. I thought there is a chance that this can work. But I cannot tell for sure until I see it. I'll update once I can test and play around this. Sincere apologies, Sun Yu, CISSP Lucent Worldwide Services > -----Original Message----- > From: [email protected] > [mailto:[email protected]]On > Behalf Of Alun > Jenkins > Sent: Thursday, January 11, 2001 10:40 AM > To: [email protected] > Subject: Re: RE: [FW1] ICMP Stateful or NOT ? > > > > Has anyone got Sun Yu's suggestion to work? > I tried and couldn't > my rules looked like this > > > Ourlans -> any echo/rep accept longlog gateways any > echo/req > traceroute > any any drop long > > Properties say enable ICMP after last > > Ping / trace route don't work > The only way I could get them to work was to move the > properties ICMP to before last > which kinda defeats the object. > > Alun > > > > ============================================================== > ================== > To unsubscribe from this mailing list, please see the > instructions at > http://www.checkpoint.com/services/mailing.html > ============================================================== > ================== > ================================================================================ To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================================================
|