Tags:
checkpoint, Checkpoint, NGX, Software firewall
The problem is that, when users connect to one firewall site from secure client they could not resolve the FQDN for their mail server. This happens only for 2 to 3 secs and then again the DNS resolution starts working.
On the same time, if someone connects to some other site of diff firewall of diff location on same company, they are able to resolve the FQDN.
The only diff between the user.c file of both the site is "global_support_tcp_ike", which is disabled for the site which is faulty. So just wondering where exactly the problem lies. Is this from client end or something related to DNS ( which is not likely the problem, as other DNS resolutions are working fine).
| Top Expert: |
grimkin |
| Expert Since: |
03/11/2003 |
| Accepted Solutions: |
63 |
| Computer Expertise: |
Advanced |
grimkin has been an Expert for 5 years 10 months, during which he has posted 257 comments
and answered 63 questions. grimkin is just one of 138 experts in the Checkpoint Firewall Zone.
20081119-EE-VQP-48 - Hierarchy / EE_QW_2_20070628