Hi,
After some debugging we found the problem:
The interface has 3 ip addresses.
1 - LAN
2 - subnet between our proxy server and the firewall
Until here all works fine and we receive the logs !!!
when we add a 3 ip address it stops ???
tcpdump shows that the firewall uses the 3 ip address to go
to the
management machine and not the lan ip 10.32.16.20.
the ip addresses:
10.32.16.20 (lan)
10.32.15.1 (proxy)
10.32.100.33
there is a static route to our managment machine via gateway
10.32.16.50.
All ideas are now more than welcome.
> Hi,
>
> I have a central magagment server and two firewalls,
one on the same lan
> as the managment server and one remote.
> I get logs for the local firewall but not for the
remote.
>
> I have a rule for this FW to Managment server allow
FW1_log
> I can get the log trough remote file managment.
>
> The firewalls are Nokia with 3.8.1-BUILD029 and
CPfw1-R55p
> The managment server is a windows 2003
>
> The setup for the local and remote firewall are the
same.
> At Logs and Masters:
> Schedule log switch at Midnight
>
> Aditional logging
> Forward logs to Managment server
> Schedule at Midnight
>
> Masters
> Define Masters -> Managment server
>
> Log Servers
> Define Log servers -> Managment Server
>
> What must i do to get his working ?
>
> TIA
>
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to LISTSERV amadeus.us.checkpoint.com
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http:
//www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> fw-1-owner ts.checkpoint.com
> =================================================
>
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV amadeus.us.checkpoint.com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http:
//www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner ts.checkpoint.com
=================================================
|