LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Non-*NIX Forums > General
User Name
Password
General This forum is for non-technical general discussion which can include both Linux and non-Linux topics. Have fun!

Notices


Reply
  Search this Thread
Old 10-13-2003, 10:31 PM   #1
neo77777
LQ Addict
 
Registered: Dec 2001
Location: Brooklyn, NY
Distribution: *NIX
Posts: 3,704

Rep: Reputation: 56
Checkpoint firewall - a little rant


We just finished deploying new Nokia appliances as our firewalls with Checkpoint NG AI, and here I got a blocked query in the logger - X11 is not allowed through service "* any". Please create an earlier rule to explicitely allow X11 service. How's that for any rule. Checkpoint has no explanation yet.
 
Old 10-13-2003, 10:55 PM   #2
jeremy
root
 
Registered: Jun 2000
Distribution: Debian, Red Hat, Slackware, Fedora, Ubuntu
Posts: 13,600

Rep: Reputation: 4083Reputation: 4083Reputation: 4083Reputation: 4083Reputation: 4083Reputation: 4083Reputation: 4083Reputation: 4083Reputation: 4083Reputation: 4083Reputation: 4083
This is a feature - FW1 (as of NG FP3) now blocks X11 even on an any rule. You have to create a rule to explicitly allow it. You can also use dbedit to set "reject_x11_in_any" to false, but do so at your own risk.

--jeremy
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
CheckPoint SecureClient behind Linux Firewall chamnane Linux - Security 1 06-25-2005 06:20 PM
Replacing checkpoint firewall, arp table itsjustme Linux - Security 1 12-30-2004 01:10 PM
rant, rant, rant (dselect) fenderman11111 Debian 2 07-06-2004 06:03 PM
Checkpoint for Linux mikedeatworld Linux - Networking 1 07-02-2004 07:07 PM
Checkpoint Firewall-1 and Redhat 7.1 lgo001 Linux - Software 0 05-15-2001 10:34 AM

LinuxQuestions.org > Forums > Non-*NIX Forums > General

All times are GMT -5. The time now is 04:09 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration