Firewall-1

Re: [FW-1] Network Object Errors after policy install

Subject: Re: [FW-1] Network Object Errors after policy install
From: Eric Goulden <Eric AT SECUREGROUP DOT CA>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Tue, 25 Nov 2003 16:08:35 -0700
1) "fw ver" will get you the version of your checkpoint firewall.

2)This I believe happens when you have two service's with the same port #.
Did you make some custom services?

Warning: Services port conflict. port 6001 (tcp) serves both
<weblogic> and <Unknown>.
 Uncheck 'Match for Any' checkbox in the 'Advanced' dialogue for one
of them.

hope this helps.

Eric Goulden
Security Engineer
Secure Group Inc
Suite 258, 3359-27 St. NE
Calgary, Alberta T1Y 5E4
www.securegroup.ca
Securing The Corporate Network



-----Original Message-----
From: Mailing list for discussion of Firewall-1
[mailto:FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM]On Behalf Of Chris
Cameron
Sent: Tuesday, November 25, 2003 7:42 AM
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Subject: [FW-1] Network Object Errors after policy install


I've inherited a Firewall-1 NG firewall (If someone can tell me how to
determine the exact version, that'd help) that's running on Sparc
Solaris 8.

My problem is that I get an odd warning message whenever I do a policy
install. The exact warning is:

Warning: Services port conflict. port 6001 (tcp) serves both
<weblogic> and <Unknown>.
 Uncheck 'Match for Any' checkbox in the 'Advanced' dialogue for one
of them.

 Warning: Services port conflict. port 6002 (tcp) serves both
<weblogicssl> and <Unknown>.
 Uncheck 'Match for Any' checkbox in the 'Advanced' dialogue for one
of them.



"<Unknown>" doesn't exist anywhere, I've considered just unchecking
"Match for Any", but it seems to me that this <Unknown> object is the
real problem.


Has anyone run into this before? Any ideas on how I can stop these
warnings?


Thanks,
Chris

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>