Review the Implicit Rules. (Policy properties)
The implicit rules are first on the firewall analisys.
The traffic DNS goes in clear form.
Turn off the check (DNS over TCP and UDP) and try again.
Best reagrds
-----Original Message-----
From: Mailing list for discussion of Firewall-1
[mailto:FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM] On Behalf Of Ali,
Tahir
Sent: Jueves, 27 de Mayo de 2004 03:57 a.m.
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Subject: [FW-1] edge X 16, DNS over VPN dose't work
Hi,
I have some Edge box, have setup site-to-site with CP NG FP3 Nokia ip530
box. I have configured the edge box's so all trafikk is routed via the main
FW. VPN work fine. But DNS traffic dose't go over the VPN. I have try to
ping the DNS server, and icmp to the DNS server gose over the VPN. but not
port 53.
Can some one help
Regards
Tahir
=================================================
To set vacation, Out-Of-Office, or away messages, send an email to
LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
|