Are these users connecting through a squid proxy?
You might experience the problem "Connect command found in HTTP header".
You can check if this might be the case by using the following command on
your firewall module:
#fw ctl get int asm_http_allow_connect (which most probably gives 0 - zero -
as answer
You can change it (does not survive reboot) with: #fw ctl set int
asm_http_allow_connect 1
If it is working than this might solves your problem.
The permanent solution depends on OS and you could search www.phoneboy.com
for the string given after problem to find more information about it.
Met vriendelijke groet,
Peter Kruger (p.kruger AT cjd DOT nl)
#################################################
Date: Tue, 29 Mar 2005 12:01:27 -0600
From: "Rankovich, Zoran" <ZRankovi AT MACNEAL DOT COM>
Subject: HTTPS problem
I am checking to see whether anyone has encountered a problem I am having
with users trying to get to HTTPS sites. They can get to HTTP sites but when
they try to get to a secure HTTPS site, the page comes back not found. I am
running R55 on a Resilience platform. Any thoughts would be appreciated.
Zoran Rankovich
MacNeal Health Network
This message (including any attachments) is confidential and intended solely
for the use of the individual or entity to whom it is addressed, and is
protected by law. If you are not the intended recipient, please delete the
message (including any attachments) and notify the originator that you
received the message in error. Any disclosure, copying, or distribution of
this message, or the taking of any action based on it, is strictly
prohibited. Any views expressed in this message are those of the individual
sender, except where the sender specifies and with authority, states them to
be the views of
MacNeal Health Network.
This footer also confirms that this email message has been scanned for the
presence of computer
viruses.
=================================================
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
|