I have NGAI on SPLAT with HFA 15. I need to get users to a webpage that
contains a java-based application. The application downloads large (2MB
and less) .jar files as part of a simulation and training application.
tcpdump at the external shows the http request going from internal to
the ip address of the website. The return traffic from the website goes
to NAT address and high port number. The log shows that the internal
client goes out to port 80 but the source is incremented by 1 for the
entire time the application fails. The vendor thinks there is a problem
with my ability to download the .jar files. However, this has not and
is not a problem now or in the past. Even their test site checks out
okay for a small .jar file. If I take an imaged client outside the FW,
everything runs just fine.
Has anyone run into this problem? There are no log entries for a
SmartDefense failure, reject or deny.
Thanks in advance for your interest,
Patrick Kelly
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================
|