Firewall-1

[FW-1] Virtual defragmentation error: Timeout on Protocol ipv6-crypt err

Subject: [FW-1] Virtual defragmentation error: Timeout on Protocol ipv6-crypt error message
From: Alan Choyna <achoyna AT PATHF DOT COM>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Fri, 22 Sep 2006 23:27:15 -0500
Hi Guru's,

Running a VPN tunnel between a R56 HFA09 cluster and a remote stand alone R56 HFA16 management server/gateway we seem to be getting many of the above errors in our logs on the cluster.

We seem to also be getting a lot of SSH sessions killed a short time after connection and l'm wondering if they could be related.

Another VPN route was added from a 3rd R56 HFA09 gateway recently and l'm now seeing: "encryption failure: Warning: possible replay attack. Sequence Number" error messages, so l'm wondering whether the addition of this route (through the R56 HFA16 management server/gateway) is the cause of all of these issues, and the SSH session terminations are a symptom of it.

Has anyone seen either of these errors? Or can someone shed some light as to what the issue is?

Thanks in advance,

Alan



Alan C. Choyna
Director of Infrastructure

Pathfinder Associates, LLC

<http://www.pathfinderassoc.com/>http://www.pathfinderassoc.com
Internet Strategy Business Consultants
<mailto:achoyna AT pathfinderassoc DOT com>mailto:achoyna@pathf<mailto:achoyna AT pathfinderassoc DOT com>.com
Business telephone (312) 372-1058 ext 6003. Mobile (773) 255-6662


=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>
  • [FW-1] Virtual defragmentation error: Timeout on Protocol ipv6-crypt error message, Alan Choyna <=