<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Evil-Ping (ICMP) and TCP-Ephemeral dropped packet in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Evil-Ping-ICMP-and-TCP-Ephemeral-dropped-packet/m-p/144239#M22455</link>
    <description>&lt;P&gt;Hi Expert,&lt;/P&gt;&lt;P&gt;I am trying to reach from source to destination on port 22 but in tracker, opposite direction traffic is showing as source port 22 and destination port TCP-Ephemeral-32768-61000 which is dropping by Firewall. attached is the tracker logs.&lt;/P&gt;&lt;P&gt;What could be the reason of this issue ? Please advice.&lt;/P&gt;</description>
    <pubDate>Mon, 21 Mar 2022 02:36:00 GMT</pubDate>
    <dc:creator>shamimalam</dc:creator>
    <dc:date>2022-03-21T02:36:00Z</dc:date>
    <item>
      <title>Evil-Ping (ICMP) and TCP-Ephemeral dropped packet</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Evil-Ping-ICMP-and-TCP-Ephemeral-dropped-packet/m-p/144239#M22455</link>
      <description>&lt;P&gt;Hi Expert,&lt;/P&gt;&lt;P&gt;I am trying to reach from source to destination on port 22 but in tracker, opposite direction traffic is showing as source port 22 and destination port TCP-Ephemeral-32768-61000 which is dropping by Firewall. attached is the tracker logs.&lt;/P&gt;&lt;P&gt;What could be the reason of this issue ? Please advice.&lt;/P&gt;</description>
      <pubDate>Mon, 21 Mar 2022 02:36:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Evil-Ping-ICMP-and-TCP-Ephemeral-dropped-packet/m-p/144239#M22455</guid>
      <dc:creator>shamimalam</dc:creator>
      <dc:date>2022-03-21T02:36:00Z</dc:date>
    </item>
    <item>
      <title>Re: Evil-Ping (ICMP) and TCP-Ephemeral dropped packet</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Evil-Ping-ICMP-and-TCP-Ephemeral-dropped-packet/m-p/144311#M22456</link>
      <description>&lt;P&gt;If you're not seeing the outbound port 22 connection in the logs, it could easily be an asymmetric routing situation.&lt;BR /&gt;Have you verified with tcpdump the entire flow is coming through the gateway?&lt;/P&gt;</description>
      <pubDate>Mon, 21 Mar 2022 15:16:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Evil-Ping-ICMP-and-TCP-Ephemeral-dropped-packet/m-p/144311#M22456</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-03-21T15:16:19Z</dc:date>
    </item>
  </channel>
</rss>

