<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic First packet isn't SYN R80.30 in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/First-packet-isn-t-SYN-R80-30/m-p/103920#M19963</link>
    <description>&lt;P&gt;&lt;SPAN&gt;There are 2 firewalls. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;According to the Src and Destination with ports. I have allowed the connections in both firewalls and after policy been installed User still facing packet drop issue. In which, I check firewalls logs and I saw the rules which I have created its hitting as an ACCEPT one time and rest of time its getting DROP&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;How can I solve this issue?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 01 Dec 2020 19:17:37 GMT</pubDate>
    <dc:creator>mohammedkhan</dc:creator>
    <dc:date>2020-12-01T19:17:37Z</dc:date>
    <item>
      <title>First packet isn't SYN R80.30</title>
      <link>https://community.checkpoint.com/t5/General-Topics/First-packet-isn-t-SYN-R80-30/m-p/103920#M19963</link>
      <description>&lt;P&gt;&lt;SPAN&gt;There are 2 firewalls. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;According to the Src and Destination with ports. I have allowed the connections in both firewalls and after policy been installed User still facing packet drop issue. In which, I check firewalls logs and I saw the rules which I have created its hitting as an ACCEPT one time and rest of time its getting DROP&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;How can I solve this issue?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 01 Dec 2020 19:17:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/First-packet-isn-t-SYN-R80-30/m-p/103920#M19963</guid>
      <dc:creator>mohammedkhan</dc:creator>
      <dc:date>2020-12-01T19:17:37Z</dc:date>
    </item>
    <item>
      <title>Re: First packet isn't SYN R80.30</title>
      <link>https://community.checkpoint.com/t5/General-Topics/First-packet-isn-t-SYN-R80-30/m-p/103923#M19964</link>
      <description>&lt;P&gt;Do the drops come from a firewall where it already shows as accepted?&lt;/P&gt;
&lt;P&gt;This particular drop suggests to me you have asymmetric routing. The path from the client to the server goes through the firewalls, while the path from the server back to the client does not. This would cause the firewalls to see the SYN and the ACK, but not the SYN-ACK between them, which would result in a drop like this.&lt;/P&gt;</description>
      <pubDate>Tue, 01 Dec 2020 20:49:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/First-packet-isn-t-SYN-R80-30/m-p/103923#M19964</guid>
      <dc:creator>Bob_Zimmerman</dc:creator>
      <dc:date>2020-12-01T20:49:31Z</dc:date>
    </item>
  </channel>
</rss>

