<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SMB FW is not able to terminate the session after received the RST ACK packet from the server in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-FW-is-not-able-to-terminate-the-session-after-received-the/m-p/72193#M2841</link>
    <description>&lt;P&gt;If this is a SMB FW you should post in SMB Aplliances and SMP instead ! For session timeouts, SMBs have the Advanced Setting &amp;gt; Aggressive Aging parameters. Find more information in&amp;nbsp;sk41248&amp;nbsp;How does the Security Gateway handle Established TCP Connections?&lt;/P&gt;</description>
    <pubDate>Tue, 14 Jan 2020 09:20:48 GMT</pubDate>
    <dc:creator>G_W_Albrecht</dc:creator>
    <dc:date>2020-01-14T09:20:48Z</dc:date>
    <item>
      <title>SMB FW is not able to terminate the session after received the RST ACK packet from the server</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-FW-is-not-able-to-terminate-the-session-after-received-the/m-p/72174#M2840</link>
      <description>&lt;P&gt;Happy New year to all!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It is a best practice to use the random source port. One of our customers is implementing a third party application that uses the same source and destination non-standard TCP port (50150).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The first session gets established successfully. The application tries to re-establishing another session ( after 4 seconds) using the same source and destination port if the previous session gets a break. FW considers a new session request ( SYN request) as part of the existing established session as it was neither terminated properly nor used the different source port. Therefore, the application is unable to re-established the session.&lt;/P&gt;&lt;P&gt;Just wondering do anyone from you came across with a similar situation? If yes then what was the resolution?&lt;/P&gt;&lt;P&gt;Appreciate your inputs.&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jan 2020 02:41:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-FW-is-not-able-to-terminate-the-session-after-received-the/m-p/72174#M2840</guid>
      <dc:creator>naren_nd</dc:creator>
      <dc:date>2020-01-14T02:41:02Z</dc:date>
    </item>
    <item>
      <title>Re: SMB FW is not able to terminate the session after received the RST ACK packet from the server</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-FW-is-not-able-to-terminate-the-session-after-received-the/m-p/72193#M2841</link>
      <description>&lt;P&gt;If this is a SMB FW you should post in SMB Aplliances and SMP instead ! For session timeouts, SMBs have the Advanced Setting &amp;gt; Aggressive Aging parameters. Find more information in&amp;nbsp;sk41248&amp;nbsp;How does the Security Gateway handle Established TCP Connections?&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jan 2020 09:20:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-FW-is-not-able-to-terminate-the-session-after-received-the/m-p/72193#M2841</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2020-01-14T09:20:48Z</dc:date>
    </item>
  </channel>
</rss>

