<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Broadcasts on Quantum Edge VNF in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/147003#M6769</link>
    <description>&lt;P&gt;To confirm is the DHCP traffic specifically allowed in your policy and which objects were used here?&lt;/P&gt;</description>
    <pubDate>Mon, 25 Apr 2022 15:20:59 GMT</pubDate>
    <dc:creator>Chris_Atkinson</dc:creator>
    <dc:date>2022-04-25T15:20:59Z</dc:date>
    <item>
      <title>Broadcasts on Quantum Edge VNF</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/146670#M6766</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;we use a Quantum Edge VNF on a VMWare SD WAN Edge. Everything seems to work. However, the broadcasts no longer arrive at the IP Helper.&lt;/P&gt;&lt;P&gt;In the log we found this:&lt;BR /&gt;fwconn_ent_early_expiration: [now=1649416396] conn &amp;lt;dir 1, 0.0.0.0:68 -&amp;gt; 255.255.255.255:67 IPP 17&amp;gt; reached early expiration;&lt;BR /&gt;fwconn_ent_eligible_for_del : conn &amp;lt;dir 1, 0.0.0.0:68 -&amp;gt; 255.255.255.255:67 IPP 17&amp;gt; is eligible for deletion;&lt;/P&gt;&lt;P&gt;Does anyone have an explanation for this?&lt;/P&gt;</description>
      <pubDate>Thu, 21 Apr 2022 07:33:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/146670#M6766</guid>
      <dc:creator>HolgerHartwig</dc:creator>
      <dc:date>2022-04-21T07:33:50Z</dc:date>
    </item>
    <item>
      <title>Re: Broadcasts on Quantum Edge VNF</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/146987#M6767</link>
      <description>&lt;P&gt;Hi - Is R80.20.35 used here or another/earlier version?&lt;/P&gt;</description>
      <pubDate>Mon, 25 Apr 2022 14:13:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/146987#M6767</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-04-25T14:13:57Z</dc:date>
    </item>
    <item>
      <title>Re: Broadcasts on Quantum Edge VNF</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/146989#M6768</link>
      <description>&lt;P&gt;Hi Chris,&lt;BR /&gt;we use R80.20.35 (992002577), we have also tried R80.20.15 but with the same problem.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Apr 2022 14:28:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/146989#M6768</guid>
      <dc:creator>HolgerHartwig</dc:creator>
      <dc:date>2022-04-25T14:28:52Z</dc:date>
    </item>
    <item>
      <title>Re: Broadcasts on Quantum Edge VNF</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/147003#M6769</link>
      <description>&lt;P&gt;To confirm is the DHCP traffic specifically allowed in your policy and which objects were used here?&lt;/P&gt;</description>
      <pubDate>Mon, 25 Apr 2022 15:20:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/147003#M6769</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-04-25T15:20:59Z</dc:date>
    </item>
    <item>
      <title>Re: Broadcasts on Quantum Edge VNF</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/147041#M6773</link>
      <description>&lt;P&gt;Hi Chris,&lt;/P&gt;&lt;P&gt;just checked with our customer: Yes, there is a matching rule for DHCP inbound and outbound. We also tried disabling the setting "Accept incoming traffic to DHCP and DNS services of gateways" but nothing changed.&lt;/P&gt;&lt;P&gt;As always the packets show as allowed but it is not working. After removing VNF it starts to work immediately.&lt;/P&gt;</description>
      <pubDate>Tue, 26 Apr 2022 07:40:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/147041#M6773</guid>
      <dc:creator>HolgerHartwig</dc:creator>
      <dc:date>2022-04-26T07:40:15Z</dc:date>
    </item>
    <item>
      <title>Re: Broadcasts on Quantum Edge VNF</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/147052#M6774</link>
      <description>&lt;P&gt;Understood, with reference to the below do the rules look like those in sk104114 or something different?&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="DHCP-Relay1810280226.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/16184i8162F8F8FD28BAEC/image-size/large?v=v2&amp;amp;px=999" role="button" title="DHCP-Relay1810280226.png" alt="DHCP-Relay1810280226.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;If the problem persists there after please investigate further with assistance from TAC.&lt;/P&gt;</description>
      <pubDate>Tue, 26 Apr 2022 09:01:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/147052#M6774</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-04-26T09:01:59Z</dc:date>
    </item>
    <item>
      <title>Re: Broadcasts on Quantum Edge VNF</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/147130#M6775</link>
      <description>&lt;P&gt;Good Morning Chris,&lt;/P&gt;&lt;P&gt;it turned out that there's a bug in VMWare's SD WAN Edge software.&lt;/P&gt;&lt;P&gt;Switching to an older version removes all problems.&lt;/P&gt;&lt;P&gt;VMWare is already working on it.&lt;/P&gt;&lt;P&gt;Thanks for your help!!!&lt;/P&gt;</description>
      <pubDate>Wed, 27 Apr 2022 06:55:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Broadcasts-on-Quantum-Edge-VNF/m-p/147130#M6775</guid>
      <dc:creator>HolgerHartwig</dc:creator>
      <dc:date>2022-04-27T06:55:12Z</dc:date>
    </item>
  </channel>
</rss>

