Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
xLadyMorgana
Participant

Kerberos-TCP violation

 

Hi All, 

I have one edge gateway that is giving this 'Connection alert' when some traffic is routing through here. No other gateway is having this issue. I'm still in touch with TAC but they are saying it might be a Identity Awareness issue with Kerberos but our identity awareness is setup identical throughout all gateways. Has anyone run into this error before and can give some guidance on what else it might be? I've personally not seen this before. 

Firewall - Protocol violation detected with protocol:(Kerberos-TCP), matched protocol sig_id:(2), violation sig_id:(4). (500)

0 Kudos
2 Replies
PhoneBoy
Admin
Admin

You might try disabling the protocol signature for the Kerberos-TCP service.
This is done in the relevant service object in the Advanced section.
Curiously, the default Kerberos service (called Kerberos_v5_TCP in a default R81.20 installation) does not have this checked.

the_rock
Legend
Legend

I would try what Phoneboy suggested, makes sense.

Andy

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events