Hi,
Below is the scenario
Checkpoint ( 3 subnets) ------ > Symantec decrypter (2 subnets reaches, 3rd subnet doesnt reach).
Above devices are connected back to back, initially there are subnet with /27 routed between these two devices, post ip exhaust , one more /27 was added.
traffic reaches from checkpoint to symantec decrytor device, now second subnet is also exhausted.
now we are planning with 3 rd subnet in symantec side.
we could see packet leaving checkpoint exit interface through fwmonitor, but there is no received packets in packet capture of ssl decryptor.
Is there an alternate option to check packet leaving checkpoint other than fwmonitor or tcpdump.
thanks
BSB