Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
bsb
Explorer

Packet leaves firewall, but doesnt reach peer device

Hi, 

Below is the scenario

 

Checkpoint ( 3 subnets) ------ > Symantec decrypter (2 subnets reaches, 3rd subnet doesnt reach).

 

Above devices are connected back to back, initially there are subnet with /27 routed between these two devices, post ip exhaust , one more /27 was added.

traffic reaches from checkpoint to symantec decrytor device, now second subnet is also exhausted.

now we are planning with 3 rd subnet in symantec side.

we could see packet leaving checkpoint exit interface through fwmonitor, but there is no received packets in packet capture of ssl decryptor.

Is there an alternate option to check packet leaving checkpoint other than fwmonitor or tcpdump.

thanks

BSB

0 Kudos
3 Replies
This widget could not be displayed.