Great Circle Associates Firewalls
(October 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Firewall 3.0b Bug?
From: David Watson <david . watson @ info-com . com>
Date: Thu, 23 Oct 1997 13:56:53 +0100
To: firewalls @ greatcircle . com

Hi,

We recently upgraded a client's Firewall to v3.0b, running Solaris 2.5.1 on
a fully patched dual processor Ultra 2 server with Sun Quad ethernet card.

During the last week, it has spontaneously rebooted 3 times with the
following logged to /var/adm/messages:

Oct 20 16:48:08 gateway unix: Called from 10036e80, fp=30171c60, args=0 a 0
3c0000 0 30171ec0
Oct 20 16:48:08 gateway unix: fw_filter: reentrance. fw_level: 2 (2 0)
Oct 20 16:48:08 gateway unix: End traceback...
Oct 20 16:48:08 gateway unix: fw_filter: reentrance. fw_level: 2 (2 0)
Oct 20 16:48:08 gateway last message repeated 3 times
Oct 20 16:48:08 gateway unix: panic[cpu1]/thread=0x30195ec0: trap
Oct 20 16:48:10 gateway unix: syncing file systems... [5] 3fw_filter:
reentrance. fw_level: 2 (2 0)

This is obviously causing our client a great deal of concern. The recent
patch for v3.0b does not mention this fault in its known bug list. We
intent to install the patch anyway later this week to fix another smtp
related 'feature'.

I have spoken with another Firewall-1 administrator (paula @
 mgh .
 org) who is
having identical problems and said:

" Are you running the Websense software on your firewall?  
Apparently this is one of the triggers.  My firewall company 
didn't tell me about this problem until after I upgraded.
They were the ones who recommended the upgrade in the first
place because I was having other problems getting the Websense software
to run on my firewall. "

Our clients currently use the Eliashim ViruSafe Firewall CVP product, but
have tried an evalutation on Websense 3 months ago on their machine too.

Has anyone out there also suffered from this problem, which seems to have
introduced by the upgrade from 3.0ap1 to 3.0b? Can anyone suggest a
solution / workaround? We are awaiting a response from Checkpoint to our
open support call.

Thanks for you time,

David


--
David Watson			Voice: 	UK 01904 438000
Facilities Manager		Fax:		UK 01904 435196
Infocom UK Ltd		E-Mail:	david .
 watson @
 info-com .
 com

Indexed By Date Previous: Re: Using DHCP with Firewalls
From: "(* Unknown *)" <phoenix @ clark . net>
Next: OFFTOPIC - Just a thought
From: Rik Hemsley <hemsleyr @ keyline . co . uk>
Indexed By Thread Previous: Re: R: Firewalls, and virus
From: David Lang <dlang @ diginsite . com>
Next: OFFTOPIC - Just a thought
From: Rik Hemsley <hemsleyr @ keyline . co . uk>

Google
 
Search Internet Search www.greatcircle.com