
Nortel Switched Firewall 2.3.3 User’s Guide and Command Reference
412
Troubleshooting
213455-L, October 2005
Poor performance with other devices
In this scenario, you see poor performance when using the Nortel Switched Firewall with
another network device such as a router.
Actions
From the Nortel Switched Firewall console, manually configure the link parameters for
the port(s) suspected of poor performance. Turn off auto negotiation. Set the port speed
(10,100, 1000) and duplex mode (full, half) to be compatible with the adjacent device.
Verify that compatible parameters are set on the adjacent device.
Cannot log in to the management station
from the SMART Client
The SMART Client cannot log into the management station.
Actions
If the SMART Client and SmartCenter Server are not in the same network, add a rule to
allow Check Point Management Interface (CPMI) to go through these two networks.
Enter the command
cpconfig
on the management station to see if client IP address is on
the SMART Client list.
If you are running your management station from the Firewall, log in as root before
entering this command.
Check Point sends connection failed
messages to Firewall
In this scenario, you receive
fwconn_record_conn: Id_set_wto(connections)
failed
messages during the session. This occurs when the session limit of Check Point is
reached. The default is 25000 connections.