Question
SNMP accepted by Firewall rull, then getting rejected.
The community string match ( I have done this on two firewalls already).
This paticular firewall had a policy that limted SNMP, I create a new one, moved it up in priotiy and still was not getting the get - ACK.
Debug flow shows this:
14:47:48 policy-88 is matched, act-accept
14:47:48after iprope_captive_check(): is_captive-0, ret-matched, act-accept, idx-88
14:47:48 checked gnum-10000f policy-4294967295, ret-matched, act-accept
14:47:48 policy-4294967295 is matched, act-drop
14:47:48 gnum-10000f check result: ret-matched, act-drop, flag-00000800, flag2-00000000
14:47:48 after check: ret-matched, act-drop, flag-00000800, flag2-00000000
14:47:48iprope_in_check() check failed on policy 0, drop
Anyone run into this?
Anyone run into this?
