Hello,
I'm using the essential Firewall edition (v8), and if I start a "ping -t" from a workstation, destined to a host on the other side of the firewall, it will work for a few minutes, then start dropping packets, sometimes receiving a "destination host unreachable" from the firewall itself, otherwise, just "request timed out"....if I leave the ping running, it will recover after a few minutes, but the timing changes a bit (sometimes it pings a bit longer before it starts dropping traffic, other times it's shorter). It acts like there is some type of IPS enabled, and it looks like it's disabled in the gui, but It's grayed out.
While this is occuring, I can ping the host consistently from the console of the firewall itself.
We have a network monitoring package that pings many hosts, and it appears to be blocked by this "adaptive IPS" behavior every few minutes.
Is there a way to confirm this is occuring from the command line, since the gui and ips logs are disabled in "Essential Firewall"? Or disable all such functionality from the command line?
The packet filter has a "permit any to any" as the first rule.
Any help you can provide would be greatly appreciated.
Ryan