SCOM Firewall / Traffic
Our network team checked the firewall logs and found that packets are being dropped. I was asked to tell them why as the log shows the Source as Our SCOM 2007 R2 RMS server. I have no Idea on what it coukld be , any advice will be helpful:
I have changed teh names in the Logs as mentioned below - to generalize it
"Number" "Date" "Time" "Interface" "Origin" "Type" "Action" "Service" "Source Port" "Source" "Destination" "Protocol" "Rule" "Rule Name" "Current Rule Number" "User" "Information" "Product" "Source Machine Name" "Source User Name"
"221" "14Jul2011" "6:01:13" "Internal.56" "FirewallName" "Log" "Drop" "http_inspect" "56584" "RMS FQDN" "no-dns-yet.demon.co.uk" "tcp" "133" "" "133-OUR_HQ_Simplified" "" "" "Security Gateway/Management" ""
July 14th, 2011 8:59am
Hi,
Do you have any web service monitors? Do you RMS acts as a watcher node?http://OpsMgr.ru/
Free Windows Admin Tool Kit Click here and download it now
July 14th, 2011 11:08am
Yes, We have Web Application Monitors and Our SCOM RMS is the Watcher Nocde.
July 17th, 2011 12:58am
Do you have any of this monitored web apps on the no-dns-yet.demon.co.uk?http://OpsMgr.ru/
Free Windows Admin Tool Kit Click here and download it now
July 17th, 2011 7:26am
No , this is not even reachable. ( I mean the domain)
July 18th, 2011 12:36am


