Troubleshooting guide
Appendix B: Object.C Properties in VPN-1/FireWall-1 4.0 The Properties section of the $FWDIR/conf/objects.C file
Advanced Technical Reference Guide 4.1 • June 2000 187
Property Property always
appears in object.C ?
(1=yes,0=userhas
to add entry)
Explanation Default Value
smtp_exact_str_match 0 Insist that header fields match exactly (true) or
allow header fields with no “:” (false)
FALSE
smtp_limit_content_buf_siz
e
0 Forbid content type headers longer than 4K (true)
or allow them (false)
TRUE
smtp_msg 0 Asmtpd welcome message ""
smtp_multi_cont_type 0 Allow MIME nesting (true) or not (false) FALSE
smtp_rfc821 0 Insist on <> around the email address (true) or not
(false)
TRUE
smtp_rfc822 0 Insist on RFC822 compliancy (true) or not (false) TRUE
smtp_strip_active_tags 0 Strip activeX by default (true) or not
(false)(resource may override this)
FALSE
smtp_strip_applet_tags 0 Strip Java by default (true) or not (false)(resource
may override this)
FALSE
smtp_strip_ftp_tags 0 Strip FTP links by default (true) or not
(false)(resource may override this)
FALSE
smtp_strip_port_tags 0 Strip PORT commands by default (true) or not
(false)(resource may override this)
FALSE
smtp_strip_script_tags 0 Strip JavaScript by default (true) or not
(false)(resource may override this)
FALSE
sn_connect_timeout 0 Time interval in seconds to try to connect the
agent after failure
10
sn_timeout 0 Timeout on connecting to the agent, in seconds 120
snauth_old_clients_messa
ge
0 Message text displayed to users of old session
agents.
"FireWall Module does
not support non-
encrypted connection.
Please update your
agent software."
snauth_protocol 0 Support for old versions of the session agent?
Support for SSL?
(none=yes,no;
ssl=no,yes;
ssl+none=yes,yes)
No default value
exists.
If the property does
not appear neither old
versions of the
session agent nor SSL
are supported
snk_agent_id 0 The agent ID of the AXENT defender ""
snk_agent_key 0 The agent key of the AXENT defender ""
snk_server_bkp_ip 0 The backup IP address of the AXENT defender ""
snk_server_ip 0 The IP address of the AXENT defender ""
snk_timeout 0 Timeout interval for the connection to the AXENT
defender
20
snmptrapcmd 1 Command to issue for SNMP traps “snmp_trap localhost”
spoofalertcmd 1 Command to issue for IP spoofing alerts “fwalert”