> Source: [sk110078](https://support.checkpoint.com/results/sk/sk110078)

# sk110078 - SQLNET2 Traffic Dropping on Redirect

| Property | Value |
|----------|-------|
| Solution ID | sk110078 |
| Date Created | 2016-02-21 |
| Last Modified | 2019-01-10 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Gaia |

## Symptoms

- SQLNET2 Traffic is dropped be Security gateway on Redirect.

## Cause

SQLNET2 Traffic policy rule is defined by the host and original SQLNET application server with service tcp sqlnet2-1521. SQLNET2 traffic that contains a REDIRECT request to a new IP address or port to redirected IP address is being dropped by the firewall due to a bug in the SQLNET2 Protocol parser.

The only rule that should be needed is between the host and original application server. The protocol parser should be able to inspect the payload of the redirect packet and dynamically open a pinhole to allow the redirected connection.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
