|
any security risks - public and private
(Preview)
Hi
Can somebody help. We have a pair of nokia IP530's at the front end of our network for inbound web traffic. I want to also use this firewall via a seperate network completely to send inbound and outbound traffic to a 3rd party company. This is a point to point network to a 3rd party route...
|
mac123
|
0
|
305
|
|
|
|
IPSEC issue with FW1
(Preview)
The IPSEC tunnel through FW1 (not a VPN tunnel terminating at FW1) is up and working but the tunnel traffic itself is being denied. researching it shows that outbound tunnel traffic is allowed but return traffic is denied as the FW thinks its far end initiated traffic. I see a log entry fo...
|
comstocb
|
0
|
317
|
|
|
|
AES-256 or 3DES IKE negotiation for SecureRemote
(Preview)
All,
I have the following situation that am hoping someone in this group can shed some light and perhap educate me on this subject
I have a user running SecureRemote (NOT SecureClient) running identical Windows platforms (Windows XP Prof. Service Pack 1) and Secure Remote NG with AI R55 b...
|
ccseng2002
|
3
|
545
|
|
|
|
Internal error [15] while handling object?
(Preview)
OK, the support guy that was helping me recover from my failed management server upgrade got an upgrade_import file to me that he reconstructed from the Objects.C and Rules.C on my (still functioning) Nokia module.
I did a clean install of NG R55 on my (reformatted) management server and ran upgra...
|
kalvyn
|
0
|
344
|
|
|
|
SecureClient problems
(Preview)
Hi all,
We have upgraded our Nokia based (PSO) FW-1 4.1 (SP2) to NG running on a dedicate management platfrom and Resilience as the enforcement pint..
Now, is there an easy way of allowing older secureclient/remote (runnig DES as the encryption) to connect to NG ?
It seems that client are unabl...
|
aantonir
|
1
|
483
|
|
|
|
fw4.1 sp5 "Cannot install license on running proc"
(Preview)
We're running 2 checkpoint FW-1 SP5 installations on Sun Netra T1 105 w/ Solaris 2.8 - implementing NAT and site-to-site VPN.
Recently, our remote site Netra failed. A replacement was obtained, and the hard disk from the old was swapped into the new. Also swapped was the NVROM chip.&...
|
poller
|
1
|
324
|
|
|
|
SSH and CPMI
(Preview)
Any idea why a firewall would require SSH access from the only machine which has the GUI client on it. Firewall is configured to allow CPMI which I understand but no idea why SSH should be needed?
Is there any or should I disable it?
Thanks
|
CJ
|
2
|
411
|
|
|
|
SecuRemote continually prompts for password
(Preview)
Hi,
I'm having an issue with a SecuRemote client which is continually prompting for a password after authenticating.
Have tried most things but not sure if there is a setting I can change on the client/firewall that will fix this.
I'm using the lastest install:
NG with Application Intellig...
|
sciantar
|
1
|
434
|
|
|
|
Secure remote and DSL
(Preview)
I have just installed a DSL connection and keep getting a message gateway not responding. I have configured:
IKE over TCP and office mode and UDP encapsulation.
Any Ideas?
|
Karenl
|
3
|
528
|
|
|
|
cannot connect to internet
(Preview)
I installed checkpoint NG on win2k professional. I have router with ISDN line connection which is having NAT enabled. I have cofigured the checkpoint as follows. Created a network object and ip range object and enabled NAT on these objects and applied the policies. I have configured the client with...
|
peter
|
4
|
401
|
|
|
|
CIFS with Resources
(Preview)
To all,
I am currently reviewing my rule base after an upgrade to NG with AI. I am wanting to alter my protocol access for anything that is using tcp
445 (CIFS). I am wanting to define these with a resource. However I would like to go a bit further than just adding the servers names and share to the CIF...
|
BigBlkXE
|
0
|
288
|
|
|
|
Cannot connect with SmartConsole
(Preview)
Hi,
I have installed R54 (secureplatform) from the CD, then upgraded to R55 (from file download) to get all my NIC recognised.
However, when I installed SmartConsole from the R54 CD, it does not work. First it does connect to the firewall and get the new certificate, then it fails saying "Connexi...
|
20100
|
7
|
1150
|
|
|
|
rename management server
(Preview)
I have a new box to use as a mangement serverrunning win2k, but for various reasons want to give it a new name. The ip address will be the same as the old management server. However the smart dashboard won't let me rename it. It says detatch the lic. first. But if I detatch the lic. then I can't run smartdash...
|
nelcnetworks
|
0
|
357
|
|
|
|
Where did my rulebases go?
(Preview)
OK, I just upgraded my Win2K management server to NG R55 from FP2. Reading the FAQ on Phoneboy (and in seaching on Google) this seems resolveable. Unfortunately, I can't seem to resolve it. I ran the command:
cp_merge import_policy -f old_policy.W -n myPolicy
And go...
|
kalvyn
|
0
|
353
|
|
|
|
Provider-1 : Global Services
(Preview)
To make global services present in the CMA's database, we're using a the following tip : a disabled "any any grp_glb_svc drop" GLOBAL rule that we install on our CMA" where "grp_glb_svc" contains all global services that we need at the CMA level.
Do you know another clean way to make the sam...
|
jpforcioli
|
1
|
357
|
|
|