|
CP site-to-site VPN using Certificate
(Preview)
All,
I am currently running Checkpoint NG with AI R55 with HFA008 on Secureplatform enforcement module. I am using Provider-1 NG with AI R55 on Secureplatform to control the enforcement module. I would like to test the site-to-site VPN using CP certificate. Anyone who is run...
|
ccseng2002
|
0
|
386
|
|
|
|
Mgmt Console Synch Help
(Preview)
I had to make my standy mgmt console the Master and synch the rules...all went well. Now that I have fixed the old master (now the stand-by) I want to re-engage it as the master, but I cannot synch the rules! arg! I too nervous to just make it the Active and "hope" that the rules that hav...
|
furbit
|
0
|
282
|
|
|
|
Secure Client NGAI R55 and WOW! Cable Modem
(Preview)
I just moved to my new house, and got WOW! cable modem access. When I setup my computer, I can no longer connect with Secure Client to my office. We're running Checkpoint NG AI R54 on a Nokia IP350. I have about 50 other secure client users running around using routers, DSL, cable modems, Sprint Wireless...
|
sirbo
|
2
|
522
|
|
|
|
Nokia IP330 booting problems
(Preview)
Hi all...I am having some problems booting up my Nokia IP330 firewall. I have a connected the firewall via the console to my terminal emulator that is running VT100. Everytime I boot up I keep getting the cmos setup instead of the IPSO/boot mangr options. It is auto detecting the IBM 20gig hard drive. I...
|
samson
|
3
|
725
|
|
|
|
Virtual Adapter Disabled
(Preview)
I've installed SecuRemote NG a dozen of times but never have I encountered this problem.
Running Dell Lattitude with Windows XP and installed SecuRemote NG FP 2. After reboot, under Device Manager, the "VPN-1 SecureClient Virtual Ethernet Adapter" is disabled. Trying to enable i...
|
dsiwiak
|
1
|
384
|
|
|
|
Help Needed - Checkpoint Secureplateform-routing
(Preview)
Dear All
We have 3 nic's on the firewall system. ETH0 on external interface and ETH1 on local lan interface and ETH2 on DMZ.After installed checkpoint secure platform R55 the routing is not working. ie. the packet is not able to routing to external interface from local lan segment. If someone cla...
|
suze2002
|
4
|
595
|
|
|
|
OSPF costs
(Preview)
Not techically a Firewall issue but more of an IPSO problem.
I have two IPSO (700 series) firewalls which advertise a default route out (1 at a higher cost than the other)
What I want to do is add a route to another network (which hangs off of the the firewalls) into the ospf but reversing the co...
|
wibbled
|
1
|
310
|
|
|
|
failed to load objects in setup.C
(Preview)
recently took over a CP 4.1 sp2 on Solaris 7,
/VAR was 100% during a policy push
after that I get the error
"failed to load objects in setup.C", line 26 ERROR: Cannot use <ClntAuthDefault:: Auth>: Not in Scope"
"failed to load objects in wellfleet.C", line 92 ERROR: Canno...
|
tsweeney
|
0
|
277
|
|
|
|
log onto a Secureplatform box via key?
(Preview)
All,
I am running Secureplatform NG with AI R55 with HFA 008.
From my linux workstation, I can log onto the the Secureplatform box just fine with password. However, I would like to do via private/public key instead of password because I have scripts that need to copy files from the Splat box...
|
ccseng2002
|
5
|
1239
|
|
|
|
Provider-1 NG with AI on Secureplatform
(Preview)
All,
Does anyone in this group have experience with Provider-1 NG with AI on Secureplatform? I've been using Provider-1 FeaturePack 3 with HFA323 on Solaris platform and NG with AI R54 and R55 on Redhat Linux platform. However, Checkpoint also releases Provider-1 for Secureplatf...
|
ccseng2002
|
0
|
314
|
|
|
|
Certificate Authority
(Preview)
hi,
i just installed NG FP2 Management Server on Solarios box because my other mgmt box crashed. I restored the files, but when i open one of my firewall module objects i get a pop-up of "Unable to conect certificate authoiry on the mgmt station. please make sure that the certificate auth. dae...
|
nme2nme
|
1
|
559
|
|
|
|
Trimming old Policy Packages
(Preview)
Does anyone know of a quick and easy way to remove old policy packages from NG-AI? I know they can be manually deleted very cumbersomely 1 at a time through the SmartDashboard, but this is very slow if you have alot.
I also know they can be removed manually from the /conf directory...
|
mstachow
|
1
|
348
|
|
|
|
Secure Client Connects to Wrong Interface of FW
(Preview)
Hi,
I am setting up a secure client/NG AI FW1 VPN. For some reason, when connecting with the secure client attempts to establish the Phase I tunnel with the internal IP address of the FW, which it cannot connect to.
Both IP address of the firewall are routable, but only the external...
|
emmetto
|
1
|
557
|
|
|
|
External and Anti-Spoofing problem
(Preview)
Hi,I need some help on a problem with Anti-spoofing feature. I have a Checkpoint VPN module, with two NIC cards. One card is connected to a DMZ and the other is connected to a internal network. Because the internal network AND Internet (External) can acces...
|
Lermure
|
1
|
502
|
|
|
|
post_sync_connections_table: failed to get cluster
(Preview)
Setup is a Nokia IP330 VRRP cluster, CP NG fp3 HF1 running on IPSO 3.6-FCS4. The logs are getting flooded with the following messages:
[LOG_CRIT] kernel: fwhandle_get: Table kbufs - Invalid handle - bad entry in pool 0
and
[LOG_CRIT] kernel: post_sync_connections_table: failed to get cl...
|
osbahr
|
1
|
457
|
|
|