Members Login
Username 
 
Password 
    Remember Me  
Post Info TOPIC: Fetching DT Security Policy from management failed


Status: Offline
Posts: 1
Date:
Fetching DT Security Policy from management failed


I have next messages in Event log when my Checkpoint Firewall NG AI (R54) started.
1. The description for Event ID ( 1 ) in Source ( FireWall-1 ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. The following information is part of the event: ps fetch: Couldn't get masters from masters file: The system cannot find the file specified..
2. FW1SVC: Fetching DT Security Policy from management failed
But everithing works.
Please help me. What it is mean.

__________________
nox


Status: Offline
Posts: 9
Date:
RE: Fetching DT Security Policy from management fa


Is your MGMT station Nated?

Ive seen an article on checkpoints site that displays this error, but I cant get in right not to get it.

I found this via SecurPoint

In database:

(1)Mangement station must define with it's non-routable ip, while
populating the routable ip into it's topology page. VERY IMPORTANT!!
This must be done prior to initiating sic between mgmt station and
remote firewall.

(2) Create a host object that represents the managements stations natted
ip address.

In policy:

(1) Local policy has to have a rule that allows the remote firewall to
communicate to the natted ip address of the management station, you
should also have address translation rules that nat mgmt station ip
inbound/outbound accordingly.

(2) In policy for remote firewall you must have a rule in the security
policy that allows the remote firewall to communicate to the management
station vice versa, you must also have a address translation rule that
reads as follows:

SRC: Firewall
DST: management station
Service: any

X-lated source: =original
X-lated destin: =natted ip
X-lated service: =original

__________________
RoxcoR Technologies www.pheusion.com Security / Cryptography / Application development
Page 1 of 1  sorted by
 
Quick Reply

Please log in to post quick replies.

Tweet this page Post to Digg Post to Del.icio.us


Create your own FREE Forum
Report Abuse
Powered by ActiveBoard