Members Login
Username 
 
Password 
    Remember Me  
Post Info TOPIC: Stand-alone to distributed


Status: Offline
Posts: 12
Date:
Stand-alone to distributed


Anyone have any directions, tips, or resources on migrating a stand alone checkpoint to a distributed setup?
Thanks!

__________________
nox


Status: Offline
Posts: 9
Date:

Thsi is pulled from another site online: found via google.com.


Prepare separate licenses

Install a seperate management station in the same version as you have 4.1
SPx

Transfer the configuration files from the 4.1 firewall with management
station to the management station.

$FWDIR/conf/objects.C (objects and properties)
$FWDIR/conf/*.W (security policy)
$FWDIR/conf/rulebases.fws (Combined rule bases for GUI clients)
$FWDIR/conf/fwauth.NDB (User database)
$FWDIR/conf/fwmusers Adminstrators
$FWDIR/conf/gui-clients Allow GUI Adminstrative hosts

Note: Any *.NDB files must be transferred in binary mode. All other files
should be transferred in ASCII mode.

Test your management station to see if it operates correctly

From then on you are set with a seperate management station, but work is
not finished.

You will need to start to work with a distributed firewall module. This
means that you need to re-install the firewall module.

Perform the authentication between the console and the firewall module.

Now you should be able to have exchanges between the management console
and the firewall module.

Adapte the security policy if required.

Load the security policy.




__________________
RoxcoR Technologies www.pheusion.com Security / Cryptography / Application development
Page 1 of 1  sorted by
 
Quick Reply

Please log in to post quick replies.

Tweet this page Post to Digg Post to Del.icio.us


Create your own FREE Forum
Report Abuse
Powered by ActiveBoard