| CPUG | |
| The Check Point User Group | |
| A Resource For The Check Point Community. Fast. Useful. Independent. | |
|
| |||||||
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| I think you're going to have to spend some time reading some documentation - start with the PDFs on the CD. The basics are that Check Point has three components - the enforcement module (that actually does the firewalling), the managment server (where policies are stored/compiled, and logs are sent to), and the GUI clients - your PC, where you configure policy. You can combine those components, having management and enforcement on one server. I would recommend having separate management and enforcement modules though - it will make life easier in the long run. Use SecurePlatform on both the module and the management. Install that from the CD on each server, configure one as a management server, the other as an enforcement module. Connect with SmartDashboard to the management server, define the enforcement module, establish SIC. Configure a policy and install it. Tweak policy to add rules as required. Rinse, repeat. If you've got money/equipment, I would have a clustered pair for my enforcement modules, so that service doesn't get interrupted if one fails. It also makes life easier if you're doing maintenance. Post some specifics about what you're trying to do, what hardware you've got, etc, and we can try and help - but you're going to have to read some docs. If you have no idea about Check Point (or firewalls in general) then something like Phoneboy's book "Essential Check Point Firewall-1 NG" is very good reading. |
| |||
| unfortunately in german only but best fw1 book ever read: http://www.fw-1.de/ as northlandboy already mentioned, let us know you plans so we can try to help you to get more into it __________________ misery is optional |
| |||
| Configuring Check Point NGX VPN-1/Firewall-1, has been an excellent resource for me. As northlandboy noted, the documentation on the installation media is very detailed reference material. |
| |||
| Thanks For all please if you have any Files you see help me send to me on soran4u@gmail.com and very thanks For your Support. |
| |||
| Soran, do you have anyone else that can help you. I think this project is doomed to fail. Who will create rules, objects, configure NAT etc. All these things need to be learned along with many others. Who has asked you to do this? Can they provide you with any extra help? You really need a couple of months to prepeare for this work and have the hardware and pdfs available for testing. |
| |||
| Agreed. Are we being trolled here perhaps? If we're not, well Soran, we're not going to do your job for you. People here may choose to freely help, but we can only help if you start providing information. Most other businesses that have no clue about Check Point, but want to deploy it, will either invest the time and money in training their staff, or they will pay outside consultants to do the work. You can't just come and say "help help I've been told to install Check Point what do I do?" Why are you being told to install Check Point, and for what? What are you trying to achieve? What "files" do you expect us to send you if you haven't even done the basics like describing the situation in front of you? People might help you, but you've got to help yourself too. |
![]() |
| Thread Tools | |
| Display Modes | |
| |