CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3.
2. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Certifications And Exams > CCSA (Check Point Certified Security Administrator) > CCSA NGX Exam 156-215.1
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2007-01-21
Member
 
Join Date: 2007-01-21
Posts: 36
Rep Power: 0
cp-nimzo has an average reputation (10+)
Default Nimzo's Offering

Hello All,
I have worked on a vce for CCSA.
I was not able to complete it since i need to move on to CCSE.
I finished the first half I would like to see others complete this project by adding comments and categorizing the rest of the questions in the vce.

If You make CCSE and CCSE+ assessible I will do the same for those.

If there are any questions you need researched post them here and i'll try to get the info for you.


Also, I suggest you set up a lab enviorment using VMware.
download the SPLAT VMware image from checkpoints website.
and either set up a vmware web site or download a vmware appliance from vmwares website. I used project-open which is a suse webserver. After i set it up i set the runlevel to 3 in the inittab to conserve on memory.

In vmware workstation clone both splat and the webserver so you can have two lan segments. I called them:

fwrome
webrome

fwoslo
weboslo

also on in the repository is an image of freesco which is a linux router that runs on fat 16. I have the default image and the mmodified freesco image which is ready for the above confiuration. In fact you could even setup all nine location to simulate the checkpoint lab if you wanted to!

You want to set them up the vmware nodes as a team there is a jpg that shows the correct configuration on how to setup the lan segments you may need to modify it slightly for you enviroment but you should have a problem.

the password for the router is

root
password

I also have a jpg of the configurations of the router.

admin (web)
password

I'm keeping this area shareable so if you have something checkpoint related put it up on the site.

http://www.4shared.com/dir/1825095/b...e/sharing.html

Nimzo
MCSE,CNE 4&5, Linux+, LPIC-1, VCP VI2,CCSE 4.1,CCSA NG, CCSA NGX
Reply With Quote
  #2 (permalink)  
Old 2007-01-22
Member
 
Join Date: 2006-10-16
Location: Brisbane, Australia
Posts: 92
Rep Power: 3
godspeedcapri has an average reputation (10+)
Default Re: Nimzo's Offering

Good stuff mate. Cheers.
Reply With Quote
  #3 (permalink)  
Old 2007-01-22
Member
 
Join Date: 2006-10-16
Location: Brisbane, Australia
Posts: 92
Rep Power: 3
godspeedcapri has an average reputation (10+)
Default Re: Nimzo's Offering

Hi Nizmo,

Is it possible to explain the vmware nic connections used for your lab setup on this post? It is quite confusing with vmnet0,vmnet1 and vmnet8...etc.

Thanks.
Reply With Quote
  #4 (permalink)  
Old 2007-01-22
Member
 
Join Date: 2007-01-21
Posts: 36
Rep Power: 0
cp-nimzo has an average reputation (10+)
Default Re: Nimzo's Offering

I have Five vm's going. They follow the configuration in the NGX I handbook.
i'll try and scan it tomorrow.

The Firewalls get two virtual nics there is the 10.X.X.X thats internal.
and 172.16.X.X that's considered external.

the webservers go on the 10.X.X.X side

the router is seperating the two 172.16.X.X networks (Rome & Olso)

AS far as the freesco router. you can run it as a floppy image specified in the vmware properties or you can set up a virtual disk (fat 16) format it with a dos boot disk. when freesco boots up theres an option to run it from the hard drive (that is the virtual disk) you then have to type router.bat to launch the router. I added an autoexec.bat file to do it for me.

freesco also has a host file for dns. it can also cache names to.

freesco has alot of functionality.

I hope this helps.
Reply With Quote
  #5 (permalink)  
Old 2007-01-23
Member
 
Join Date: 2006-10-16
Location: Brisbane, Australia
Posts: 92
Rep Power: 3
godspeedcapri has an average reputation (10+)
Default Re: Nimzo's Offering

Beautiful. :). that sure does help. Awaiting the scanned image...So basically we got to consider Vmnet1 as internal nic and Vmnet0 as external nic for each vmware machine(regardles of it being firewall or webserver)?
Reply With Quote
  #6 (permalink)  
Old 2007-01-23
Member
 
Join Date: 2007-01-21
Posts: 36
Rep Power: 0
cp-nimzo has an average reputation (10+)
Default Re: Nimzo's Offering

I created a document on on how to set up vmware.
it's on the site
Reply With Quote
  #7 (permalink)  
Old 2007-01-23
Member
 
Join Date: 2006-10-16
Location: Brisbane, Australia
Posts: 92
Rep Power: 3
godspeedcapri has an average reputation (10+)
Default Re: Nimzo's Offering

Cannot find the doco on 4shared link you have posted above.
Reply With Quote
  #8 (permalink)  
Old 2007-01-23
Member
 
Join Date: 2007-01-21
Posts: 36
Rep Power: 0
cp-nimzo has an average reputation (10+)
Default Re: Nimzo's Offering

sorry it's up there now.

Nimzo
Reply With Quote
  #9 (permalink)  
Old 2007-01-23
Member
 
Join Date: 2006-10-16
Location: Brisbane, Australia
Posts: 92
Rep Power: 3
godspeedcapri has an average reputation (10+)
Default Re: Nimzo's Offering

Excellent Nizmo. Very helpful set of documents and files.
Reply With Quote
  #10 (permalink)  
Old 2007-01-23
Member
 
Join Date: 2007-01-21
Posts: 36
Rep Power: 0
cp-nimzo has an average reputation (10+)
Default Re: Nimzo's Offering

i added the dosboot.vfd to the repository if you want to setup freesco from scratch

nimzo
Reply With Quote
  #11 (permalink)  
Old 2007-01-24
Junior Member
 
Join Date: 2006-11-18
Posts: 6
Rep Power: 0
sujithka has an average reputation (10+)
Default Re: Nimzo's Offering

Thanks Nizmo.. it was a gud document.
Reply With Quote
  #12 (permalink)  
Old 2007-04-10
Junior Member
 
Join Date: 2006-10-02
Posts: 6
Rep Power: 0
camel has an average reputation (10+)
Default Re: Nimzo's Offering

Hi Guys

have some questions related this discussion:

- this link no longer is available:
http://www.4shared.com/dir/1825095/b...e/sharing.html
'
- where to find the SPLAT VMware image on checkpoints website?? never found it

thanks

Last edited by camel; 2007-04-10 at 07:19.
Reply With Quote
  #13 (permalink)  
Old 2007-04-10
Junior Member
 
Join Date: 2006-12-02
Location: Netherlands
Posts: 24
Rep Power: 0
Spot1963 has an average reputation (10+)
Default Re: Nimzo's Offering

Try : checkpoint.homeip.net

It's has all the documents from cp_nimzo and more.

I also collected all the R60, R62 and R65 documents.

Do not abuse the link or it will be terminated. (it's a server on my home ADSL line)

If you have additional material that I could add, let me know.
__________________
ITIL-F,MCAD,MCSD,MCDBA,MCDST,MCSA 2003 (+M +S),MCSE 2003 (+M +S),MCTS,MCITP,CCNA,CCNP,CCSA,Linux+,CEH

Last edited by Spot1963; 2007-04-10 at 09:55.
Reply With Quote
  #14 (permalink)  
Old 2007-04-10
Member
 
Join Date: 2007-01-21
Posts: 36
Rep Power: 0
cp-nimzo has an average reputation (10+)
Default Re: Nimzo's Offering

You rock! Thanks

Nimzo
Reply With Quote
  #15 (permalink)  
Old 2007-04-10
Member
 
Join Date: 2007-01-21
Posts: 36
Rep Power: 0
cp-nimzo has an average reputation (10+)
Default Re: Nimzo's Offering

Try VMware's web site under the Appliance section.

Nimzo
Reply With Quote
  #16 (permalink)  
Old 2007-04-11
Member
 
Join Date: 2006-01-12
Location: Innsbruck, Austria
Posts: 49
Rep Power: 0
oliver has an average reputation (10+)
Default Re: Nimzo's Offering

thank you very much, Nimzo and SPOT1963!

kind regards from austria
oliver
Reply With Quote
  #17 (permalink)  
Old 2007-04-11
Junior Member
 
Join Date: 2006-10-02
Posts: 6
Rep Power: 0
camel has an average reputation (10+)
Default Re: Nimzo's Offering

very usefull thanks`!!!
Reply With Quote
  #18 (permalink)  
Old 2007-04-16
Junior Member
 
Join Date: 2007-01-13
Posts: 8
Rep Power: 0
ihung has an average reputation (10+)
Default Re: Nimzo's Offering

i'm prolly just being a noob but i cant access the shared space

i get error:
The file link that you requested is not valid. Please contact link publisher or...

thanks

*edit
just read camel's post

Last edited by ihung; 2007-04-16 at 03:23.
Reply With Quote
  #19 (permalink)  
Old 2007-04-18
Member
 
Join Date: 2007-01-21
Posts: 36
Rep Power: 0
cp-nimzo has an average reputation (10+)
Default Re: Nimzo's Offering

here is the link
hxxp://checkpoint.homeip.net/

change the xx to tt
Reply With Quote
  #20 (permalink)  
Old 2007-05-17
Junior Member
 
Join Date: 2006-12-02
Location: Netherlands
Posts: 24
Rep Power: 0
Spot1963 has an average reputation (10+)
Default Re: Nimzo's Offering

I have just uploaded the following documents to the site :

CheckPoint Security Administration I NGX.pdf
CheckPoint Security Administration II NGX.pdf
CheckPoint Security Administration III NGX.pdf

Have fun.
__________________
ITIL-F,MCAD,MCSD,MCDBA,MCDST,MCSA 2003 (+M +S),MCSE 2003 (+M +S),MCTS,MCITP,CCNA,CCNP,CCSA,Linux+,CEH
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -7. The time now is 00:39.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0