CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3.
2. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Certifications And Exams > CCSA (Check Point Certified Security Administrator) > CCSA NGX Exam 156-215.1
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2007-01-28
Member
 
Join Date: 2006-10-16
Location: Brisbane, Australia
Posts: 92
Rep Power: 3
godspeedcapri has an average reputation (10+)
Default Question on Authentication

I have come across the term 'Intersect with user database' which is found in the source & destination field of Action properties in a rule. I am confused with this term as it talks about location and user database. Could someone explain the same with a simple example.

Thanks in advance.

Cheers,
Godspeedcapri
Reply With Quote
  #2 (permalink)  
Old 2007-01-28
Member
 
Join Date: 2006-10-16
Location: Brisbane, Australia
Posts: 92
Rep Power: 3
godspeedcapri has an average reputation (10+)
Default Re: Question on Authentication

Answering my own query(as long as it helps others too). I have found the explanation

Link: hxxp://www.checkpoint.com/support/technical/online_ug/authent.html


Source - Reconcile Source in the rule with Allowed Sources in the User Properties window.


The Allowed Sources field in the User Properties window may specify that the user to whom this rule is being applied is not allowed access from the source address, while the rule may allow access. This field indicates how to resolve this conflict.

Choose Intersect with User Database to apply the intersection of the access privileges specified in the rule and in the User Properties window.

Choose Ignore User Database to allow access according to the Source specified in the rule.

Example



Suppose a user's User Properties window lists the network objects Tower and BigBen under Allowed Sources. TABLE 1-2 summarizes the various access possibilities.

TABLE 1-2 Access Possibilities rule allows access from ... Source is Intersect with User Database Source is Ignore User Database

Tower The user is allowed access only from Tower, because only Tower is in both Allowed Sources and Source. The user is allowed access only from Tower, because only Tower is in Source.

Thames The user is denied access, because there is no network object that is in both Allowed Sources and Source. The user is allowed access only from Thames, because only Thames is in Source.



Destination - Reconcile Destination in the rule with Allowed Destinations in the User Properties window.


The Allowed Destinations field in the User Properties window may specify that the user to whom this rule is being applied is not allowed access to the destination address, while the rule may allow access. This field indicates how to resolve this conflict.

Choose Intersect with User Database to apply the intersection of the access privileges specified in the rule and in the User Properties window.

Choose Ignore User Database to allow access according to the Destination specified in the rule.

Cheers,
Godspeedcapri
Reply With Quote
  #3 (permalink)  
Old 2007-01-29
Junior Member
 
Join Date: 2006-08-21
Posts: 10
Rep Power: 0
raghavendra has an average reputation (10+)
Default Re: Question on Authentication

Hi i Passed ccsa NGx 10 days back with 77% there is lot of new questions, don't rely on dumps Study every thing word by word and understand.
Questions on smartdefence and webintelligence had lot of questions.
i manged to get 50% in NAT.

Authentication questions are easy,

Studied
the Checkpoint Documents (from website)
Syngress book
Couse book
Tk
Reply With Quote
  #4 (permalink)  
Old 2007-01-29
Junior Member
 
Join Date: 2006-08-21
Posts: 10
Rep Power: 0
raghavendra has an average reputation (10+)
Default Re: Question on Authentication

Study the following topics
1.Smart defece-full
2.Web intelligence-full
3.Nat-Static,hide,port translation,
4.Authentication-User,client
5.Backup-Study the checkpoint course book(every question from this book only)
6.Ldap-Study the checkpoint course book(every question from this book only)
Reply With Quote
  #5 (permalink)  
Old 2007-01-29
Junior Member
 
Join Date: 2007-01-21
Posts: 17
Rep Power: 0
cyberbastion has an average reputation (10+)
Default Re: Question on Authentication

Quote:
Originally Posted by raghavendra View Post
Study the following topics
....
5.Backup-Study the checkpoint course book(every question from this book only)
6.Ldap-Study the checkpoint course book(every question from this book only)
Hello,
where did you get the checkpoint course book?
Thanks

btw, I found check point official website having some information about LDAP
http://www.checkpoint.com/support/te...march.htm#5205
and CheckPoint_R61_SmartCenter_UserGuide.pdf

Last edited by cyberbastion; 2007-01-29 at 05:10. Reason: addition info
Reply With Quote
  #6 (permalink)  
Old 2007-01-29
Junior Member
 
Join Date: 2006-08-21
Posts: 10
Rep Power: 0
raghavendra has an average reputation (10+)
Default Re: Question on Authentication

Hi,

If u join any offical check pint course in any institute there u will get offical course book in that ldap is contains all theory and practicals.
Reply With Quote
  #7 (permalink)  
Old 2007-01-30
Junior Member
 
Join Date: 2007-01-21
Posts: 17
Rep Power: 0
cyberbastion has an average reputation (10+)
Default Re: Question on Authentication

Quote:
Originally Posted by raghavendra View Post
Hi,

If u join any offical check pint course in any institute there u will get offical course book in that ldap is contains all theory and practicals.
ic, it seems no hope to get the course book.
in addition, did you read for the check point official R61 doc such as "CheckPoint_R61_Firewall_SmartDefense_UserGuide.pd f",
"CheckPoint_R61_SmartCenter_UserGuide.pdf" and etc..
Thanks
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -7. The time now is 00:42.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0