CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. Come to CPUG CON 2008 EUROPE in Switzerland on September 8th - 9th!
    Two days full of technical content for Check Point administrators in the beautiful Swiss Alps!
    We already have 72 attendees signed up from 20 countries!
2. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 10/6, 11/3, 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3, 9/7.
3. Corrent S3500 SecureXL Turbocards For Sale - Last Six Remaining - Get Your Spares!
4. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 Platforms > Check Point VPN-1 Edge Appliances
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2006-09-15
AndyB AndyB is offline
Member
 
Join Date: 2005-10-20
Posts: 47
Rep Power: 0
AndyB has an average reputation (10+)
Default VPN-1 Edge ADSL libsw files

Guys,

I notice that there are several threads regarding libsw files and no doubt I may be repeating the question, but I am looking for some clarification on what files I need to update my SmartCentre server (R55 on a W2K server with HFA_016). We have never installed an Edge device before so it is a bit of a learning curve.

We are looking to implement an new Edge ADSL box with 6.5 Firmware installed. I notice from Checkpoint that I can download and install 6.0.81 libsw files for Windows platforms, would they be ok to install?

I also notice that I can download and install v6.5.35 libsw files for windows platforms, but this does not indicate that they are for the ADSL model?

I also notice that I have to update to HFA_018 for 6.5 firmware support?

Would be grateful for any advice, as I'm totally confused at the moment.

regards
Reply With Quote
  #2 (permalink)  
Old 2006-09-15
Porter Porter is offline
Senior Member
 
Join Date: 2006-07-10
Posts: 164
Rep Power: 3
Porter has an average reputation (10+)
Default Re: VPN-1 Edge ADSL libsw files

you should use the libsw6.5.35 for the 6.5, locate your installlation diretory \FW1\R55\libsw and copy files to this folder, I would not use any longer versions below. I haven't read the relasenotes note yet, if the HFA18 is a requierement install it first
__________________
misery is optional

Last edited by Porter; 2006-09-15 at 04:58.
Reply With Quote
  #3 (permalink)  
Old 2006-09-21
AndyB AndyB is offline
Member
 
Join Date: 2005-10-20
Posts: 47
Rep Power: 0
AndyB has an average reputation (10+)
Default Re: VPN-1 Edge ADSL libsw files

Guys, thanks for your comments.

I have patched the Management Station to HFA_018 and installed libsw files for 6.5.35. But I am still unable to connect the edge box to the management server. I get the following error.

Connection Refused - This VPN-1 Edge is not registered to the service center

Has anyone got a Checkpoint VPN-1 Edge X series ADSL being managed by a R55 Management station running on W2K?

My firewall support people tell me that I have to edit the Object_5_0.c and add an entry for the VPN-1_Edge_X_ADSL_Series device, so that the management station can recognise this device? This is a fix for R61 I'm told and should theoretically work for R55 which does not enthuse me with confidence. Has anyone had to do this to get this to work?

regards
Reply With Quote
  #4 (permalink)  
Old 2006-09-21
RayPesek RayPesek is offline
Senior Member
 
Join Date: 2006-03-19
Location: Northern Ohio
Posts: 875
Rep Power: 3
RayPesek has an average reputation (10+)
Default Re: VPN-1 Edge ADSL libsw files

When you set up an Edge to be managed by a SmartCenter, there are a number of things you need to do:

Set up an Edge gateway on the SmartCenter. Note the object name. Generate the key from the SmartCenter object page and note it as well.

On the Edge, Connect to a Service Center, in this case it's really the external IP of your SmartCenter. This is where you will use the SmartCenter object name and key. They're effectively a user name and password to validate the initial communications.

If you do not use implied rules, there are a couple of ports in the 9200 range that need to be opened between the Edge and the SmartCenter.

When the Edge connects to the SmartCenter, it will pull its digital certificate and install it automatically.

Ray
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 23:19.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.0.0