| CPUG | |
| The Check Point User Group | |
| A Resource For The Check Point Community. Fast. Useful. Independent. | |
|
| |||||||
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| I've never used VMWare but I have installed SmartCenter R62 & R65 on Microsoft Virtual Server 2005 R2 for testing and it runs fine. SmartCenter is not a product that does anything weird, so I doubt you would have any problems. Virtual servers can present a physical security issue, though, if they are running on a box that runs other virtual servers. Non-security admins that have access to the virtual server now have physical access to the SmartCenter server. If there's no controls over the browser management interface, you have the same problem. They've got access to the logon screen. Ray |
| |||
| SmartCenter R62 working ok on Red Hat Enterprise Linux on VMWare on Linux. Problem is the clock drift, to solve update clock frequently with ntpdate (ntpd does not work because of too big too random clock drift). __________________ CCNA certified |
| |||
| I use many smart centers, firewalls, connectra and other software under VMWare Server in my lab and I don't have any "hardware/system" problem with this system. I support few commerce installation, with smart center under VMWare server/ESX and my client don't have any platform specific problem. In my opinion the platform is critical for support gateway platform, but on smart center platform (VMWare) have second role. |
| |||
| I've heard some rumblings that limited support for certain CP products may be on the way.. liek Eventia.. we'll see. And not to be redundant here ;) but I've run CP R55-R62 on VMware for lab and testing environment and have not found any real problems (win2k/3, Splat, RHEL) |
| |||
| Quote:
Quote:
If the first project proves not to be a support nightmare, I would suspect you will see official VMWare support for some of the other management products, but not for gateways. Note -- none of what I just said is anything but guessing on my part and rumors I've heard, nothing official. |
| |||
| Quote:
ntpd or heavy use of ntpdate will slaughter the performance of your VMs. VMware has a timekeeping function already, just poorly documented. all that being said... SPLAT works great in VMware, and if you really try hard... IPSO does too :] |
| |||
| Quote:
It's a news for me.. can we run IPSO under VMWare, if we have the image. Have anyone really achieved this. It's seemingly hard to believe, keeping in mind IPSO is an appliance. Regards -=KIK=- |
| |||
| IPSO is based on BSD so in theory no reason why not. I haven't tried it myself as if going to do this then SPLAT is easier to get going. SMARTCenter and Connectra and VPN-1 are now all tested and certified to run with VMWare ESX/ESXi providing on SPLAT. |
| |||
| Quote:
I like to read a document, where this setup is described, for example with/without VMware-tools ... |
| |||
| Quote:
No vmware tools as of yet. |
| |||
| Link to Check Point VMWare document: From the document: VPN-1 NGX R65 for VMware supports the following VMware ESX Server versions: • VMware ESX Server versions 3.0.2, 3.5 or 3i • VirtualCenter 2.0.1 or higher (Optional - useful for managing multiple ESX Server hosts using a single GUI client, cloning virtual components and deploying objects from templates) VPN-1 NGX R65 for VMware currently supports the following Check Point products: • VPN-1 Power NGX R65 • VPN-1 UTM NGX R65 • VPN-1 Power UTM NGX R65 • SmartCenter NGX R65 BTW if you are looking at hosting more than one SmartCenter on VMware, you should consider Provider-1 Enterprise. Will be more cost effective: SmartCenter Power Unlimited = $22k P1 Enterprise 3 (equivalent to 3 SmartCenter Powers) = $45k A separate SmartCenter for your Internet, WAN, and data center is a common architecture when moving away from a single SmartCenter. HTH |
| |||
| Quote:
For testing though, it does work with workstation and GSX (the free version of Server). Not good for production, but to look at. |
| |||
| @chillyjim,fireverse Thanks for the link to the documents One point that is special interesting at ESX Clusters Quote:
|
![]() |
| Thread Tools | |
| Display Modes | |
| |