| CPUG | |
| The Check Point User Group | |
| A Resource For The Check Point Community. Fast. Useful. Independent. | |
|
| |||||||
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| Does anyone know of a solution that controls policy changes for VPN-1 and allows for APPROVAL of any requested changes before permitting the requested changes? I have handed over my FW to another Admin. and I'd like to be keep in the loop on any policy changes and not after the fact. Thanks for any help! |
| |||
| There are no technical controls if he/she has the required access. You could set up SmartView Monitor to email you on a policy install and then check the audit log to see what changed. Ray |
| |||
| I think you will need to setup a Change Control Process where before changes are made they require approval from an authorised person (yourself perhaps) before the changes are made on the Firewalls. Whilst not a technical solution it seems to work and can be used for all products in a simple fashion, where the requesters, fill out the request which has to be approved before the change can be made. If it is backed up in the IT policy then it should prove enough. |
![]() |
| Thread Tools | |
| Display Modes | |
| |