CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. Come to CPUG CON 2008 EUROPE in Switzerland on September 8th - 9th!
    Two days full of technical content for Check Point administrators in the beautiful Swiss Alps!
    We already have 52 attendees signed up from 14 countries!
2. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 8/25, 10/6, 11/3, 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3, 9/7.
3. Corrent S3500 SecureXL Turbocards For Sale - Last Six Remaining - Get Your Spares!
4. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > Miscellaneous
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2006-02-23
humayun humayun is offline
Senior Member
 
Join Date: 2006-01-30
Posts: 101
Rep Power: 3
humayun has an average reputation (10+)
Default CPD is running?

Please explain to me the following error message? I get this when trying to establish a SIC?

Check that CPD is running on "newNokiafirewall" and that TCP connectivity is allowed from SmartCenter server to IP "X.X.X.X, Port 18191 **

Thanks.
__________________
Systems Engineer
Reply With Quote
  #2 (permalink)  
Old 2006-02-24
ddarby1 ddarby1 is offline
Member
 
Join Date: 2006-01-09
Posts: 72
Rep Power: 3
ddarby1 has an average reputation (10+)
Default Re: CPD is running?

The Smart Center Server cannot contact the Enforcement Module in order to manage it.

Either the Check Point Daemon (CPD) is not running on the enforcement module and/or communications are being blocked between the Smart Center server and the enforcement module on the IP address you specified, TCP Port 18191.
Reply With Quote
  #3 (permalink)  
Old 2006-02-26
kva.kva kva.kva is offline
Senior Member
 
Join Date: 2006-01-26
Location: Moscow, Russia
Posts: 706
Rep Power: 3
kva.kva has an average reputation (10+)
Default Re: CPD is running?

If you add new checkpoint object, that lies on the other side of you Enforcement module and SC:

1'st add checkpoint object and install policy
2'nd try to establish SIC
Reply With Quote
  #4 (permalink)  
Old 2006-02-26
humayun humayun is offline
Senior Member
 
Join Date: 2006-01-30
Posts: 101
Rep Power: 3
humayun has an average reputation (10+)
Default Re: CPD is running?

SIC Status for "XYZ": Unknown
Could not establish TCP connection with "IP Address"
** Check that CPD is running on "XYZ" and that TCP connectivity is allowed from SmartCenter server to "IP Address", Port 18191 **

I ran out of all options on what things I knew how to do.

I ran cpconfig on the firewall and established the SIC and rebooted. After that I am not able to ping it or connect via PUTTY. I can however access it from the console and CPD is up.

I added it in my Dashboard as an object and still cannot establish SIC. I installed the policy is also but of course, cannot do that on my new firewall since SIC is not established.

I really don't know what to do here, more help please.
Many thanks.
__________________
Systems Engineer
Reply With Quote
  #5 (permalink)  
Old 2006-02-26
chillyjim chillyjim is offline
Senior Member
 
Join Date: 2005-08-29
Location: Upstate NY
Posts: 1,627
Rep Power: 5
chillyjim has an average reputation (10+)
Send a message via AIM to chillyjim Send a message via Skype™ to chillyjim
Default Re: CPD is running?

Try an "fw unloadlocal" at the gateway and see if life is better then. I know it shouldn't be required but I have had it work and let me push policy.
Reply With Quote
  #6 (permalink)  
Old 2006-02-27
humayun humayun is offline
Senior Member
 
Join Date: 2006-01-30
Posts: 101
Rep Power: 3
humayun has an average reputation (10+)
Default Re: CPD is running?

Where should I run this? You mentioned gateway, that means my firewall management server? I have many other firewalls in the company's other US location would this command affect anything on those firewalls?

Thanks.
__________________
Systems Engineer
Reply With Quote
  #7 (permalink)  
Old 2006-02-27
intehnet intehnet is offline
Member
 
Join Date: 2005-08-30
Location: Perth, Australia
Posts: 72
Rep Power: 4
intehnet has an average reputation (10+)
Default Re: CPD is running?

no, run it on the firewall in question
then run fwm unloadlocal on the management also

ping from management to firewall, check your arp cache, is the mac address of the firewall there? if not, then check your layer 1!!
__________________
///M
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 20:59.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.0.0