CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. Come to CPUG CON 2008 EUROPE in Switzerland on September 8th - 9th!
    Two days full of technical content for Check Point administrators in the beautiful Swiss Alps!
    We already have sign-ups from twelve different countries!
2. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 7/14, 8/25, 10/6, 11/3, 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8.
3. Corrent S3500 SecureXL Turbocards For Sale - Last Six Remaining - Get Your Spares!
4. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > SmartCenter Server (Formerly Management Server)
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2008-03-28
menardk menardk is offline
Junior Member
 
Join Date: 2007-01-03
Posts: 5
Rep Power: 0
menardk has an average reputation (10+)
Default Firewall Object Issue

All,

I have a strange problem. Last year we upgraded to R62 from R55 and just recently went to R65. Most of our firewall objects were created under R55 and they appear to be missing the Wire Mode options under VPN-> VPN Advanced. If I create a new firewall object under R65 the Wire Mode options are there. Is there anyway to upgrade the firewall object definition so that those options are there or is the only way to delete and recreate the object?
Reply With Quote
  #2 (permalink)  
Old 2008-03-28
Danielpb Danielpb is offline
Senior Member
 
Join Date: 2006-10-23
Posts: 151
Rep Power: 2
Danielpb has an average reputation (10+)
Default Re: Firewall Object Issue

Possible GuiDbedit might resolve this...but not 100%

regards

Dan
Reply With Quote
  #3 (permalink)  
Old 2008-03-28
mcnallym mcnallym is offline
Senior Member
 
Join Date: 2007-06-04
Posts: 857
Rep Power: 2
mcnallym has an average reputation (10+)
Default Re: Firewall Object Issue

I take it that the gateways have been upgraded from R55 as well and that in the object definition they now show up as R62 or R65 gateways.
Reply With Quote
  #4 (permalink)  
Old 2008-03-31
menardk menardk is offline
Junior Member
 
Join Date: 2007-01-03
Posts: 5
Rep Power: 0
menardk has an average reputation (10+)
Default Re: Firewall Object Issue

Yes there are a couple of gateways that have since been upgraded to R60 from R55. However, they do not have the Wire Mode options available under the VPN Advanced section.
Reply With Quote
  #5 (permalink)  
Old 2008-04-02
ravikumarvedala ravikumarvedala is offline
Junior Member
 
Join Date: 2008-04-02
Posts: 2
Rep Power: 0
ravikumarvedala has an average reputation (10+)
Default Re: Firewall Object Issue

hi

I have some doubts can you answer to them

1) When stealth rule is the first rule in the rule base,
how the other rules will reach the firewall (which are below
the stealth rule),bcoz stealth rule drops any traffic going through firewall?

2)Can somebody explain me how we can trobleshoot when the firewall module was
down,after pushing the policies from smartcenter server?
and in other case when management server was down how the firewall will execute
the policies?

3)How to unload the policies when the firewall was down?

4)I have 10 network objects, 5 subnets
and i want to create rules for each network object to each subnet.Instead
of writing 50 rules how can i optimise my rule base?
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 16:21.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.0.0