CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3.
2. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > SmartDashboard
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2006-08-08
Junior Member
 
Join Date: 2005-11-10
Posts: 17
Rep Power: 0
Huisje has an average reputation (10+)
Default Can I use Smartdashboard on an old CP?

Hi,
We have an old CP running in our network.
OS: SunOS firewall 5.7 Generic_106541-06 sun4u sparc SUNW,Ultra-2
License: CPFW-FIG-25-NG (FireWall-1 Internet Gateway for 25 IP address)

Currently I can access the rulebase by using X-forwarding and then launching ./fwpolicy on the box, locally.
I was wondering if I can use a Smartdashboard-like interface to work on the rulebase.

We will be migrating this box soon and the solution using X-forwarding is really slow. I would like to be get a nice overview of the rulebase so that I can migrate it to the new CP platform. Having worked with Smartdashboard before I was wondering how I can figure out a) whether I can use the Smart suite with this firewall b) if it is possible, then what version I should use and where to obtain it (I can dl software from the CP site).

Thanks in advance for any feedback.

kind regards,

Kevin
Reply With Quote
  #2 (permalink)  
Old 2006-08-08
Senior Member
 
Join Date: 2006-06-08
Location: UK
Posts: 149
Rep Power: 3
Joncon has an average reputation (10+)
Default Re: Can I use Smartdashboard on an old CP?

Kevin,

as your paying sw subs to checkpoint you will be able to download the latest SMART console (which includes SMART dashboard) from their download center FOC.

General rule is that as long as your SMART console client is the same version or newer than the VPN-1 / FW sw running on the firewall you should have no issues connecting. That said it appears you're running a really old VPN-1 / FW version and therefore I can't say for sure that the latest client (NGX R61) will be able to communicate. If you have problems wait until you upgrade the FW and then use the latest client.

hth

Jon
Reply With Quote
  #3 (permalink)  
Old 2006-08-08
Junior Member
 
Join Date: 2005-11-10
Posts: 17
Rep Power: 0
Huisje has an average reputation (10+)
Default Re: Can I use Smartdashboard on an old CP?

Thanks for your reply, Joncon. I was able to download the most recent version of Smart Dashboard, but I don't think it'll work with the obsolete version of FW-1 I am using.

From what I see the listening ports on the firewall being (among other ports there is TCP 258) and based on what I got from http://www.fw-1.de/aerasec/ng/ports-ng.html it looks like I need a piece of software that uses TCP 258 to connect (and not 18190 like SMART).

From that URL this is the info on the protocol:
Check Point VPN-1 & FireWall-1 Management (Version 4.x, obsolete)
- Protocol for communication between GUI and MM 4.x

I'm guessing that this is no longer available via CP downloads?

Does anybody have another source where I could obtain this?

kind regards,

Kevin
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -7. The time now is 13:05.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0