CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA or CCSE One-Week Certification Training Courses with CPUG in Beautiful San Francisco!
    R70 CCSA Courses Starting (2010) 6/7, 7/12, 8/9, 10/11, 11/8, 12/6.  R70 CCSE Courses Starting (2010) 8/16.
2. CPUG CON 2010 EUROPE, the User Conference in Switzerland, September 20th-22nd, 2010!
3. Join Our CPUG Groups On LinkedIn and Facebook.  See Our Channel on YouTube.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 Platforms > Windows
Register Projects FAQ Members List Social Groups Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 2009-06-24
Junior Member
 
Join Date: 2009-06-24
Posts: 3
Rep Power: 0
hk_batman has an average reputation (10+)
Default Network behind FW1 not working after adding license

Recently, we changes our ISP and hence the FIXED IP sets for firewall and network became different. I have re-issued the FW1 license from Checkpoint user-center, and have successfully ADDED on to the existing license (old IP set still valid and working). After making all changes on Network object, Interface and Rule plus changing the ip address for NIC then rebooted. The FW1 can gain internet access ok and DNS1 (192.168.0.1) & DNS2 (192.168.0.2) also got internet access, however only these 2 servers (DNS1&2) along with hundred others are behind this FW1.

Can anyone help to see what might be our problem? Thanks
Reply With Quote
  #2 (permalink)  
Old 2009-06-24
Senior Member
 
Join Date: 2006-07-28
Location: New Zealand
Posts: 1,872
Rep Power: 6
northlandboy has an average reputation (10+)
Default Re: Network behind FW1 not working after adding license

If you're changing IP addresses, then double-check routing, NAT, and any proxy ARP you may have.
Reply With Quote
  #3 (permalink)  
Old 2009-06-24
Senior Member
 
Join Date: 2007-04-10
Location: India
Posts: 227
Rep Power: 4
gavvys has an average reputation (10+)
Send a message via Yahoo to gavvys
Default Re: Network behind FW1 not working after adding license

licensing will not create this type of problem please check you logs in tracker if you are still unable to get the resolution check through TCPDUMP tool, or for NATTING issue you can check in fw monitor, use fw monitor in critical issue only it increases the load on cpu.
Reply With Quote
  #4 (permalink)  
Old 2009-06-25
Junior Member
 
Join Date: 2009-06-24
Posts: 3
Rep Power: 0
hk_batman has an average reputation (10+)
Default Re: Network behind FW1 not working after adding license

Quote:
Originally Posted by northlandboy View Post
If you're changing IP addresses, then double-check routing, NAT, and any proxy ARP you may have.
I'v checked and modified all the Network Objects and Interfaces in the System Policy with the new IP addresses. Except for the ARP, where about do i modify the ARP routing? I'm using WinNT4.1 and if needed I can upload the draft network diagram for further study.

But if the routing is incorrect, when 2 of my servers are able to gone thru?
Reply With Quote
  #5 (permalink)  
Old 2009-06-25
Senior Member
 
Join Date: 2006-07-28
Location: New Zealand
Posts: 1,872
Rep Power: 6
northlandboy has an average reputation (10+)
Default Re: Network behind FW1 not working after adding license

Quote:
Originally Posted by hk_batman View Post
I'm using WinNT4.1
Are you seriously using NT?
Reply With Quote
  #6 (permalink)  
Old 2009-06-25
Junior Member
 
Join Date: 2009-06-24
Posts: 3
Rep Power: 0
hk_batman has an average reputation (10+)
Default Re: Network behind FW1 not working after adding license

Quote:
Originally Posted by gavvys View Post
licensing will not create this type of problem please check you logs in tracker if you are still unable to get the resolution check through TCPDUMP tool, or for NATTING issue you can check in fw monitor, use fw monitor in critical issue only it increases the load on cpu.
That's good to know, so i don't need to remove my previous license. Thanks
Reply With Quote
  #7 (permalink)  
Old 2009-06-25
Senior Member
 
Join Date: 2007-04-10
Location: India
Posts: 227
Rep Power: 4
gavvys has an average reputation (10+)
Send a message via Yahoo to gavvys
Default Re: Network behind FW1 not working after adding license

Quote:
Originally Posted by hk_batman View Post
Recently, we changes our ISP and hence the FIXED IP sets for firewall and network became different. I have re-issued the FW1 license from Checkpoint user-center, and have successfully ADDED on to the existing license (old IP set still valid and working). After making all changes on Network object, Interface and Rule plus changing the ip address for NIC then rebooted. The FW1 can gain internet access ok and DNS1 (192.168.0.1) & DNS2 (192.168.0.2) also got internet access, however only these 2 servers (DNS1&2) along with hundred others are behind this FW1.

Can anyone help to see what might be our problem? Thanks
tell me one thing, if you are changing the IP address, then why you are using the previous IP address, remove that IP and remove the licence related to that IP also.
Why you are using so old OS and what the version of Checkpoint.Change all that to latest things.
Reply With Quote
Reply

Tags
firewall, fw1, license, subnet

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 23:35.


Powered by vBulletin® Version 3.8.5
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.5.1