CPUG: The Check Point User Group

Resources for the Check Point Community, by the Check Point Community.


First, I hope you're all well and staying safe.
Second, I want to give a "heads up" that you should see more activity here shortly, and maybe a few cosmetic changes.
I'll post more details to the "Announcements" forum soon, so be on the lookout. -E

 

Search:

Type: Posts; User: torenhof

Search: Search took 0.00 seconds.

  1. Replies
    0
    Views
    2,883

    Smartlog displaying username & user

    Hello,

    As I am reviewing SmartLog, I've noticed that sometimes the source username & username is displayed. And sometimes not.
    I was thinking it had something to do with the level of application...
  2. Replies
    2
    Views
    2,249

    1100 appliance firmware

    Hello All,

    I'm facing the following problem
    I have installd an 1100 appliance, locally managed and with the firmware version: Version: R75.20.26 (983003690)

    One needs to connect to the...
  3. What DHCP leases have been offered by firewall

    Hi,

    How is it possible to have an overview of the DHCP addresses that have been offered by a firewall running GAIA?
    With DHCP server configured on one interface.

    In command line, CLISH or ?
    ...
  4. Re: DNS queries issue with remote access users on 1180 appliance

    Too bad it hasn't solved my problem. HFA 25 is also installed on the gateway.
    Thank you for sharing your information.
  5. DNS queries issue with remote access users on 1180 appliance

    Hello,

    I'm having issues with DNS resolving for remote access VPN users that connect remotely to the LAN behind the gateway.
    In settings of the VPN, I have added an internal DNS server, so the...
  6. Replies
    1
    Views
    1,951

    Re: Bandwidth issue on WAN connection

    This issue has been solved by itself.
    Today we can reach the available bandwidth of the WAN router on the LAN interface of the firewall.
  7. Replies
    1
    Views
    1,951

    Bandwidth issue on WAN connection

    Hello all,

    I'm having this issue:
    I have freshly installed a new 2200 Gateway appliance with GAIA R76 on it. There are only about 25 rules configured on it.
    The router whereto it is connected to...
  8. Replies
    1
    Views
    4,245

    VPN between Watchguard and Checkpoint

    Hello,

    I'm having the following issue:

    We have a site-2-site VPN between a watchguard and Checkpoint firewall.
    Mostly the connection runs fine, but every so often, the VPN is dropped.

    The...
  9. Replies
    1
    Views
    3,946

    Problem getting gateway data in smartupdate

    Hello All,

    I have recently installed a GAIA R75.40 Cluster HA with two 4600 appliances.
    The problem is when I want to retrieve the gateway data of both firewalls in SmartUpdate, on one of the...
  10. Re: Issues setting up VPN connection between Checkpoint and Zyxel firewall

    NAT traversal is supported on our firewall, I've requested to check the intermediate firewall for the ports you have mentioned.
    I'll keep you informed.
  11. Re: Issues setting up VPN connection between Checkpoint and Zyxel firewall

    No luck, the tunnel doesn't want to come up.
    I can only see Phase 1 packets that are being sent by the checkpoint firewall.
    I don't see any packets arriving on our firewall from the Zyxel.

    I...
  12. Re: Issues setting up VPN connection between Checkpoint and Zyxel firewall

    I have tried all of your settings, but without any success.
    Now the first negotiation stops after 5 packets in Main Mode.

    Then I see 3 packets and an authentication failed in MM.

    Below You can...
  13. Re: Issues setting up VPN connection between Checkpoint and Zyxel firewall

    I'll try to adjust the things you mentioned and I'll let you know if it was of any help.
    Thanks already for your reactions.
  14. Re: Issues setting up VPN connection between Checkpoint and Zyxel firewall

    There must be something else that is wrong. The Zyxel firewall keeps giving issues to connect.
    The administrator of the Zyxel firewall assured me that the Shared secret is 100% correct.
    And I was...
  15. Re: Issues setting up VPN connection between Checkpoint and Zyxel firewall

    I have changed some settings, and using IKE VIEW, I see 5 pakkets being send in Phase one and than the negotiation stops.
    I get an error message: IKE: Phase1 Received Notification from Peer: invalid...
  16. Re: Safe@office 1000np VPN connection to Juniper SSG520m

    The solution to this issue, was as following:

    On both the firewalls, you need to include the public IP of the firewall in the encryption domain.

    Checkpoint services explained that the issue was...
  17. Issues setting up VPN connection between Checkpoint and Zyxel firewall

    Hello all,

    I'm having issues with the creation of a VPN tunnel. This site-2-site vpn tunnel should pass data between an Checkpoint GAIA firewall, version R75.40 and a Zyxel, zywall USG 1000. All...
  18. Replies
    2
    Views
    6,083

    Re: Securemote Client disconnecting

    OK, I have found the solution for this issue.

    I have configured the remote access community encryption domain to be the the same specific encryption domain of the firewall that the remote access...
  19. Replies
    2
    Views
    6,083

    Securemote Client disconnecting

    Hello,

    I'm trying to connect with the Securemote e75.30 client to an R75.40 GAIA firewall.
    The user can log on using username and password.

    With one computer I don't have any problems at all....
  20. Replies
    2
    Views
    2,226

    Re: Error installing policies

    I have migrated from a GAIA R75.40 standalone to GAIA R75.40 distributed setup.
    The error messages I receive, concern the QOS and CoreXL, they cannot be activated on the same time.

    The firewall...
  21. Replies
    2
    Views
    2,226

    Error installing policies

    Hello,

    I have migrated from a standalone firewall to a distributed setup, GAIA R75.40.

    All went well, but when I want to push a policy set to the firewall, I receive errors from the management...
  22. Re: Safe@Office 1000n, clients are unable to connect to the internet.

    I have found the solution for this problem.
    I adjusted the port settings to Full-duplex 100Mbits on the LAN port and after a reboot everything worked fine.
  23. Re: Safe@Office 1000n, clients are unable to connect to the internet.

    The clients receive a request time out on the ping.
    When trying to add the MAC of the firewall manually in the clients, it still doesn't work.
    I don't know anymore what can cause these troubles....
  24. Checkpoint SPLAT R70.20 not allowing L2TP vpn connections

    Hello All,

    I'm trying to setyp a L2TP VPN connection, but neither with a certificate or a adding a preshared secret in de $FWDIR/conf/l2tp.conf it works.
    While checking the logging, I only see...
  25. Re: Safe@Office 1000n, clients are unable to connect to the internet.

    I have checked the usercenter of Checkpoint and there it shows as following:

    "Check Point Safe@Office 1000N Appliance with PowerPack for Unlimited users "
  26. Re: Safe@Office 1000n, clients are unable to connect to the internet.

    Hello,

    I will need to check the licenses on the safe@office.

    The machines get an correct IP from the SBS server, because I can ping them correctly from the SBS server, and they show up under...
  27. Safe@Office 1000n, clients are unable to connect to the internet.

    Hello,

    I have installed an Safe@office in a small network, that also contains an Microsoft SBS 2008.
    The problem I have is that some computers have access to the internet and some of them don't....
  28. Safe@office 1000np VPN connection to Juniper SSG520m

    Hello,

    I'm having issues with an Safe@office connecting to an Juniper SSG520m firewall.

    All phase1 and phase2 negotiations go well, but when the S@O sents an IKE packet, the vpn tunnel gets...
  29. Replies
    5
    Views
    3,111

    Re: Checkpoint UTM-1 Version R70.20

    Ok thats all cleared up now. Thanks again for the effort.
  30. Replies
    5
    Views
    3,111

    Re: Checkpoint UTM-1 Version R70.20

    One more question, how did you find out the object had the IP you mentioned in your reply?
  31. Replies
    5
    Views
    3,111

    Re: Checkpoint UTM-1 Version R70.20

    Well that did the trick, there were indeed two webserver objects being defined as 'web servers'.
    Thanks a lot for your answer.
  32. Replies
    5
    Views
    3,111

    Checkpoint UTM-1 Version R70.20

    Hello All,

    When I want to push a policy to the clustered gateway, I keep receiving the error messages below:

    Installation Targets Version Policy Type Details
    Firewall-Cluster R70 Network...
  33. Thread: VPN Daemon

    by torenhof
    Replies
    9
    Views
    7,010

    Re: VPN Daemon

    fwd is running, cpstart doesn't help either.
    now it shows: cannot find pid of vpnd
  34. Thread: VPN Daemon

    by torenhof
    Replies
    9
    Views
    7,010

    Re: VPN Daemon

    I have tried to use this command, but I still cannot use the command "vpn debug on".

    It's still telling me: cannot signal vpnd: no such process.
  35. Thread: VPN Daemon

    by torenhof
    Replies
    9
    Views
    7,010

    VPN Daemon

    Hello All,

    I'm having this problem:

    When I want to troubleshoot vpn connections, normally you would use:
    vpn debug ikeon
    vpn debug on
    vbn debug ike
    ...
  36. Replies
    0
    Views
    1,389

    L2TP VPN on windows 7

    Hello all,

    I have set up a remote access on a firewall R75.40 and on a R70.40, using L2TP VPN.

    While trying to connect with L2TP VPN using windows 7 amd64, on some clients the connection is...
  37. Re: VPN between Checkpoint GAIA 75.40 and CISCO ASA 5520

    Problem solved, there was something wrong on the side of the Cisco firewall.
    Thanks for all your time and effort.
  38. Replies
    5
    Views
    2,391

    Re: Connection to Firewall impossible

    The problem has been solved. By disabling the Symantec Network Threat Protection, the topology could be downloaded on port 264.
    The connection can now be made.
    The only thing that doesn't seem to...
  39. Replies
    5
    Views
    2,391

    Re: Connection to Firewall impossible

    I have tried with both HFA2 and HFA3, but then with visitor mode activated on another port.
    I have tested all of these versions on multiple other pc's and it worked without any problems.

    It's...
  40. Replies
    5
    Views
    2,391

    Connection to Firewall impossible

    Hello,

    I'm having this strange problem.

    I'm dealing with R70.1 and an SBOX ngx 65. On this SBOX, there is a guest network on this SBOX 192.168.1.0/24.

    I'm trying to setup a connection with...
  41. Re: VPN between Checkpoint GAIA 75.40 and CISCO ASA 5520

    NAT is indeed disabled in the tunnel.
  42. VPN between Checkpoint GAIA 75.40 and CISCO ASA 5520

    Hello All,

    I have set up a VPN tunnel between these two firewalls.
    The configuration on the checkpoint firewall has been done by me.

    In the encryption domain I have added one remote subnet and...
Results 1 to 42 of 43