CPUG: The Check Point User Group

Resources for the Check Point Community, by the Check Point Community.


Tim Hall has done it again! He has just released the 2nd edition of "Max Power".
Rather than get into details here, I urge you to check out this announcement post.
It's a massive upgrade, and well worth checking out. -E

 

Results 1 to 3 of 3

Thread: Bridging while unloaded

  1. #1
    Join Date
    2014-09-02
    Posts
    338
    Rep Power
    10

    Default Bridging while unloaded

    Anyone happen to know the impact of "fw unload" or "cpstop" to a bridged interface (GAIA R77.30)? I would assume it's going to disable flow across it, for obvious security reasons (just like ip forwarding).

    More importantly, if I'm right, does anyone know how to manually re-enable flow across the bridge? Is it simply handled by IP forwarding?

    Unfortunately, I only have a very limited production maintenance window to test this, and don't have immediate access to my lab.

    Thanks guys,

    -E


    (yes, call it an abuse of power, but I created a new forum for this - I'd do the same for any of you, and often have)
    Last edited by EricAnderson; 2017-03-14 at 22:30.

  2. #2
    Join Date
    2009-04-30
    Location
    Colorado, USA
    Posts
    2,158
    Rep Power
    13

    Default Re: Bridging while unloaded

    After fw unloadlocal:

    echo 1 > /proc/sys/net/bridge/forwarding

    Verified in VMWare setup.
    --
    Second Edition of my "Max Power" Firewall Book
    Now Available at http://www.maxpowerfirewalls.com

  3. #3
    Join Date
    2014-09-02
    Posts
    338
    Rep Power
    10

    Default Re: Bridging while unloaded

    Thanks, buddy

    -E

Similar Threads

  1. Support for bridging two Interfaces
    By Roluf in forum Check Point UTM-1 Appliances
    Replies: 5
    Last Post: 2009-08-21, 18:24
  2. VPN-1 UTM Edge Wireless Bridging with Cisco AP
    By pdpita in forum Check Point UTM-1 Edge Appliances
    Replies: 1
    Last Post: 2007-03-11, 00:22
  3. Bridging in a NAT setup?
    By Sicherheit.co.uk in forum NAT (Network Address Translation)
    Replies: 1
    Last Post: 2006-03-13, 09:57
  4. SSL bridging with NG HTTP Security Server
    By mastertc in forum Miscellaneous
    Replies: 0
    Last Post: 2005-09-26, 09:22

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •