Re: [FW-1] Load on module failed

2007-01-15 Thread fwguru
Christian, You mentioned that it is a Standalone deployment, so SIC is probably not the cause. You did not mention what platform you installed it on. If you installed it on Windows or a VM make sure that the built-in host firewall is not enabled. Also make sure that the Firewall object

[FW-1] Rép. : Re: [FW-1] Load on module failed

2007-01-15 Thread Christian Billette
I'm on secureplatform, I suppose that was a communication problem between my SmartDashboard and the Secureplatform because after a reinstallation of the Dashboard it worked? Thanks! fwguru [EMAIL PROTECTED] 2007-01-15 09:29 Christian, You mentioned that it is a Standalone deployment, so SIC

[FW-1] VPN assistance

2007-01-15 Thread cisco4ng
Hi All, Wondering if someone can help me with this? I have a customer that recently migrated from a Cisco IOS router aththe HQ over to Checkpoint NGx firewall. On the IOS router, they have a site-2-site VPN between this IOS router and another IOS router at a remote branch.

Re: [FW-1] tool to analyze debug files

2007-01-15 Thread pkc_mls
Hugo van der Kooij a écrit : On Fri, 12 Jan 2007, pkc_mls wrote: does anyone know any tool to read the content of a fw debug file, ie fw ctl kdebug -f debug.out ? gvim usually does the trick for me. Hugo. I thought about a tool to make the reading of such file easier, like ikeview for

Re: [FW-1] VPN assistance

2007-01-15 Thread Gary Scott
I think you may have to use the DAIP module on the new NGX gateway for this to work. -GS -Original Message- From: Mailing list for discussion of Firewall-1 [mailto:[EMAIL PROTECTED] On Behalf Of cisco4ng Sent: Monday, January 15, 2007 10:25 AM To:

Re: [FW-1] Nokia IP440

2007-01-15 Thread Neil Kemp
Did not realise that - if you can provide that as well, would be grateful Thanks On 15/01/07, Gary Scott [EMAIL PROTECTED] wrote: When you boot to the floppy you get the option for where is the new IPSO being installed from, cd etc. Do you need the boot floppy? -GS -Original

Re: [FW-1] VPN assistance

2007-01-15 Thread Sergio Alvarez
I haven't had much experience with devices with dynamic IPs, but when you create a new object as Interoperable Device, you can select the option of Dynamic Address and then create an interface in the Topology section as dynamically assigned, which tells me you can in fact make it work. The deal

[FW-1] Question on license

2007-01-15 Thread Aplin, Nik
Hi, I have a licence attached to a Enforcement module Nokia IPSO 530 3.81 running Checkpoint NG AI R55 running at a remote site and have been asked to setup a VPN to a Cisco pix. When I used to support nokia’s a few years back and I’m sure that the license had to have the encryption in the

Re: [FW-1] Question on license

2007-01-15 Thread Gary Scott
VFF = encryption Any new license should have encryption in it automatically without any additional charge, unless you are in France or something. I have seen some older encryption-less licenses that were upgraded to NGX and still did not have any encryption capabilities, instead of VFM-NGX they

Re: [FW-1] Question on license

2007-01-15 Thread fwguru
Nik, Your license includes FW-1, VPN-1, and FG-1. You also have a VPN-1 SecuRemote for 250 users and a VPN-1 Policy Server. Best, Neil Delacruz On 1/15/07, Aplin, Nik [EMAIL PROTECTED] wrote: Hi, I have a licence attached to a Enforcement module Nokia IPSO 530 3.81running Checkpoint NG

Re: [FW-1] Nokia IP440

2007-01-15 Thread Hugo van der Kooij
On Mon, 15 Jan 2007, Neil Kemp wrote: I was wondering if anyone can help me with this. I have an old IP440 I use for some testing, but the hard drive has gone and is not under any kind of support. So you are not allowed to install IPSO on it either. Use the CD shipped with the unit. Just

[FW-1] VPN issue between IP Clustering and VRRP

2007-01-15 Thread Anupam Gaur
hai all, Please Please Please help We are using Checkpoint configured on Nokia IP 350 in IP Clustering load sharing at our two loactions Noida and Pune. Both the locations have their separate clusters with exactly the same hardware and same hot fix configurations. Both these locations have Site

Re: [FW-1] VPN issue between IP Clustering and VRRP

2007-01-15 Thread Kirit Patel
Tcp out of state is old connection what do u mean by logout exactly - Original Message - From: Anupam Gaur [EMAIL PROTECTED] Sent: 01/15/2007 04:38 PM To: FW-1-MAILINGLIST@AMADEUS.US.CHECKPOINT.COM Subject: [FW-1] VPN issue between IP Clustering and VRRP hai all, Please Please Please

Re: [FW-1] NGX R60 route to other router

2007-01-15 Thread Scott Xe
Hugo, Thanks! -Original Message- From: Mailing list for discussion of Firewall-1 [mailto:[EMAIL PROTECTED] On Behalf Of Hugo van der Kooij Sent: Sunday, 14 January, 2007 8:32 PM To: FW-1-MAILINGLIST@AMADEUS.US.CHECKPOINT.COM Subject: Re: [FW-1] NGX R60 route to other router On Sun, 14

Re: [FW-1] VPN issue between IP Clustering and VRRP

2007-01-15 Thread Bhavin Gandhi
Suggest checking SmartDefense settings once. Cheers, Bg -Original Message- From: Mailing list for discussion of Firewall-1 [mailto:[EMAIL PROTECTED] Behalf Of Anupam Gaur Sent: Tuesday, January 16, 2007 3:09 AM To: FW-1-MAILINGLIST@AMADEUS.US.CHECKPOINT.COM Subject: [FW-1] VPN issue

[FW-1] VLANs and SPlat R55

2007-01-15 Thread Mark Senior
Hello list I've got a HA firewall, a pair of SPlat R55 boxen, on which I'm going to be splitting one interface (of each member, obviously) into two VLANs. We'll be swapping out some other network equipment at the same time, such that a bit of downtime will be inevitable - so for now at least