Hmmm, that's a very good idea!
Thanks!
Ray
From: Tom Stala <[EMAIL PROTECTED]>
Reply-To: Mailing list for discussion of Firewall-1
<[EMAIL PROTECTED]>
To: [EMAIL PROTECTED]
Subject: Re: [FW-1] VPN-1 Edge device
Date: Wed, 23 Jun 2004 09:22:35 -0400
I just created a new rule base and called it Edge-profiles, changed the
install target to the profile object this way I keep my rules separate.
----- Original Message -----
From: "Ray" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Wednesday, June 23, 2004 9:02 AM
Subject: Re: [FW-1] VPN-1 Edge device
> >You cannot use vpn community object in the
> >rulebase if you have an edge device . You have to use implicit vpn rule
> >(checkbox in the community object).
>
> Having fought this battle yesterday, I can assure you that you can use a
> community object in the rule base. The way to get it to work is to
change
> the "Install On" column from "* Policy Targets" to the actual gateway
that
> the rule applies to.
>
> When I had it as * Policy Targets, I got an error on Verify for every
rule
> that had a VPN Community specified in the "if via" column, even though
they
> were different communities.
>
> Ray
>
> _________________________________________________________________
> FREE pop-up blocking with the new MSN Toolbar - get it now!
> http://toolbar.msn.click-url.com/go/onm00200415ave/direct/01/
>
> =================================================
> To set vacation, Out-Of-Office, or away messages,
> send an email to [EMAIL PROTECTED]
> in the BODY of the email add:
> set fw-1-mailinglist nomail
> =================================================
> To unsubscribe from this mailing list,
> please see the instructions at
> http://www.checkpoint.com/services/mailing.html
> =================================================
> If you have any questions on how to change your
> subscription options, email
> [EMAIL PROTECTED]
> =================================================
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================
_________________________________________________________________
FREE pop-up blocking with the new MSN Toolbar – get it now!
http://toolbar.msn.click-url.com/go/onm00200415ave/direct/01/
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================