Hm.. You may rely on more than one Mgmt station if you add its IP address to
master. The preferred one should have a + sign with it.
Best wishes
Aylton
-----Mensagem original-----
De: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]Em nome de
Michael Hernandez
Enviada em: Wednesday, September 13, 2000 5:43 PM
Para: 'Karl Shepard'; '[EMAIL PROTECTED]'
Assunto: RE: [FW1] Some questions from CP class
1. Golden rule with NAT, A rule is met first then routing(OS routing table)
then finally NAT on its way out (away from gateway).
2. Only one management station per FW island, unless you use Provider-1
which manages management stations.
3. NO indication with cpmad, unless you grep for the cpmad process or look
in the cpmad.err file in /$FWDIR/log directory and read its last exit error.
Hope that helped
Michael
www.riscman.com
-----Original Message-----
From: Karl Shepard [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, September 13, 2000 3:48 PM
To: '[EMAIL PROTECTED]'
Subject: [FW1] Some questions from CP class
1. Does address translation take place before or after the security policy
is consulted?
2. Can a Firewall module have more than one management server? What about
logs?
3. What indication is there when CPMAD exits? Any?
Karl Shepard
Security Instructor
Gobosh, Inc
============================================================================
====
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
============================================================================
====
============================================================================
====
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
============================================================================
====
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================