If I want to move from a single box running both the
FW/VPN module and Management module to an appliance
running the FW/VPN module and a separate box running
the management module, how do I secure the MGT server?
 If I didn�t run any other FW/VPNs with the all in one
box I could just put the MGT server on the secure side
of the FW and NAT the MGT server.  The hitch is that I
manage and run a bunch of other distributed FW/VPN
modules with this all in one box.  So if I change the
management station to an internal NAT'd IP then the
remote modules won't be able to be managed without the
VPN being up first and if the VPN has a problem I
can't manage it?  Has anyone done this before?  How
was it handled?  The silence on this question has been
deafening. I can't be the only one to try this.

Thanks
Chris

__________________________________________________
Do You Yahoo!?
Yahoo! GeoCities - quick and easy web site hosting, just $8.95/month.
http://geocities.yahoo.com/ps/info1

===============================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
===============================================

Reply via email to