Re: [FW-1] site to site vpn with Watchguard

2006-03-23 Thread Jean-Francois Gobin
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hello, So, Verify the encryption domain on both side : they must match exactly (if host is defined on watchguard, they must be samely defined on checkpoint, if it's net, the address/mask must be the same and so on) Regards, jF On Wed, 22 Mar

[FW-1] Site to site VPN

2006-03-23 Thread Tibor Szurok
Hi All I confrontated with a question from our main opco. They want to switch our exsitsing leased line for internet VPN. We have enough brandwith for this sollution. But i don't exactly know how to make it. Our firewall is a checkpoint FW1 NG2, but we don't have the VPN license (i think it is

Re: [FW-1] NGX Upgrade issue

2006-03-23 Thread Ramki Security
Thanks for your comments. I forgot to mention that I had already done the upgrade of all the NG licenses to NGX as recommended by the upgrade guide. When I did the license upgrade first time it went on fine and did the upgrade. When I run the NGX install and selected upgrade after the

[FW-1] Upgrade file R55 to R55W

2006-03-23 Thread Vagner Machado
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Gostaria de saber onde posso encontrar o arquivo para download de upgrade da versao R55 para R55W do Security Plataform. I would like know where I can find the download file to upgrade my Security Platform from R55 to R55W. thanks! - -- Vagner

[FW-1] SPLAT unknown feature

2006-03-23 Thread rootshell75
Hi Dears, Using sysconfig/ Network connections. point (4) called select management connections : May anyone know what for it is? Cheers and many thanks rootshell = To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED]

Re: [FW-1] SPLAT unknown feature

2006-03-23 Thread Robby Cauwerts
Hi, The ip of the interface you specify with select management connections will be used in /etc/hosts for you hostname. Kind Regards Robby rootshell75 [EMAIL PROTECTED] Sent by: Mailing list for discussion of Firewall-1 FW-1-MAILINGLIST@AMADEUS.US.CHECKPOINT.COM 23/03/2006 15:35 Please

Re: [FW-1] management server not seeing logs from cluster

2006-03-23 Thread Mark Senior
Hi Thank you very much Adam and Ramki for your suggestions The problem turned out to be very closely related to the first situation Adam mentioned - the management server was described _in smartdashboard_ as being a management server only. But if you asked it what it thought it was via:

Re: [FW-1] Upgrade file R55 to R55W

2006-03-23 Thread Adam BE
Do you intend on upgrading the VPN-1 Gateway or your SmartCenter? The relevant file should be present on your R55W CD... I would also review the documentation and Release Notes of R55W: http://www.checkpoint.com/support/technical/documents/docs_r55w.html Adam. Vagner Machado [EMAIL PROTECTED]

Re: [FW-1] SPLAT unknown feature

2006-03-23 Thread cryptotech
The significance has to do with the displayed links for the getty user interface, as well as some back end references that we use for sic name resolution, and ip address/name (as was previously mentioned) lookup functions. Beyond this, it tells the generated inspect code not to accept CPMI

Re: [FW-1] NGX Upgrade issue

2006-03-23 Thread Adam BE
Hi Ramki, 1. I suggest you get the stack from the core file and post it here. It might help in pinpointing what has caused the problem. The general syntax for getting the stack from a core file is: debugger path_to_executable corefile Examples: gdb `which license_upgrade`

Re: [FW-1] VPN acceleration card is disabled and wants to turn it on duringboot up.

2006-03-23 Thread Adam BE
Hi, A simple solution would be to add the command to a startup script such as /etc/rc.local. I think there should be a command which automatically enables / disables it during boot but I can't recall (need to review all the available documentation)... Adam. Alexander Simbun [EMAIL

Re: [FW-1] NGX Upgrade issue

2006-03-23 Thread Lino Eduardo Avila Rodríguez
I know that if you don't have a valid software subscription will the license upgrade will fail, might it be the case?? Regards, Lino -Original Message- From: Mailing list for discussion of Firewall-1 [mailto:[EMAIL PROTECTED] On Behalf Of Adam BE Sent: Jueves, 23 de Marzo

Re: [FW-1] NGX Upgrade issue

2006-03-23 Thread Ramki Security
Hi Adam, Thanks for the syntax. Infact I have been looking for the way to get the stack. Thanks again. I will get it and post it here. And about the step I followed: 1. Ran ngx install and checked the upgrade verifier. It exited after the completion. 2. Ran ngx install again, selected

[FW-1] site-to-site with ezVPN

2006-03-23 Thread Ramki Security
Hi all, We have a requirement to make site-to-site VPN between checkpoint and Cisoc ezVPN. Is this possible. Have any one tried this? Thanks in advance, Ramki = To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL

Re: [FW-1] VPN acceleration card is disabled and wants to turn it on duringboot up.

2006-03-23 Thread Ramki Security
Al, Did you tried giving vpn accel on at command line. Did it start the accelerator? If starting, you can put this command in startup as Adam has suggested. Regards, Ramki Adam BE wrote: Hi, A simple solution would be to add the command to a startup script such as /etc/rc.local. I

[FW-1] Technical specification of Firewall-1 GX

2006-03-23 Thread Sanisca, Dewa
Hi All I make a document for my office project, and I need information about technical specification about Firewall-1 GX (power consumption, widht, height, etc) ? Maybe some one have the soft document or information ? Thank you all! BR Sanisca =

Re: [FW-1] site-to-site with ezVPN

2006-03-23 Thread cisco4ng
Cisco ezVPN, IMHO, will NOT work with Checkpoint. Cisco ezVPN is designed between Cisco routers as client either in client mode or Network Extension mode, to work with ezVPN Servers such as Pix firewall or VPN concentrators. ezVPN uses aggressive mode by the way. here is the setup