Re: [FW-1] 1] Missing security and nat rule tab from policy editor

2009-10-25 Thread Mick Reay
-Original Message- From: Rajeev Gupta rgu...@gmail.com To: FW-1-MAILINGLIST@AMADEUS.US.CHECKPOINT.COM Sent: Sat, 24 Oct 2009 12:26 Subject: Re: [FW-1] Missing security and nat rule tab from policy editor There is a CP sk on the error 'the converter failed to convert the policy hich

Re: [FW-1] 1] R70 no Solaris support?

2009-06-26 Thread Mick Reay
According to the R70 Release Notes Security Gateway (previously Enforcement Module) is not supported on Solaris. Security Management (previously Smartcentre Management Server) is. Rergards Mick. -Original Message- From: Ruiyuan Jiang ruiyuan_ji...@liz.com To:

[FW-1] Anit-spoofing message

2008-01-18 Thread Mick Reay
I have 2 Nokia 380s set up in a VRRP cluster. I can ping the external intreface of the backup Nokia but when I try to test sic I am unable to and get anti-spoofing messages. Anyone seen this before? Thanks. = To set vacation,

[FW-1] Checkpoint QOS VOIP configuration

2007-10-24 Thread Mick Reay
Hi. Has anyone set up QOS for VOIP on Checkpoint using Diffserv or LLC? Any recommendations regarding procedure and constant bitrate/maximal delay would be greatly appreciated, thanks Mick. = To set vacation, Out-Of-Office, or away

Re: [FW-1] SecurePlatform backup

2007-05-10 Thread Mick Reay
On the cprestart on the management server should do it = To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail

[FW-1] Problem pushing policy to gateway

2007-05-10 Thread Mick Reay
Hi. I am trying to push a new policy to 4 members of a Nokia cluster running IPSO3.9/R60. I am receiving errors from 2 of the cluster member. The error is : Installation failed. Reason: Load on module failed - no memory. This happens on the same 2 gateways every time I try.

Re: [FW-1] Problem pushing policy to gateway

2007-05-10 Thread Mick Reay
The gateways all have licences. = To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail = To unsubscribe

Re: [FW-1] Problem pushing policy to gateway

2007-05-10 Thread Mick Reay
Thanks for the suggestion. Have already checked the CP web site, and also checked the IP addresses are correct. = To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set

Re: [FW-1] FW-1 list is moving

2007-03-12 Thread Mick Reay
I agree with keeping the mailing list = To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail = To

Re: [FW-1] Smartdashboard problems

2006-08-07 Thread Mick Reay
Don't think Smart Portal will help with configuration as I believe it is Read-Only. Also Smart Portal is not supported on NG with AI and below. = To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY

[FW-1] VPN Backup

2006-05-10 Thread Mick Reay
Hi Group. Does anyone know where I can find information on setting up VPN-1/FIREWALL-1 for VPN Backup. What I want to do is have LAN-to-LAN VPNs terminate on a Nokia running CP at one site, but if this box fails for the VPNs to failover to a Nokia/CP at another site, including route

Re: [FW-1] Nokia Cluster Authentication

2006-01-18 Thread Mick Reay
Thanks for the response Reinhard. I tried your suggestion but get the same results. I also notice in Smartview Tracker packets get denied from the 2nd member in the Cluster when I try to connect. The message I get says a packet from the actual IP of the member to the IP address of the

[FW-1] Nokia Cluster Authentication

2006-01-14 Thread Mick Reay
Hi Ladies and Gentlemen. We are running a Nokia cluster consisting of 2 devices running Checkpoint NGX. We wish to have Administrators who log in to the Nokias to access IPSO either via the serial port, Voyager or telnet/ssh to be authenticated against a Cisco ACS server. Administrators

[FW-1] Nokia Cluster Authentication

2006-01-14 Thread Mick Reay
Hi Ladies and Gentlemen. We are running a Nokia cluster consisting of 2 devices running Checkpoint NGX. We wish to have Administrators who log in to the Nokias to access IPSO either via the serial port, Voyager or telnet/ssh to be authenticated against a Cisco ACS server. Administrators

Re: [FW-1] is it possible to configure HideNAT in PIX ?

2005-06-11 Thread Mick Reay
Seigo - yes this can be done on the PIX. To do this you use the NAT and GLOBAL commands. An example nat (inside) 1 192.168.1.0 255.255.255.0 global (outside) 1 interface This translates the source address of packets coming through the inside interface going through the outside interface