[FW-1] Enable/Disable IP forwarding/routing

2003-06-03 Thread Olaf Lange
Dear all, as I found there are some inconsistencies in public literature regarding to Firewall-1 installations. Perhaps somebody can explain what's right :-) In CCSA Next Generation Check Point Certified Security Administrator Study Guide (ISBN 0-07-219420-0 from McGraw-Hillx) he says In

Re: [FW-1] HF1 Upgrade

2003-07-09 Thread Olaf Lange
Roelandts, Guy schrieb: I wouldn't upgrade to HF1 but rather to, at least HF2, and even better to one of the HFA_3xx ... (the HFA of the day is HFA_315) But where to get not only the HFA but also informations about new HFA without support contract. With only software subscription you are not able

Re: [FW-1] HF1 Upgrade

2003-07-09 Thread Olaf Lange
Reinhard Stich schrieb: At 10:59 09.07.2003 +0200, you wrote: Roelandts, Guy schrieb: I wouldn't upgrade to HF1 but rather to, at least HF2, and even better to one of the HFA_3xx ... (the HFA of the day is HFA_315) But where to get not only the HFA but also informations about new HFA without

Re: [FW-1] AW: [FW-1] NG on Multiple Processors

2003-07-24 Thread Olaf Lange
On Thursday 24 July 2003 18:30, Reinhard Stich wrote: hi, you need: CPMP-MPU-1-NG Multi-CPU Support for 1 Enforcement Point cheers reinhard So that sounds a little bit...unbeleavable. As I understood, you don' t have to buy CPMP-MPU-1-NG Multi-CPU Support but without it only

Re: [FW-1] SMTP resources

2003-08-25 Thread Olaf Lange
Juan Andres Galavis wrote: Hi, I just created an SMTP resource for my entire mail domain, and have been experiencing some problems. Some packets are being rejected because of Too much mail data. I double checked the size limit of packets in the resource (Action2), and it was high (10 Mb!). I just

[FW-1] Strange license problem

2003-08-26 Thread Olaf Lange
Dear all, strange behavior of CP FW-1 NG FP3 HF2: A lot of Informatory: the current VPN-1 FireWall-1 license allows only 100 internal hosts. If this is different from the license you intended to purchase, ensure that you have the correct license. See http://usercenter.checkpoint.com for

Re: [FW-1] Strange license problem

2003-08-26 Thread Olaf Lange
[EMAIL PROTECTED] schrieb: Which platform are you running on? Ups...sorry. Running on Solaris 8 Olaf Dear all, strange behavior of CP FW-1 NG FP3 HF2: A lot of Informatory: the current VPN-1 FireWall-1 license allows only 100 internal hosts. If this is different from the license you intended

[FW-1] VPN error

2003-10-13 Thread Olaf Lange
Dear all, i try to setup a VPN but unfortunately when a client tries to access a host on the other side of the tunel i got only the following error in our logs: encryption fail reason: Cannot identify peer for encrypted connection (VPN Error code 02) To bring up the tunel from the other side

Re: [FW-1] Error Meassge

2003-11-27 Thread Olaf Lange
Haidari, Romal schrieb: Hi Romal, Hi While installing a policy the following error message is received also no logs are being tracked for the gateways recieving the error. Target localhost is not defined as an NG module, please use the -l flag I was able to find a solution in the Checkpoint