[FW-1] Checkpoint Load Balancing

2012-09-05 Thread Nathan Hawkins
help on how this works would be appreciated. Thanks! Nathan Hawkins Scanned by Check Point Total Security Gateway. = To set vacation, Out-Of-Office, or away messages, send an email to lists...@amadeus.us.checkpoint.com in the BODY of the email

Re: [FW-1] Checkpoint Load Balancing

2012-09-06 Thread Nathan Hawkins
No. We pulled power from prod01 then a few minutes later we replaced power. When prod01 came back up NATing began to work ok again. If it happens again I will suggest clearing the ARP cache on the edge router. Thanks! Nathan Hawkins -Original Message- From: Mailing list for discussion

[FW-1] Setup of Remote VPN on R75+

2012-09-20 Thread Nathan Hawkins
Ok...so I've setup remote VPNs before...but on earlier versions of Checkpoint. I'm not sure what I'm doing wrong, but the client wont connect. I have an R75.20 GW and Mgt Console. Under the IPSec VPN tab of the GW I have MyIntranet and RemoteAccess added to the communities. Under the

Re: [FW-1] Setup of Remote VPN on R75+

2012-09-20 Thread Nathan Hawkins
Ok...so I've setup remote VPNs before...but on earlier versions of Checkpoint. I'm not sure what I'm doing wrong, but the client wont connect. I have an R75.20 GW and Mgt Console. Under the IPSec VPN tab of the GW I have MyIntranet and RemoteAccess added to the communities. Under the

Re: [FW-1] Setup of Remote VPN on R75+

2012-09-24 Thread Nathan Hawkins
fw ctl zdebug drop displays ALL drops...I need a way to further filter out the drops because there's too many drops to see the one(s) I want. fw ctl zdebug drop | grep myipaddress In the global properties there is no specific IKE property. All control connections are allowed First. Well,

Re: [FW-1] Setup of Remote VPN on R75+

2012-09-26 Thread Nathan Hawkins
, Nathan Hawkins na...@thfcom.com wrote: fw ctl zdebug drop displays ALL drops...I need a way to further filter out the drops because there's too many drops to see the one(s) I want. fw ctl zdebug drop | grep myipaddress In the global properties there is no specific IKE property. All

Re: [FW-1] Setup of Remote VPN on R75+

2012-09-26 Thread Nathan Hawkins
. You can choose to use UDP or TCP encapsulation and that would make it work on other ports. On any case, I don't see how using a well used port would be stupid/irresponsible. On Wed, Sep 26, 2012 at 7:50 AM, Nathan Hawkins na...@thfcom.com wrote: There has to be a way to set Secure Client

Re: [FW-1] Setup of Remote VPN on R75+

2012-09-26 Thread Nathan Hawkins
from people, forums and documentation if you turn to simplified VPN mode, traditional mode is pretty old. On Wed, Sep 26, 2012 at 10:12 AM, Nathan Hawkins na...@thfcom.com wrote: Actually I see the FW external IP used frequently, but that's not relevant here. Please explain where I would

Re: [FW-1] Setup of Remote VPN on R75+

2012-09-27 Thread Nathan Hawkins
over the sticker shock you will see simplified mode is the way to go. -GS From: Nathan Hawkins na...@thfcom.com To: FW-1-MAILINGLIST@AMADEUS.US.CHECKPOINT.COM Sent: Wednesday, September 26, 2012 2:23 PM Subject: Re: [FW-1] Setup of Remote VPN on R75+ All

Re: [FW-1] Setup of Remote VPN on R75+

2012-09-28 Thread Nathan Hawkins
can https through a browser. From: Nathan Hawkins na...@thfcom.com To: FW-1-MAILINGLIST@AMADEUS.US.CHECKPOINT.COM Sent: Thursday, September 27, 2012 8:23 AM Subject: Re: [FW-1] Setup of Remote VPN on R75+ Well...the R60 client wont work on the machines I support

Re: [FW-1] Setup of Remote VPN on R75+

2012-09-28 Thread Nathan Hawkins
, but it is now considered part of the Mobile Access Blade. On Fri, Sep 28, 2012 at 9:03 AM, Nathan Hawkins na...@thfcom.com wrote: No, Visitor mode is NOT required as per that guide and a few others I've read (please refer to the note about SecuRemote). Anyway, everything is set according

Re: [FW-1] Setup of Remote VPN on R75+

2012-10-21 Thread Nathan Hawkins
do you have to be careful on what ports you use and what feature you have enabled. From: Nathan Hawkins na...@thfcom.com To: FW-1-MAILINGLIST@AMADEUS.US.CHECKPOINT.COM Sent: Friday, September 28, 2012 11:36 AM Subject: Re: [FW-1] Setup of Remote VPN on R75+ Ok