I have an evaluation copy of NG FP3 that I felt lucky to get after pleading my case ( I'm not a customer, I'm an independent network tech who wants to learn, etc.) for eight months with four seperate Check Point and reseller reps. The differences between the versions do not appear substantial...
Thanks for the info. Can StormCenter automatically distribute the downloaded black-list to enforcement modules, or is it necessary to do a policy install?
I bought the Syngress book "Check Point NG/AI" but StormCenter is not mentioned at all. Pathetic.
If anyone know where I can get details on StormCenter funtion and setup please let me know. I do not have access to Check Point Web site documentation.
Are the updates from StormCenter (block...
I don't have this version but am studying for the cert. I book I have that states some defaults that I'm not confident of.
For a user object or user template is the allowed location defaulted to NOT allowing any sources and destinations?
Are implies rules logged by default?
Has S/Key been...
fw fetch <management-server>
This command downloads the current security policy. Can I use this command to download a customized policy from the Management Server? How can I tell beforehand what the current security policy is?
Log switching options seem confusing. At least it is not clear to me from the documentation I have what options apply and when. Do Logs and Masters configuration options ( Log switching, Additional Logging ) apply to enforcement modules if communications between enforcement modules and the...
Thanks for the responses. This is only an excersize so I can understand the capabilies of the product. The documentation I have does not elaborate on configuration for manual hide nat. However it does mention its use if you want to translate only for specific protocols ( http ). Once I get my...
Simple config: NG FP two interface firewall. I have a network object, subnet 10.1.1.0/24. I want to use hide nat for http, translating the private addresses to a valid address of 172.16.1.2 ( external int on firewall is set at 172.16.1.1/24 ).
For automatic hide nat the network object has...
Thanks for the feedback Chris. Can you confirm for me the "Adminstrator by Template" option does not exist? How about time restrictions on Administators, is it possible?
I'm reading a book ( based on NG FP3 ) and playing with the NG FP3 eval. The book states that you can create Administrators by going to the Manage->Users and Administrators, click on New and selecting Administrator by Template. My eval has no such option it only has Administrator and...
Chris Lewis's Cisco book describes a basic frame-relay setup simulation using 3 routers, back-to-back cables. I haven't had success getting this to work. One router acts as the frame switch between the other 2 routers by setting up the serial interfaces as DCE and using the "frame-relay...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.