Skip navigation.
Home

Checkpoint

How to Install Checkpoint Firewall NGX on SecurePlatform:

This is a step by step guide on how to install Checkpoint Firewall NGX on a secureplatform device. This article covers the basic installation part of the Firewall of the Firewall including the Enforcement Module and the Smart Center. A standalone installation is covered in this article, which means that enforcement module and the smartcenter are on the same machine.

Solaris 8 and Checkpoint NG FP3 install with SSH, JASS and Syslog

After determining the initial state of insecurity in an existing corporate firewall, the following discusses the process of building a hardened Solaris 8 Sun clone with SSH connectivity for remote firewall console access with Checkpoint NG FP1 firewall, an upgrade to FP3 then HF2, hardened further with JASS, and the last step remote syslog. Discussed below is the detailed account of the pre-existing insecurity, a brief note of the catalytic event precipitating the actual changes to the firewall, a discussion of the implementation, and the results and ultimate success of the procedure "hardening" the corporate firewall.

Implementing NAT on Checkpoint Firewall-1

Network Address Translation, or NAT as commonly referred to, was initially designed as a temporary fix, before IPv6, to allow additional workstations to access routable networks across the Internet, without utilizing a routable, or valid IP address. NAT is simply defined as connecting multiple computers to the Internet, using one IP address. Today, a multitude of proxies, firewalls, VPN devices, routers and SOHO devices now use NAT to allow internal hosts to the Internet. This document will examine how NAT is implemented, specifically on Checkpoint Firewall-1 4.1 for Windows NT 4.0.

How to fix Check Point High Availability State Synchronization

The purpose of this article is to show how to fix state sync Issues in a Checkpoint High Availability environment. In a HA configuration, one firewall acts as the primary and the other a secondary firewall. This is also known as a Master-Backup scenario.The state tables of the Master is replicated onto the secondary firewall only if state sync is working between the two firewalls. Where the sync is broken, in case of a failover the existing sessions will be dropped. The sync can stop working for several reasons. These are a few ways of fixing the sync between two firewalls:

Armoring Solaris

Firewalls are one of the fastest growing technical tools in the field of information security. However, a firewall is only as secure as the operating system it resides upon. This article will take a step by step look at how you can best armor your Solaris box, both Sparc and x86. These steps can apply to any situation, however I will be using Check Point FireWall-1 on Solaris 2.6 as an example. At the end of this article is a script that you can download that will automate most of the armoring process, to include implementing TCP Wrappers.

Firewall Analysis and Operation Methods

This white paper shows how to meet the challenge of low fiscal impact by using open source tools and re-purposing equipment in-hand. The challenge of low service impact was met through three layers of analysis before cutover. The methods used to develop this analysis are structured for re-use in other firewall projects and presented for use by others with similar challenges.

How to restart the fwd process in Checkpoint Firewalls

There are times when you have to restart the fwd deamon. You might have to restart this in case the firewall starts logging locally, or you encounter a runaway process where the firewall experiences high CPU, or other instances where the firewall might start dropping packets for not so well known reasons.You can use this command to restart the Firewall deamon, fwd process using the watchdog services.

How to Find the Speed of an Interface on a Solaris machine

Use this to find out the speed of the interface of the solaris box.

ndd -set /dev/qfe instance 0
ndd -get /dev/qfe link_speed

Re-establishing SIC (Secure Internal Communications) for Checkpoint

Re-establishing SIC:
This article will give you the steps to establish SIC in a Checkpoint Firewall.

Troubleshooting RSA Securid authentication

Troubleshooting Checkpoint firewall issues involving RSA securid authentication Method:

If there is any problem in the authentication process then you might have to add a rule on the firewall:

Top Ten Tips for Managing Your Firewall

This article discusses the Top ten tips that you can implement to best manage and fine tune your firewall. The purpose of this article is to get the best performance out of your firewall and increased security to your network.

Cisco Pix DHCP Relay Usage

This article would show you how to use DHCP Relay Usage using a Cisco Pix Firewall.

Scenario: You are adding a new DHCP server and would like it permitted as a DHCP relay through the firewall. The address is 192.168.2.1.

FORTIGATE 60 FIREWALL CLI CONFIGURATION

This article will show you how to configure Fortigate 60 from the Command Line Interface.

Search



 

Web

www.secmanager.com






Syndicate content