Firewall Wizards mailing list archives

Re: Check Point NG FP3 HF2 on Solaris 5.8


From: "Behm, Jeffrey L." <BehmJL () bv com>
Date: Tue, 21 Aug 2007 17:07:24 -0500

To the OP: Did you happen to (oops!) put in a rule that stops the
management server from talking to the managed firewall? (or accidentally
take out one that allows it?)


________________________________

        From: firewall-wizards-bounces () listserv cybertrust com
[mailto:firewall-wizards-bounces () listserv cybertrust com] On Behalf Of
Robert D. Hughes
        Sent: Thursday, August 02, 2007 2:22 AM
        To: Firewall Wizards Security Mailing List; Firewall Wizards
Security Mailing List
        Subject: Re: [fw-wiz] Check Point NG FP3 HF2 on Solaris 5.8
        
        

        Disclaimer: sorry for the top post, I'm stuck in OWA right
now...
        
        
        FWD won't help with the policy install. In NG, FWM on the
manager talks to CPD on the firewall. FWD was only used pre-NG for
policy installs. Debug those two process to find out what's happening.
You might also try:
        
        fw fetch <manager>
        
        and see if that tells you anything useful.
        
        Regards,
        Rob
        
        
        -----Original Message-----
        From: firewall-wizards-bounces () listserv icsalabs com on behalf
of Robby Cauwerts
        Sent: Wed 8/1/2007 6:00 PM
        To: Firewall Wizards Security Mailing List
        Subject: Re: [fw-wiz] Check Point NG FP3 HF2 on Solaris 5.8
        
        On 7/20/07, Robert Fenech <robertfenech () gmail com> wrote:
        >
        > Hi,
        >
        > I am encountering a problem when it comes to install a policy
on an NG FP3
        > HF2 firewall running on an old Solaris 5.8 machine.
        >
        > Primarily when the policy is about to be installed I get the
message
        > "Failed to install policy.  Please make sure that Firewall-1
services are
        > running...".
        >
        >
        
        Try a cprestart or cpstop/cpstart on the fw module ( be aware of
the impact
        on your traffic/remote mgmt of the fw!).
        And then try to push the policy again a few times.
        
        If this doesn't solve the problem try to debug cpd and fwd
(check CP
        knowledgebase or post a reply).
        
        Br.
        Robby
        
        

_______________________________________________
firewall-wizards mailing list
firewall-wizards () listserv icsalabs com
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards

Current thread: