Firewall-1

Re: [FW-1] Please help: Connectra Security Gateway on Secureplatform

Subject: Re: [FW-1] Please help: Connectra Security Gateway on Secureplatform
From: Ray <sixsigma44 AT HOTMAIL DOT COM>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Wed, 28 Dec 2005 15:35:09 -0500
Hi Michael,

Hey, looks like you're correct and I mis-read it. That might be worth investigating for us as well.

I just posted that note about how to return the public IP address for SNX when it's behind NAT, so that just might do the trick of pointing it to the different IP address.

Here's another trick I learned through experimenting. When you are setting up a network application, you may have the issue that the install path of the application is different between operating systems.

We hit this with the SAP Logon Pad. Yes, the silly thing is installed off of the operating system folder and not Program Files. You can specify enviroment variables in the path, such as

%WINDIR%

which will return the correct path for Windows 2000 (C:\WINNT) or for XP (C:\Windows). I've also used

%USERPROFILE%\Desktop\

to be able to launch desktop shortcuts for the currently logged on user.

RAy

From: "Michael J. Semaniuk" <mike AT SEMANIUK DOT COM>
Reply-To: Mailing list for discussion of Firewall-1 <FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Subject: Re: [FW-1] Please help: Connectra Security Gateway on Secureplatform
Date: Wed, 28 Dec 2005 13:39:46 -0500

Right, so you need a separate port for the web portal than for SNX no matter how you do it. I don't know how other vendors do it.

Actually, I believe Reinhard was refering to the capability of running the portal & SNX on the same TCP port, 443 in this case. You can do it if you are willing to bind two IP addresses to the device. All portal traffic would go to one, all SNX traffic would go to the other.

I've used Juniper's product & that does everything over 443. I haven't done much with Nokia or any of the others that are now out there.

-Mike

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>