[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] Re: [FW-1] HA / VPN's
> I'm in the process of setting up checkpoint's HA solution. On the firewalls > I have 3 interfaces. One is the external, one is our internal network, and > one is a secure network where the management station sits. The secure > network is using a non routable 192.168.. subnet. The fail over seems > to work just fine. The problem I'm having is that I have about 12 > international firewalls that are controlled by the management station on the > non routable network. In order to get the international firewalls to link > up to the management station, I have put in a static route/translations to > the management station. The international firewalls can ping the management > station....FTP to it....Telnet....but when I do the putkeys on both sides, I > never get "receiving new key" on the international firewall. I guess my > question is, can I have the management station on a non-routable subnet if > it needs to communicate with other firewalls across the internet ? This is what putkey -n is for putkey -n local-ip remote-ip you must use putkey -n with the same IP address every time. -don ================================================= To set vacation, Out Of Office, or away messages, send an email to [email protected] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [email protected] =================================================
|