NETWORK PRESENCE ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT
 


Search
display results
words begin  exact words  any words part 

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [FW-1] HA / VPN's



> I'm in the process of setting up checkpoint's HA solution.  On the firewalls
> I have 3 interfaces.  One is the external, one is our internal network, and
> one is a secure network where the management station sits.  The secure
> network is using a non routable 192.168.. subnet.  The fail over seems
> to work just fine.  The problem I'm having is that I have about 12
> international firewalls that are controlled by the management station on the
> non routable network.  In order to get the international firewalls to link
> up to the management station, I have put in a static route/translations to
> the management station.  The international firewalls can ping the management
> station....FTP to it....Telnet....but when I do the putkeys on both sides, I
> never get "receiving new key" on the international firewall.  I guess my
> question is, can I have the management station on a non-routable subnet if
> it needs to communicate with other firewalls across the internet ?
This is what putkey -n is for

putkey -n local-ip remote-ip

you must use putkey -n with the same IP address every time.
-don

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================



 
----------------------------------

ABOUT SERVICES PRODUCTS TRAINING CONTACT US SEARCH SUPPORT SITE MAP LEGAL
   All contents © 2004 Network Presence, LLC. All rights reserved.