Yeah that's true. I have a management server and two Firewall-1 servers
running the firewall-1 and VPN module. I statically NATed a public address
to my management server since it's the CA. I'm still having weird problems.
Using FWZ as the encryption scheme, I can generate the key manager and DH
key but when I push the OK button for the CP_Mgmt object it gives a weird
error back stating that "you must define at least one key (DH or Key
Manager) before you continue." Haven't been able to figure this out at all.
Both keys are generated and defined however it won't let me continue!
Alex Uy
Net2000 Communications, Inc.
Senior Network Administrator
Phone Number (703)654-2475
-----Original Message-----
From: Robert MacDonald [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, July 11, 2000 11:41 AM
To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
Cc: [EMAIL PROTECTED]
Subject: RE: [FW1] primary IP-address
If I'm not mistaken, the licensed address must be
the external address for SR to work.
If I am mistaken, then someone will surely
help me...
Robert
- -
Robert P. MacDonald, Network Engineer
e-Business Infrastructure
G o r d o n F o o d S e r v i c e
Voice: +1.616.261.7987 email: [EMAIL PROTECTED]
>>> "Uy, Alex" <[EMAIL PROTECTED]> 7/6/00 8:51:53 AM >>>
>
>Hoang, what happens if you license your primary and secondary firewalls
with
>an internal private address as oppose to a public real address? Could this
>be the reason why I'm having problems implementing VPN??
>
>Alex Uy
>Net2000 Communications, Inc.
>Senior Network Administrator
>Phone Number (703)654-2475
>
>
> -----Original Message-----
> From: "Hoang Ha" <[EMAIL PROTECTED]>@NET2000
> Sent: Thursday, July 06, 2000 6:41 AM
> Subject: RE: [FW1] primary IP-address
>
>
>
> Hi
>
> the Primary IP address is the IP that will be IP address of
>external
> interface. This is IP address do you license.
> For your solaris system the Primary IP address is the first
>IP you
> defined while installed your system.
>
> Regards
> Hoang Ha
<snip>
================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================