Re: [fw-wiz] Backup Checkpoint Firewall

From: John Adams (jna+dated+1116782708.ff6d25_at_retina.net)
Date: 05/17/05

  • Next message: Erick Mechler: "Re: [fw-wiz] Backup Checkpoint Firewall"
    To: Nathaniel Hall <halln@otc.edu>
    Date: Tue, 17 May 2005 10:25:07 -0700 (PDT)
    
    

    You might want to check out Phoneboy's excellent Firewall-1 site for more
    details, but what we do is to copy objects.C and our ruleset file from the
    fw directory to a different machine. You can always recompile the ruleset
    later if you need to recovert it.

    If you want the overall configuration, take a bckup of the whole
    directory. I believe there's a config.C as well in there.

    Phoneboy's site:
    http://www.phoneboy.com

    -j

    On Fri, 13 May 2005, Nathaniel Hall wrote:

    > -----BEGIN PGP SIGNED MESSAGE-----
    > Hash: SHA1
    >
    > I am working on creating a secure means to backup a CheckPoint FW-1 with
    > AI firewall. I have procedures for encrypting the information, but what
    > is the best way to get all of the configuration? Here is what I would
    > like to have:
    >
    > Text output (preferred, I can encrypt to ASCII if needed)
    > All configuration settings
    > Easy way to import into a new installation
    >
    > If this is possible, what would be the command to execute to get the
    > backup and the command to import it back in? If it isn't possible, what
    > is the best way?
    > - --
    >
    > Nathaniel Hall, GSEC
    > Intrusion Detection and Firewall Technician
    > Ozarks Technical Community College -- Office of Computer Networking
    >
    > halln@otc.edu
    > 417-447-7535
    > GPG Public Key ID: 0xAC187312
    > -----BEGIN PGP SIGNATURE-----
    > Version: GnuPG v1.2.3 (MingW32)
    >
    > iD4DBQFChQl/c+QrUawYcxIRApwvAJ42Y53FyLwPaAJgGuy8fFMHxXazjACYoHDq
    > LQ2zTEG8v8dC6a4qd7SAeA==
    > =bF+s
    > -----END PGP SIGNATURE-----
    >
    > _______________________________________________
    > firewall-wizards mailing list
    > firewall-wizards@honor.icsalabs.com
    > http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
    >
    >

    -- 
    J. Adams					http://www.retina.net/~jna
    _______________________________________________
    firewall-wizards mailing list
    firewall-wizards@honor.icsalabs.com
    http://honor.icsalabs.com/mailman/listinfo/firewall-wizards
    

  • Next message: Erick Mechler: "Re: [fw-wiz] Backup Checkpoint Firewall"

    Relevant Pages

    • Re: Good wireless signal - but browser cannot find it?
      ... But when I gave the command to see the route table, ... But his browser cannot find any connection and displays the error page ... The firewall is Norton - but disabling it temporarily made no difference. ... ping resolver1.opendns.com ...
      (microsoft.public.windowsxp.network_web)
    • Re: IPTABLES
      ... > I need to setup the firewall IPTABLES on CentOS. ... You set up the firewall using command line commands. ... > allow to acces FROM the LAN only to a computer with MAC ADRESS xxxxxx. ...
      (comp.os.linux.setup)
    • Re: Adobe Reader will not launch in XP Home Edition SP 2
      ... for older versions of Adobe Reader all the way back to 5.x, ... and then when trying to launch the reader by clicking on a pdf file I get ... It might be your firewall, ... Results of command "notepad c:\test.txt" ...
      (microsoft.public.windowsxp.general)
    • Re: ISO help opening Windows (XP and VISTA) firewall programmatically
      ... launch this command from elevated command promp and see the results. ... this utility opens a couple of ports in Windows firewall, ... Firewall dialogs asking of they want to block. ... does not do its job when run during installation on a Windows Vista ...
      (microsoft.public.win32.programmer.networks)
    • Re: Problem about Window Xp SP2 firewall and the buildin FTP command
      ... I checked the firewall log, ... I always test the XP SP2 on both my own FTP ... I copy your example ftp command file to a.txt saved in C:\dell folder. ... I cannot turn off Windows Firewall, since it is controlled by Domain ...
      (microsoft.public.windowsxp.general)