Re: Issue with Checkpoint Firewall



In <egq7r11sb4j42n5vojfq835gsr1ies9pk2@xxxxxxx> Memnoch <memnoch@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx> writes:

>On 29 Dec 2005 00:01:46 -0800, "Solo" <solomonks@xxxxxxxxx> wrote:

>>Hi Firewall admins,
>>
>>Am struck with a strange issue with my Checkpoint firewall.
>>My firewall is running on a Solaris 9 box (280R) with Checkpoint NG
>>with AI (R54). Last week server went down and found to be RAM issue.
>>After the inter-change of RAM banks server came up and everything seems
>>to be fine till i pushed the policy.
>>
>>Policy doesnt gets compiled and it gives me a error as
>>
>>"Installation Failed"
>>
>>Reason : SIC General failure ( SIC Error NO. 148)
>>
>>Would appreciate any help on this.
>>
>>Solomon

>>From the KB:

>Solution
>This error means a timeout has occurred during the SIC process.

>Procedure:

>1) Check connectivity between Management Server and enforcement point

>2) Run "fw unloadlocal" on the enforcement point to unload policy

>3) Test SIC again

>Note: If it works then the problem lies with the Policy and not with SIC.
Check the date and time on both machines. If they are too far apart SIC
fails since it is ssl certificate based and timing is critical here.

Konstantin
--
Dipl-Inf. Konstantin Agouros aka Elwood Blues. Internet: elwood@xxxxxxxxxx
Otkerstr. 28, 81547 Muenchen, Germany. Tel +49 89 69370185
----------------------------------------------------------------------------
"Captain, this ship will not survive the forming of the cosmos." B'Elana Torres
.



Relevant Pages

  • Re: Server inaccessible
    ... Any possibility firewall settings ... I also updated the Intel 1000 CT network driver on the server. ... I reenabled the Default Domain Controllers Policy and the Default ... Firewall policy (since the client PCs was prevented from disabling the ...
    (microsoft.public.windows.server.sbs)
  • Re: Windows Firewall Greyed Out
    ... policy called "Small Business Server Windows Firewall?" ... profile," seems to indicate that this policy is being applied correctly. ... Navigate to the firewall settings to see where the policy applied from. ...
    (microsoft.public.windows.server.sbs)
  • Re: Help, MS tech support is useless
    ... I would first disable your policy that renames your admin account. ... I would say that you have a DNS issue. ... with shutting down the DNS server service and testing before you uninstall. ... is make sure that your hardware firewall has not ...
    (microsoft.public.windows.server.general)
  • Re: Open Relay for Exchange 5.5
    ... I think that policy is in place on the watch guard firewall. ... > server policy on it, only allowing messages meant for your ... What else can I do to shut off relay for this ...
    (microsoft.public.exchange.admin)
  • Re: Problems w/IPSec and Netopia Cayman DSL router
    ... >over a Netopia cayman 3546 DSL router. ... >Checkpoint firewall but I cannot access any server I am entitled to given ... >enabled IKE over TCP in my Global properties on the firewall. ...
    (comp.security.firewalls)