Advertisement

09.09.2008 at 08:54AM PDT, ID: 23716000 | Points: 500
[x]
Attachment Details

Moving to different firewall solution LIVE

Asked by kolarzysta in IP Tables/IP Chains, Networking Hardware Firewalls, Checkpoint Firewall

Tags:

Hi.
Some time ago our Checkpoint firewall stoped working properly. The actual firewall is working according to policy. However we can't get GUI client accces using dashboard. Chcekpoint version is FP2 which is not supported anymore. We are hosting few major customer under this firewall and I can't make any changes to policy, so I decided to build another firewall based on iptables + FW Builder.

Now. I want to move one machine by one to the new FW solution and recreate the rules. The idea is to stick this new firewall on front of the other and make it transparent so it won't interuput the work of the old FW.

What is the best way to move all the rules from one firewall to another without major interuption of service or how can I put to live (if it is possible at all) my idea of one firewall on front of the other?

Thanks

Start Free Trial
 
Loading Advertisement...
 
[+][-]09.12.2008 at 02:37AM PDT, ID: 22458193

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 7-day free trial to view this Expert Comment or ask the Experts your question.

 
 
Loading Advertisement...
20080716-EE-VQP-32 / EE_QW_2_20070628