• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 1315
  • Last Modified:

Checkpoint Floodgate1 (QoS) on Management Server

I wanted to control my traffic on the checkpoint firewall, so I installed FloodGate1 on the firewall itself (by going to voyager and turning FloodGate1 Module on) I also turned on SmartView Monitor Module from the voyager.

So, i was hoping to select the QoS in Gateway Cluster properties from the Management Server. But its greyed out. I was able to select SmartView Monitor checkbox and install the policy to get the bandwidth reporting working, but not the QoS.

I wanted to see whether I need to install something on the management server itself to get the QoS tab in the management server... check the screenshot below
http://img321.imageshack.us/img321/7958/floodgate16cj.png

If yes, please tell me how i can install it on the management server and why didn't I have to install anything for SmartView monitor to work?
0
jibranilyas
Asked:
jibranilyas
  • 2
1 Solution
 
uberpoopCommented:
Most likely you are not licensed to use Floodgate-1....
The voyager will let you enable all the packages you want, but Checkpoint wants the lic file allowing each one.
0
 
jibranilyasAuthor Commented:
I have the license.... I was able to select FloodGate-1 and SmartView monitor from Voyager.
Smartview monitor works, but not floodgate-1
For smartview monitor, i had to go to Gateway window in management server -->select smartview monitor checkbox-->apply policy-->I was then able to go to Window-->Smartview monitor.

For FloodGate-1, i tried doing the same thing. But in the gateway window in management server, the QOS checkbox was greyed out.

any suggestions now?
0
 
imreble1Commented:
Do yourself a favor and Install the FloodGate-1 add-On onto the SmartCenter Server
   
1. Go to 'Expert mode' after a standard log on.

 2. Obtain the FloodGate-1 rpm package: CPfg1-R55-00.i386.rpm.


          * Obtain it from the VPN-1/FireWall-1 NG with Application Intelligence R55 CD ROM


            Or

          * Obtain it from the hard disk, on an VPN-1/FireWall-1 NG with Application Intelligence R55 SecurePlatform install. It is under:

            /sysimg/CPwrapper/linux/CPFloodGate1-50/

   3. Change into the directory where the rpm file is located.

   4. Run the cpstop command.

   5. Run the rpm -i packagename command to install.
      Ex:

      rpm -i CPfg1-R55-00.i386.rpm

      This will install the FloodGate-1 package for NG with Application Intelligence R55 on the SecurePlatform machine.

   6. Run the cpstar command.

   7. Log into the Smart Update GUI and select 'Packages > Get Data', to update the package repository.


Note:
In a distributed environment, FloodGate-1 requires installation on both the enforcement module and the management server. Also an appropriate FloodGate-1 license should also be installed on both the enforcement module and management server.

I'll send you the bill later
:)
RDC
Fishnetsecurity.com
0
 
jibranilyasAuthor Commented:
u rock man ...
Thanks much RDC...

include your welcome with the bill :D
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

Worried about phishing attacks?

90% of attacks start with a phish. It’s critical that IT admins and MSSPs have the right security in place to protect their end users from these phishing attacks. Check out our latest feature brief for tips and tricks to keep your employees off a hackers line!

  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now