• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 853
  • Last Modified:

cannot install checkpoint policy

I have the need for some help with my old checkpoint NG FP3

I have tried to revoke and create a new IKE Cert for use in my vpn and now my policy will not install

When I try to push the policy, it verifies and then sits on installing (for hours) with no errors .

I can abort and no policy changes were put in place (as in the old policy is still active)

HELP!
Ray
0
funray
Asked:
funray
  • 3
1 Solution
 
SandyCommented:
i believe you need to select the appropriate cert in tunnel config also. Please check
0
 
funrayAuthor Commented:
There is no where to select the cert in the tunnel config.  All I can do is select participating gateways

To be clear
1. I have revoked and created a new cert (using internal CA) on the checkpoint node
Before I could do this I had to remove the CP object as a participating gateway in the tunnel.

2. when I try to push the policy, the progress shows that it verifies OK but will not push the policy in. it just waits to infinity.  

3. The smartdashboard does not lock up, I am able to abort the push, and the old policy is still in place

it is as if the pushing is waiting for something to happen and it has no timeout
0
 
funrayAuthor Commented:
Ok, i solved the problem.

my etc/hosts file  had the host name resolve to 127.0.0.1
once i changed it to the ip specified in the CP Object,  everything installed smoothly

I consider this issue resolved .
thx
0
 
funrayAuthor Commented:
The reason is because I figured it out on my own.
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

The Lifecycle Approach to Managing Security Policy

Managing application connectivity and security policies can be achieved more effectively when following a framework that automates repeatable processes and ensures that the right activities are performed in the right order.

  • 3
Tackle projects and never again get stuck behind a technical roadblock.
Join Now