Solved

cannot install checkpoint policy

Posted on 2013-01-03
4
835 Views
Last Modified: 2013-01-09
I have the need for some help with my old checkpoint NG FP3

I have tried to revoke and create a new IKE Cert for use in my vpn and now my policy will not install

When I try to push the policy, it verifies and then sits on installing (for hours) with no errors .

I can abort and no policy changes were put in place (as in the old policy is still active)

HELP!
Ray
0
Comment
Question by:funray
  • 3
4 Comments
 
LVL 13

Expert Comment

by:Sandy
ID: 38742923
i believe you need to select the appropriate cert in tunnel config also. Please check
0
 

Author Comment

by:funray
ID: 38743970
There is no where to select the cert in the tunnel config.  All I can do is select participating gateways

To be clear
1. I have revoked and created a new cert (using internal CA) on the checkpoint node
Before I could do this I had to remove the CP object as a participating gateway in the tunnel.

2. when I try to push the policy, the progress shows that it verifies OK but will not push the policy in. it just waits to infinity.  

3. The smartdashboard does not lock up, I am able to abort the push, and the old policy is still in place

it is as if the pushing is waiting for something to happen and it has no timeout
0
 

Accepted Solution

by:
funray earned 0 total points
ID: 38744093
Ok, i solved the problem.

my etc/hosts file  had the host name resolve to 127.0.0.1
once i changed it to the ip specified in the CP Object,  everything installed smoothly

I consider this issue resolved .
thx
0
 

Author Closing Comment

by:funray
ID: 38758221
The reason is because I figured it out on my own.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
VPN speed and 3rd party service 13 51
Filezilla server wont allow me to connect to it 2 55
ASA AnyConnect tunneling 3 38
Cisco Any Connect Client 5 45
To setup a SonicWALL for policy based routing to be used with the Websense Content Gateway there are several steps that need to be completed. Below is a rough guide for accomplishing this. One thing of note is this guide is intended to assist in the…
This article offers some helpful and general tips for safe browsing and online shopping. It offers simple and manageable procedures that help to ensure the safety of one's personal information and the security of any devices.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question