Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Baasanjargal_Ts
Advisor

TE1000 appliance needs install policy

Hello.

TE1000 appliance is deployed on the Check Point NGTX firewall environment. In this case, Do we need to create a separate access control policy for TE1000 appliance. Do TE1000 need any install policy?

0 Kudos
Reply
4 Replies
PhoneBoy
Admin
Admin

Generally, yes.

0 Kudos
Reply
Baasanjargal_Ts
Advisor

img-DC-06.png

That is my TE_Policy rule. It has just one rule Any to Any Accept. Installation target is just TE1000x appliance. How about that; Does it look correct.?

0 Kudos
Reply
PhoneBoy
Admin
Admin

Probably safer to configure a rule to allow https and ssh to the gateway and drop everything else, unless it’s an ICAP proxy.

0 Kudos
Reply
Baasanjargal_Ts
Advisor

Yeah, You mean just allow https and ssh between TE1000 and Gateway? We want to emulate HTTP, SMTP traffic too. How about in that case.?

Also,  I am wondering do local hosts need to connect TE1000 appliance.? As I understand TE1000 can connect to NGTX gateway and Smart-1 management server network is enough, or not?

0 Kudos
Reply