- CheckMates
- :
- Products
- :
- General Topics
- :
- Re: TE1000 appliance needs install policy
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
TE1000 appliance needs install policy
Hello.
TE1000 appliance is deployed on the Check Point NGTX firewall environment. In this case, Do we need to create a separate access control policy for TE1000 appliance. Do TE1000 need any install policy?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Generally, yes.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
That is my TE_Policy rule. It has just one rule Any to Any Accept. Installation target is just TE1000x appliance. How about that; Does it look correct.?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Probably safer to configure a rule to allow https and ssh to the gateway and drop everything else, unless it’s an ICAP proxy.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Yeah, You mean just allow https and ssh between TE1000 and Gateway? We want to emulate HTTP, SMTP traffic too. How about in that case.?
Also, I am wondering do local hosts need to connect TE1000 appliance.? As I understand TE1000 can connect to NGTX gateway and Smart-1 management server network is enough, or not?
