- CheckMates
- :
- Products
- :
- Quantum
- :
- SMB Gateways (Spark)
- :
- Re: Converting a Check Point 1400 security applian...
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Converting a Check Point 1400 security appliance from Local to Central Management
A short video showing how to easily convert a 1400 Small Business Security Appliance from local to central management, in this short video from our Check Point community.
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
This requires a license.
SmartConsole/SmartDashboard cannot connect directly to a 1490 (or any other SMB appliance).
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Likely the SKU you're looking for is CPSM-NGSM5, which is the smallest management license we sell (for up to 5 gateways and includes SmartEvent/Compliance for 1 year).
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Just one question, how and where can a security mangement be installed?
I have downloaded and installed the "Check_point_SmartConsole_and_SmartDomain_Manager_R77.30".
Smart Dashboard wants username; password; and device if I put in the IP of the Windows Server or IP of the 1490 it cannot connect,
"defined as a GUI client"
If I remember correctly from years past we needed to enter the Server where the software was installed directly into the Firewall some how.
At any rate could use some help
Thanks,
Jeff
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
This requires a license.
SmartConsole/SmartDashboard cannot connect directly to a 1490 (or any other SMB appliance).
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Likely the SKU you're looking for is CPSM-NGSM5, which is the smallest management license we sell (for up to 5 gateways and includes SmartEvent/Compliance for 1 year).
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
During the course of shifting my SMB appliance from local to central server, what will happen to the policies already working on the appliance ? Will it get populated on the Central server automatically ?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
When you switch from local to central management and before you've pushed an explicit policy from the central management to the gateway, a default policy allowing outgoing traffic will be enforced.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
You mean to say I will have to push all the policies afreah ? I have only two 1490 appliances working in HA mode. Is it worth taking pain to migrate them to a central management server ? What benefits I may loose by not doing so.
Thanks for your time.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Yes, you will have to recreate the policy in the central management.
Let me turn the question around: what is your motivation for moving to central management in the first place?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
One of the reason is better log monitoring and management of appliances. At present I have to replicate policies in both the firewalls manually. Though I don't have experience but I feel management server will make job easier.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
It should as you can push the same policy to both gateway members and leverage SmartEvent.
Some features (don't have a list offhand) are only available when centrally managed.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Dear Sir,
I have two 1490 appliances working in HA Mode. What should be the sequence of operations for shifting them from local to central management ? Any downtime will be required for this process of shifting them from local to central management. I have done management server R80.40 and connected it to Smart Console.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Using SMBs as HA Cluster, you only define the policy on the active member ! The HA node will sync from the active member the changed policy. Central Management lifts some limitations of the 14x0 locally managed appliances - more cores, a more granular, layered rulebase, and provides added features using SmartDashboard.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Based on your advice I purchased CPSM-NGSM5 with three years licence. The migration work from Local to Central was planned to be done by our IT team. We installed CMS on VMWare platform and moved one 1490 SMB which was working on production mode in HA Cluster from local to central, but Logs are not being pushed from FW to CMS. I also created SR but checkpoint TAC saying they provide services only for production systems and not for Lab setup. Any advice ? While purchasing CMS I didn't foresee any such difficulties and thought It would be easy to migrate. -:(
