Voyager Reference Guide
385
Configuring VPN-1/FireWall-1 for Clustering
If the cluster will be in service as soon as it becomes active, you should
configure and enable VPN-1/FireWall-1 before making the cluster active. You
must configure VPN-1/FireWall-1 appropriately.
Follow the guidelines below when configuring VPN-1/FireWall-1 to work
with an IPSO cluster. Refer to the Check Point documentation for details.
Also see the guidelines under
“If You Are Using FP3”
and
“If You Are
Using VPN-1/FireWall-1 NG_AI”
for information specific to these versions
of VPN-1/FireWall-1.
For FP3 and VPN-1/FireWall-1 NG_AI
!
Each cluster node must run exactly the same version of VPN-1/FireWall-
1.
!
You must install and enable exactly the same Check Point packages on
each node. In other words, each node must have exactly the same set of
packages as all the other nodes.
!
When you use Check Point’s cpconfig program (at the command line or
through the Voyager interface to this program), follow these guidelines:
!
You must install VPN-1/FireWall-1 as an enforcement module (only)
on each node. Do not install it as a management server and
enforcement module.
!
After you choose to install VPN-1/FireWall-1 as an enforcement
module, you are asked if you want to install a Check Point clustering
product. Answer yes to this question.
!
After you choose to install a Check Point clustering product (and
reboot the system when prompted to do so, you should resume using
the cpconfig program to finish the initial configuration of VPN-1/
FireWall-1. One of the options available to you at this point is to
enable CheckPoint SecureXL. Do not enable SecureXL.
!
Create and configure a gateway cluster object:
!
Use the Check Point Smart Dashboard application to create a gateway
cluster object.
Summary of Contents for Network Voyager
Page 1: ...Voyager Reference Guide Part No N450820002 Rev A Published December 2003 ...
Page 4: ...4 Voyager Reference Guide ...
Page 30: ...2 How to Use Voyager 30 Voyager Reference Guide ...
Page 32: ...3 Command Line Utility Files 32 Voyager Reference Guide ...
Page 220: ...5 Configuring Interfaces 220 Voyager Reference Guide ...
Page 446: ...7 Configuring Traffic Management 448 Voyager Reference Guide ...
Page 618: ...10 Configuring Security and Access 620 Voyager Reference Guide ...
Page 668: ...14 Configuring IPv6 670 Voyager Reference Guide ...
Page 672: ...15 IPSO Process Management 674 Voyager Reference Guide ...
Page 700: ...Index 702 Voyager Reference Guide ...