Nortel Switched Firewall 2.3.3 User’s Guide and Command Reference
80
Initial setup
213455-L, October 2005
3.
Type the IP address of the SecurID interface in the entry field.
TIP
: The IP address of the SecurID interface is the address of the interface that the ACE server
connects to. In an HA environment, the IP address of the SecurID interface is the address of the
virtual IP of the interface.
4.
Click Update.
N
OTE
–
If changes are made to the sdconf.rec file, you must restart either the firewalls or the
Check Point service.
TIP
: To stop Check Point, use the command cpstop. To start Check
Point, use the command cpstart.
Configuring partner RSA authentication agent
The RSA SecurID authentication is supported by the following three authentication methods
on Check Point:
user
client
session
Enabling global SecurID authentication for Firewall clusters
or hosts on Check Point
To enable SecurID authentication for Firewall clusters or hosts globally on Check Point, do the
following:
1.
Go to the SmartDashboard.
2.
Select Manage
3.
Select Network Objects
4.
Select Check Point Firewall-1 instance.
5.
Click Edit.
6.
Select the Authentication tab.
7.
Check the SecurID check box.