(2) VPN-1 & FireWall-1 Enforcement Module
(3) VPN-1 & FireWall-1 Enterprise Primary Management
Checkpoint Firewall-1/VPN-1Ö§³Ö¶àÖÖ°²×°Ä£Ê½£¬Firewall-1/VPN-1Ö÷Òª°üÀ¨Èý¸öÄ£¿é£º
GUI£ºÓû§¿´µ½µÄͼÐλ¯½çÃæ£¬ÓÃÓÚÅäÖð²È«²ßÂÔ£¬ÉÏÃæ²¢²»´æ´¢ÈκηÀ»ðǽ°²È«²ß
ÂԺͶÔÏ󣬰²×°ÓÚһ̨PC»úÉÏ£»
Management£º´æ´¢Îª·À»ðǽ¶¨ÒåµÄ¸÷ÖÖ°²È«²ßÂԺͶÔÏó£»
Enforcement Module£ºÆð¹ýÂËÊý¾Ý°ü×÷ÓõĹýÂËÄ£¿é£¬ËüÖ»ÓëManagermentͨÐÅ£¬
ÆäÉϵݲȫ²ßÂÔÓɹÜÀíÄ£¿éÏÂÔØ£»
ÒÔÉÏÈý¸öÑ¡ÏîÖÐÈç¹ûManagementÓëEnforcement Module°²×°ÓÚͬһ̨É豸ÉÏ£¬
ÔòÑ¡Ôñ£¨1£©£¬Èç¹ûManagementÓëEnforcement Module·Ö±ð°²×°ÓÚ²»Í¬µÄÉ豸ÉÏ£¬ÔòÑ¡Ôñ£¨2£©»ò£¨3£©¡£ÔÚ´Ë´¦ÎÒÃÇÑ¡Ôñ£¨1£©
Enter your selection (1-3/a-abort) [1]: 1 IP forwarding disabled
Hardening OS Security: IP forwarding will be disabled during boot. Generating default filter Default Filter installed
Hardening OS Security: Default Filter will be applied during boot. This program will guide you through several steps where you will define your Check Point products configuration.
At any later time, you can reconfigure these parameters by running cpconfig
Configuring Licenses...
======================= Host Expiration Features
Note: The recommended way of managing licenses is using SecureUpdate. This window can be used to manage local licenses only on this machine. Do you want to add licenses (y/n) [y] ? n
£¨Ñ¯ÎÊÓû§ÊÇ·ñÐèÒª°²×°Checkpoint License£¬¿ÉÒÔÔÚ´ËʱÊäÈ룬Ҳ¿ÉÔÚ°²×°Íê±ÏʱÓÃÃüÁîÐз½Ê½ÊäÈ룬ÒòΪʹÓÃÃüÁîÐз½Ê½ÊäÈë½ÏΪ·½±ã£¬½¨ÒéÓû§ÔÚ°²×°Íê±ÏºóʹÓÃcopy -> pasteµÄ·½Ê½ÊäÈëLicense¡£ÔÚ´Ë´¦ÎÒÃÇÑ¡Ôñn£©
Configuring Administrators...
============================= No Check Point Administrators are currently defined for this Management Station. Administrator name: fwadmin
(ÅäÖÃCheckpoint Firewall-1/VPN-1µÄ¹ÜÀíÔ±Óû§Ãû£¬×¢Òâϵͳ×ÔÉíÓëCheckpointµÄ
¹ÜÀíÔ±²»Ïàͬ)
Password: Verify Password:
£¨ÉèÖùÜÀíÔ±µÄÃÜÂ룬Checkpoint¹ÜÀíÔ±ÃÜÂëûÓг¤¶ÈµÄÏÞÖÆ£©
Permissions for all Management Clients (Read/[W]rite All, [R]ead Only All, [C]us
tomized) W
£¨ÉèÖøùÜÀíÔ±µÄÓû§È¨ÏÞ£¬ÓÐÈýÖÖȨÏÞ£¬Ð´È¨ÏÞW£¬¶ÁȨÏÞR£¬×Ô¶¨ÒåȨÏÞC£¬ÔÚ´Ë´¦Ñ¡ÔñW£¬¸øÓè¹ÜÀíÔ±×î´óµÄȨÏÞ£©
Administrator fwadmin was added successfully and has Read/Write permission to all management clients
Add another one (y/n) [n] ? £¨ÌáʾÊÇ·ñ»¹¼ÓÈëÆäËüÓû§£©
Configuring GUI clients...
========================== GUI clients are trusted hosts from which
Administrators are allowed to log on to this Management Station using Windows/X-Motif GUI.
Do you want to [C]reate a new list, [A]dd or [D]elete one?: C
£¨Checkpoint GUIÈí¼þÐèÒª°²×°ÔÚһ̨PC»úÉÏ£¬µ«¸ÃGUIµÄIPµØÖ·ÐèÒª¶¨Ò壬ÔÚ´Ë´¦ÎÒÃÇÑ¡ÔñC£¬´´½¨Ò»¸öGUI IPµØÖ·±í£©
Please enter the list hosts that will be GUI clients.
Enter hostname or IP address, one per line, terminating with CTRL-D or your EOF character.
10.0.0.15
Is this correct (y/n) [y] ?
£¨ÊäÈëÍêµØÖ·ºóÐèÒª°´CTRL-D½áÊø¶¨ÒåGUI£©
Configuring Groups...
=====================
Check Point access and execution permissions -------------------------------------------
Usually, a Check Point module is given group permission for access and execution.
You may now name such a group or instruct the installation
procedure to give no group permissions to the Check Point module. In the latter case, only the Super-User will
be able to access and execute the Check Point module.