Communication Properties; Vpn Properties - Infinity CHECK POINT 1100 Administration Manual

Appliances centrally managed
Hide thumbs Also See for CHECK POINT 1100:
Table of Contents

Advertisement

Communication Properties

In the Communication Properties page, you define an Activation Key that is used to set up Secure
Internal Communication (SIC) Trust between the SmartLSM Security Gateway and the Security
Management Server. This is the same key that you should enter in the one-time password field of
the Security Management Server Authentication page of the Check Point Appliance First Time
Configuration Wizard.
To generate a key automatically:
1. Select Generate Activation Key automatically.
2. Click Generate.
The Generated Activation Key window opens.
3. Click Accept.
The two Activation Key fields show the new key in hidden text. You cannot view it in clear text
again. If you click Cancel, the generated key is discarded.
To manually define an activation key:
1. Select Activation Key.
2. Enter your own key, a string of any length.
3. In Confirm Activation Key, enter the key again. You cannot copy the text from the first field.
To clear the key, click Clear.
To initialize certification:
The SIC certificate must be shared between the Security Management Server and the SmartLSM
Security Gateway. With this SmartLSM wizard, you create the key on the Security Management
Server (the SIC certificate and the IKE certificate for the selected gateway are created when you
finish this wizard). The certificate is pulled by the gateway when it first connects to the Security
Management Server after it is configured with the Check Point Appliance First Time Configuration
Wizard.
1. If you know the IP address of the SmartLSM Security Gateway, select This machine currently
uses this IP address, and enter the IP address.
2. If you do not know the IP address of the SmartLSM Security Gateway, select I do not know the
current IP address.
3. Click Next.

VPN Properties

1. Select how to create a VPN certificate:
For a CA certificate from the Internal Check Point CA, select I wish to create a VPN
Certificate from the Internal CA.
For a CA certificate from a third party (for example, if your organization already has
certificates from an external CA for other devices), clear this checkbox and request the
certificate from the appropriate CA server.
2. Click Next.
Check Point 1100/1200R/1400 Appliances Centrally Managed Administration Guide R77.20.70
SmartProvisioning
|
29

Advertisement

Table of Contents
loading

Table of Contents