Juniper SECURITY THREAT RESPONSE MANAGER 2008.2 - CONFIGURING DSMS REV 1 Manual page 32

Configuring dsms
Hide thumbs Also See for SECURITY THREAT RESPONSE MANAGER 2008.2 - CONFIGURING DSMS REV 1:
Table of Contents

Advertisement

26
C
P
P
HECK
OINT
ROVIDER
Integrating Check
Point Provider-1
Using OPSEC
Step 1
Step 2
Step 3
Step 1
Step 2
Step 3
Step 4
-1
You are now ready to configure the sensor device within the STRM interface. To
configure STRM to receive events from an Check Point Provider-1 device using
syslog, choose one of the following options:
If you are using STRM 6.0, select CheckPoint Firewall-1 Devices via Syslog
from the Sensor Device Type drop-down list box.
If you are using STRM 6.0.1 and above, select CheckPoint Firewall-1 from the
Sensor Device Type drop-down list box.
For more information on configuring sensor devices, see the Managing Sensor
Devices Guide. For more information regarding Check Point Provider-1, see the
Check Point Provider-1 documentation.
This method ensures the STRM Check Point Provider-1 DSM accepts Check Point
Provider-1 events using OPSEC.
To enable Check Point Provider-1 and STRM 6.0 integration, you must:
Reconfigure Check Point Provider-1 SmartCenter. See
Provider-1
SmartCenter.
Configure the OPSEC LEA protocol in the STRM interface.
To configure STRM to receive event from a Check Point device using OPSEC
LEA, you must select the LEA option from the Protocol drop-down list box when
configuring your protocol configuration. For more information, see Configuring
Protocols in the Managing Sensor Devices Guide.
Configure the sensor device within the STRM interface.
To configure STRM to receive events from an Check Point Provider-1 device using
OPSEC, you must select the CheckPoint Firewall-1 Devices via Syslog option
from the Sensor Device Type drop-down list box. For more information on
configuring sensor devices, see the Managing Sensor Devices Guide.
For more information, see your vendor documentation.
Reconfiguring Check Point Provider-1 SmartCenter
This section describes how to reconfigure the Check Point Provider-1
SmartCenter. In the Check Point Provider-1 Management Domain GUI (MDG),
create a host object representing the STRM system. The leapipe is the connection
between the Check Point Provider-1 and STRM.
To reconfigure the Check Point Provider-1 SmartCenter (MDG):
To create a host object, open the Check Point SmartDashboard GUI and select
Manage > Network Objects > New > Node > Host.
Enter in the Name, IP Address, and optional Comment for your host.
Click OK.
Select Close.
Configuring DSMs Guide
Reconfiguring Check Point

Advertisement

Table of Contents
loading

This manual is also suitable for:

Security threat response manager

Table of Contents