Page 1
Check Point 4000 Appliances Getting Started Guide Models: T-120, T-140, T-160 and T-180 6 November 2012 Classification: [Protected] | P/N: 704879...
Page 2
Check Point. While every precaution has been taken in the preparation of this book, Check Point assumes no responsibility for errors or omissions. This publication and features described herein are subject to change without notice.
Latest Documentation The latest version of this document is at: http://supportcontent.checkpoint.com/documentation_download?ID=12688 For additional technical information, visit the Check Point Support Center (http://supportcenter.checkpoint.com). For more about this appliance, see the Check Point 4000 Appliances home page (http://supportcontent.checkpoint.com/solutions?id=sk68681). Revision History Date Description...
Disconnect the system board power supply from its power source before you connect or disconnect cables or install or remove any system board components. Failure to do this can result in personnel injury or equipment damage. 4 | Check Point 4000 Appliances Getting Started Guide...
Handling the cord on this product will expose you to lead, a chemical known to the State of California to cause cancer, and birth defects or other reproductive harm. Wash hands after handling. Check Point 4000 Appliances Getting Started Guide...
Page 6
A est conforme à la norme NMB-003 du Canada. This Class B digital apparatus complies with Canadian ICES-003. Cet appareil numérique de la classe B est conforme à la norme NMB-003 du Canada. 6 | Check Point 4000 Appliances Getting Started Guide...
Page 7
This product is in conformity with Low Voltage Directive 2006/95/EC, and complies with the requirements in the Council Directive 2006/95/EC relating to electrical equipment designed for use within certain voltage limits and the Amendment Directive 93/68/EEC. Check Point 4000 Appliances Getting Started Guide...
For more information about where you can drop off your waste equipment for recycling, please contact your local city office or your household waste disposal service. 8 | Check Point 4000 Appliances Getting Started Guide...
Attaching the Ear Mount Brackets to the Appliance ........22 Attaching the Rail Plates ................23 Attaching the Appliance Rails to the Appliance ..........24 Installing the Appliance in the Rack ...............26 Configuring Check Point 4000 Appliances ............27 Powering On.......................27 Available Software Images .................28 Initial Configuration .....................28 Using the First Time Configuration Wizard on Gaia ..........29...
Page 10
Check Point 4000 Appliances Hardware ............. 39 Front Panel Components ..................39 Check Point 4200 Front Panel ............... 39 Check Point 4400 and 4600 Front Panel ............40 Check Point 4800 Front Panel ............... 41 Using the LCD Panel ..................42 Expansion Line Cards ..................
Terminology Welcome Thank you for choosing Check Point 4000 Appliances. We hope that you will be satisfied with this system and our support services. Check Point products provide your business with the most up to date and secure solutions available today.
A brief overview of essential Check Point 4000 Appliances concepts and features A step by step guide to getting Check Point 4000 Appliances up and running Note - Screenshots in this guide may apply only to the highest model to which this guide applies.
Locally Managed Deployment: When all Check Point components responsible for both the management and enforcement of the security policy (the Security Management Server and the gateway) are installed on the same machine.
Important - Two people are required to install the appliance in a rack in order to prevent any possible damage. 4800 Appliances Use sliding rails to mount 4800 Appliances in a rack. Sliding Rails Hardware Check Point 4000 Appliances Getting Started Guide | 15...
The appliance rail for the right-side of the appliance is marked RH. The appliance rail for the left-side of the appliance is marked LH. Item Description End of appliance rail with round hole. 16 | Check Point 4000 Appliances Getting Started Guide...
2. Use three large round-head screws to attach the round-hole rack plate to the rack. Make sure that you use the same rack number for all the round-hole rack plates. 3. Do steps 1 - 2 again for the other round-hole rack plates. Check Point 4000 Appliances Getting Started Guide | 17...
Make sure that the sliding rail faces the inside of the rack. To detach the rack rail from the rack, use your thumbs to press the inner clips and move the rack rail away from the rack. 18 | Check Point 4000 Appliances Getting Started Guide...
Page 19
6. From the front of the rack, do these steps. a) Use a round-head screw to secure the rack rail to the rack. b) Slide the yellow locking piece toward the front of the rack. Check Point 4000 Appliances Getting Started Guide | 19...
To remove the appliance from the rack: 1. Move the appliance away from the rack as far as possible. 2. On the appliance rail, push the release lever and move the appliance away from the rack rail. 20 | Check Point 4000 Appliances Getting Started Guide...
Attaches to the appliance rails. Both plates are identical. Appliance rail screws Secures the rail plates to the appliance rails and the rails to the appliance. These screw heads are larger (8 mm). Check Point 4000 Appliances Getting Started Guide | 21...
To attach the ear mount brackets to the appliance: 1. Attach the appliance ear bracket to one side of the appliance using three ear mount screws. 2. Do step 1 again for the other side of the appliance. 22 | Check Point 4000 Appliances Getting Started Guide...
Rail plate Note - The appliance rail screws have 8 mm heads. To attach the rail plates: 1. Attach a rail plate to an appliance rail using two appliance rail screws. Check Point 4000 Appliances Getting Started Guide | 23...
Attach the appliance rails to the sides of the appliance. Align the rail plates to connect the appliance rails to the rear of the rack. Note - The appliance rail screws have 8 mm heads. 24 | Check Point 4000 Appliances Getting Started Guide...
Page 25
1. Set the appliance rail on the side of the appliance. The ridges on the appliance rails point to the appliance. 2. Attach the appliance rails to the appliance using three appliance rail screws. 3. Do steps 1 and 2 again for the other side of the appliance. Check Point 4000 Appliances Getting Started Guide | 25...
1. Attach the ear mount brackets to the front of the rack. 2. Attach the rail plates to the rear of the rack. 3. Confirm that the appliance is stable and secure in the rack. 26 | Check Point 4000 Appliances Getting Started Guide...
1. Connect the cables and power on the appliance. 2. Use the First Time Configuration Wizard to configure the appliance. 3. Add the Check Point 4000 Appliances object in SmartDashboard and install a policy. Powering On To power on Check Point 4000 Appliances: 1.
The appliance is ready for use when the model number is displayed. Available Software Images Check Point 4000 Appliances comes with multiple software images. Select the software image that you want to use. Reverting to a software image takes a few minutes. To follow the progress and see when the appliance is ready, connect to the appliance using a serial console.
WebUI menu. The WebUI menu can be accessed by navigating to https://<appliance_ip_address>. 6. The First Time Configuration Wizard runs. Welcome The Welcome page summarizes the steps of the First Time Configuration Wizard. Check Point 4000 Appliances Getting Started Guide | 29...
Set the host name, domain name, and DNS servers for IPv4 addresses. The host name must start with a letter and cannot be named com1, com2..com9. You can use the Gaia WebUI to configure IPv6 DNS servers. 30 | Check Point 4000 Appliances Getting Started Guide...
Use these options to configure an appliance that is a cluster member or in a High Availability deployment. Unit is part of a cluster - the options are: ClusterXL - For more about ClusterXL configurations, see the applicable version of the ClusterXL Administration Guide. Check Point 4000 Appliances Getting Started Guide | 31...
Define the name and password of an administrator that can connect to the Security Management server using SmartConsole clients. Security Management GUI Clients Note - You see this page when the appliance is a Security Management. 32 | Check Point 4000 Appliances Getting Started Guide...
Click Finish to complete the First Time Configuration Wizard and configure the appliance. You can log in to the WebUI after some minutes. Note - We recommend that you back up the system configuration. You can use the Gaia add backup command. Check Point 4000 Appliances Getting Started Guide | 33...
In the Password recovery login token section, download a Login Token to use if you forget the password. We recommend that you save the password recovery login token file in a safe storage. 34 | Check Point 4000 Appliances Getting Started Guide...
Set the Host, Domain and DNS Servers in the Host, Domain Settings, and DNS Servers page. The host name must start with a letter and cannot be named com1, com2..com9. In the DNS section, set the DNS servers for the appliance. Check Point 4000 Appliances Getting Started Guide | 35...
Locally Managed Deployment This section describes how to configure the appliance for locally managed deployment. Check Point Cluster Configure the cluster type. If you select This appliance is part of a Check Point 4000 Appliances Cluster, the options are: ...
Configuring Check Point 4000 Appliances Download SmartConsole Applications Configuring a security policy for a Locally Managed Check Point 4000 Appliances (configured in the Management Type page) requires you to install the SmartConsole applications. In the Download SmartConsole Applications window, you can download SmartConsole and install it on Windows machines.
Configuring Check Point 4000 Appliances Creating the Network Object Configure the Check Point 4000 Appliances as a gateway object in the Security Management Server database. To create the network object in SmartDashboard: 1. Launch SmartDashboard. 2. Configure a new gateway object for the appliance.
This section describes the features and components located on the appliance front panel. Check Point 4200 Front Panel Item Description Expansion line card slot Built in Ethernet ports (ETH1 - ETH3) Management configuration port - Ethernet connection to a remote management workstation Check Point 4000 Appliances Getting Started Guide | 39...
Management configuration port - Ethernet connection to a remote management workstation USB ports Console port - A serial connection to the appliance using a terminal emulation program such as HyperTerminal or PuTTY Power indicator LED LCD display screen Keypad 40 | Check Point 4000 Appliances Getting Started Guide...
Keypad Lights Out Management The Check Point Lights Out Management (LOM) is an optional card that you can use with Check Point appliances. You can remotely control Check Point appliances using a dedicated management channel. Lights Out Management can also work when the appliance is turned off or not responding.
Set the management interface default gateway. System Reboot Reboot the appliance. LCD Panel Keys Press Enter the main menu Navigate the menu Change a number Select a menu option Go back to previous menu 42 | Check Point 4000 Appliances Getting Started Guide...
Page 43
If DHCP was enabled - DHCP is disabled on the management interface. Configuring Management IP Addresses You can use the LCD panel to configure these management interface IP addresses for the appliance: Check Point 4000 Appliances Getting Started Guide | 43...
Expansion Line Cards There are different expansion line cards that you can use with the appliance. For more about the expansion line cards, see the Check Point 4000 Appliances home page (http://supportcontent.checkpoint.com/solutions?id=sk68681). Rear Panel Components This section describes components located on the rear panel of the appliance.
The main power switch controls power to the entire unit. Redundant Power Supply Units (Check Point 4800) The Check Point 4800 has an optional redundant power supply unit. Located at the left rear of the appliance, two hot-swappable power supply units give built-in power redundancy. Each power supply connects to an electrical outlet.
3. In the WebUI, click Maintenance > Factory Defaults. The Factory Defaults window opens. 4. Select the image version that you are restoring. 5. Click Apply. SecurePlatform Use the SecurePlatform WebUI to restore the default factory settings. Check Point 4000 Appliances Getting Started Guide | 47...
5. From the Flow control list, select None. 6. Connect to the appliance. 7. Turn on the appliance. 8. The appliance initializes and status messages are shown in the terminal emulation program. 48 | Check Point 4000 Appliances Getting Started Guide...
2. When the countdown begins, press any of the arrow keys. The Boot menu appears. 3. Using the arrow buttons, scroll to the relevant default factory image. 4. Press 5. Confirm the reset by pressing Check Point 4000 Appliances Getting Started Guide | 49...
Page 50
While the appliance is restored to the default image, this message is continuously displayed: Reverting image don't turn off. After the appliance is restored to its default factory configuration, the appliance reboots and the initializing message appears. 50 | Check Point 4000 Appliances Getting Started Guide...
Check Point software. Check Point documentation is available on the Check Point Support Center (http://supportcenter.checkpoint.com). Be sure to also use the Online Help when you are working with the Check Point SmartConsole clients. Check Point 4000 Appliances Getting Started Guide...
VCCI V-3, Class A Information Technology Equipment - Radio Disturbance Characteristics AS/NZS CISPR22, Class A Information Technology Equipment - Radio Disturbance Characteristics ICES-003, Class A Information Technology Equipment - Radio Disturbance Characteristics Check Point 4000 Appliances Getting Started Guide | 53...
Page 54
Safety of Information Technology Equipment The product herewith complies with the requirements of the EU Directive 2006/95/EC and the EMC Directive 2004/108/EC Date and Place of issue: July, 2011, Tel Aviv, Israel 54 | Check Point 4000 Appliances Getting Started Guide...
Page 55
Caution Any changes or modifications not expressly approved by the grantee of this device could void the user’s authority to operate the equipment. Check Point 4000 Appliances Getting Started Guide | 55...
Need help?
Do you have a question about the 4000 and is the answer not in the manual?
Questions and answers