On Sun, 5 Nov 2006, Brandon Liew wrote:
> Both firewall had been defined as a cluster and i already map both of them
> into a encryption domain manually.
> i had manually check it each firewall that the enc domain is the same
This sounds as if you have 2 cluster objects. Which would be utterly
wrong. You should create a normal gateway object for each IP-390 and then
define a new cluster in 3rd party mode and make both IP-390 members of
that cluster object.
Say the first IP-390 is called bastion-A (192.168.1.1) and the second one
is called bastion-b (192.168.1.2). Then you create a cluster named bastion
(192.168.1.3) and add bastion-a and bastion-b to it as members.
Hugo.
--
[EMAIL PROTECTED] http://hvdkooij.xs4all.nl/
This message is using 100% recycled electrons.
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================