>If you have disabled the 'Accept VPN-1 & Firewall-1 Control Connections' in
>the Implied rules section of Global Properties, how can you re-enable
>communications between VPN-1/Firewall-1 daemons?

>Is there a command line option, a file that can be edited on the Management
>Server, or some other way of resolving this?

If you're on distributed machine, go to your Enforcement Point and run
# fw unload localhost
# fw ctl uninstall
# fw ctl install

And then go to your Management Server and create rule
fwadmin@any ---> mgtserver--->FW1_fgmt ---> Client Encryption

For gui-client want to connect to your Management Server, create this rule
gui-client ---> mgtserver-->cpmi-->Accept

And all your FW will running normally!



rgds,

Yusri Amsal
Project Engineer
Schlumberger Network Solutions
www.slb.com/sns
[EMAIL PROTECTED]

=================================================
To set vacation, Out Of Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to