Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Security-Basics
[Top] [All Lists]

Re: Checkpoint Firewall Configuration

Subject: Re: Checkpoint Firewall Configuration
Date: Tue, 29 Jan 2008 16:39:48 +0000
Hi,
I guess that there are at least two ways to do that:

- use the database revision control from the GUI. Bear in mind that
this need to be maintained. Then you can simply work out main
difference between one revision
 and another

- use a script or anyway a batch procedure to check all the relevant
files under $FWDIR/conf just to start. Here are stored all the
critical files starting from global
 objects, users databases ad firewall policies. I'm quite sure there
are some tools out in the wild that can help you out on this.

Take into account that, depending on the way you deployed the firewall
architecture(stand alone or distributed), you might need to make same
checks on both management and firewall node side

Cheers,
Andrea


On 29 Jan 2008 06:04:25 -0000,  <global.infosec@gmail.com> wrote:
We are in the process of auditing our Checkpoint confifuration. We need to 
capture the configuration details of the Firewall. The objective is to 
identify if any changes have occured to the configuration at any point of 
time.


How do we capture the firewall configuration for Audit purpose?


Thanks.


<Prev in Thread] Current Thread [Next in Thread>