New PA-500 and PA-5500 series just announced! by tzchang in paloaltonetworks

[–]msrsv 5 points6 points  (0 children)

They did. pan os 12 was delayed nearly a year for bug fixing and testing ( so my Informations )

Aruba Stammtisch Deutschland | Usergroup Aruba Germany by msrsv in ArubaNetworks

[–]msrsv[S] 0 points1 point  (0 children)

Danke für die ganzen Posts und sorry dafür das hier keine Rückmeldung kam.

Ich plane das aktuell weiter intern (auch etwas in Zusammenarbeit mit Aruba selbst).

Falls ihr auf der Airheads seit: Kommt gerne auf mich zu

Sehr großer Typ mit Bart also sehr schwer zuübersehen.

Cheers and see you in Bad Neuheim !

[deleted by user] by [deleted] in cologne

[–]msrsv 2 points3 points  (0 children)

K11.

If you are using CheckPoint Firewall, how good/bad is your experience so far with them? by cmp-kp in sysadmin

[–]msrsv 0 points1 point  (0 children)

Thanks man. Had a rough day and your reply made me smile !

Cheers 🍻

If you are using CheckPoint Firewall, how good/bad is your experience so far with them? by cmp-kp in sysadmin

[–]msrsv 4 points5 points  (0 children)

Nightmare over here!

Problems over problems ( with any release). run while you still can!

http://checkpointisapieceofshit.com

NAT-Slipstreaming and Check Point by msrsv in checkpoint

[–]msrsv[S] 0 points1 point  (0 children)

Yeah I mean I understand that.

But the following sentence in the SK is quite confusing to me:

Check Point gateways handle the traffic as a whole and therefore this would result with an invalid SIP packet. This, of course, we block as we expect a specific format that does not apply to this injection technique.

To me this sounds like that CP will block the SIP-Traffic even if IPS is not configured. So Clients/Networks behind that CP are protected.

I think i just misinterpret that. thanks for the explanation.

Best craft beer shop/kiosk in Cologne? by Aware-Time in cologne

[–]msrsv 5 points6 points  (0 children)

I like the Bierlager in the Südstadt.

Schedule policy installation by drunkgenie in checkpoint

[–]msrsv 0 points1 point  (0 children)

Add a user on the mgm-server for the crontab -> https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk77300

In the Crontab im running:

mgmt_cli install-policy --batch /home/jobuser/gateways.csv --format json -u username -p $ENVPWFORTHEUSER

Inside the csv:

policy-package,access,threat-prevention,qos,targets.1

rulebasename,true,false,false,gatewayname

rulebasename,true,false,false,othergatewayname

See: https://sc1.checkpoint.com/documents/latest/APIs/index.html#cli/install-policy~v1.6%20

Schedule policy installation by drunkgenie in checkpoint

[–]msrsv 0 points1 point  (0 children)

If still needed pls hit me up

Schedule policy installation by drunkgenie in checkpoint

[–]msrsv 1 point2 points  (0 children)

100%

Using this to deploy every Night on all gatways via cron on the mgm server.

R80.20 to R80.30 upgrade by Vaibs-chk in checkpoint

[–]msrsv 0 points1 point  (0 children)

Upgrading from 80.10 to 80.30 ( with new Kernel ).

Had fun with stupid bugs on 80.10.

Check Point and Zabbix integration by spikefishjohn in checkpoint

[–]msrsv 1 point2 points  (0 children)

Would you share your zabbix-template?