Hi.
Some time ago our Checkpoint firewall stoped working properly. The actual firewall is working according to policy. However we can't get GUI client accces using dashboard. Chcekpoint version is FP2 which is not supported anymore. We are hosting few major customer under this firewall and I can't make any changes to policy, so I decided to build another firewall based on iptables + FW Builder.
Now. I want to move one machine by one to the new FW solution and recreate the rules. The idea is to stick this new firewall on front of the other and make it transparent so it won't interuput the work of the old FW.
What is the best way to move all the rules from one firewall to another without major interuption of service or how can I put to live (if it is possible at all) my idea of one firewall on front of the other?
Thanks
Start Free Trial