Note - This procedure applies to both Check Point Appliances (except 1100, 1200R, and 1400 models) and Open Servers.
Workflow:
Step 1 of 3: Install the VSX Gateway
Step |
Description |
---|---|
1 |
Install the Gaia Operating System: |
2 |
|
3 |
During the First Time Configuration Wizard, you must configure these settings:
|
Step 2 of 3: Configure the VSX Gateway object in SmartConsole
Step |
Description |
---|---|
1 |
Connect with SmartConsole to the Security Management Server or Main Domain Management Server that should manage this VSX Gateway. |
2 |
From the left navigation panel, click Gateways & Servers. |
3 |
Create a new VSX Gateway object in one of these ways:
The VSX Gateway Wizard opens. |
4 |
On the VSX Gateway General Properties (Specify the object's basic settings) page:
|
5 |
On the Virtual Systems Creation Templates (Select the Creation Template most suitable for your VSX deployment) page:
|
6A |
On the VSX Gateway General Properties (Secure Internal Communication) page:
|
6B |
If the Trust State field does not show Trust established, perform these steps:
|
7 |
On the VSX Gateway Interfaces (Physical Interfaces Usage) page:
|
8 |
On the Virtual Network Device Configuration (Specify the object's basic settings) page:
|
9 |
On the VSX Gateway Management (Specify the management access rules) page:
Important - These access rules apply only to the VSX Gateway (context of VS0), which is not intended to pass any "production" traffic. |
10 |
On the VSX Gateway Creation Finalization page:
|
11 |
Examine the VSX configuration:
|
12 |
Open the VSX Gateway object. |
13 |
On the General Properties page, click the Network Security tab. |
14 |
Enable the desired Software Blades for the VSX Gateway object itself (context of VS0). Refer to:
|
15 |
Click OK to push the updated VSX Configuration. Click View Report for more information. |
16 |
Examine the VSX configuration:
|
17 |
Install policy on the VSX Gateway object:
|
18 |
Examine the VSX configuration:
|
Step 3 of 3: Configure the Virtual Devices and their Security Policies in SmartConsole
Step |
Description |
---|---|
1 |
Connect with SmartConsole to the Security Management Server, or each Target Domain Management Server that should manage each Virtual Device. |
2 |
Configure the desired Virtual Devices on this VSX Gateway. |
3 |
Configure the applicable Security Policies for these Virtual Devices. |
4 |
Install the configured Security Policies on these Virtual Devices. |
5 |
Examine the VSX configuration:
|
For more information, see the: