SmartProvisioning
Check Point 1400 Appliances Centrally Managed Administration Guide R77.20.85 | 34
SmartLSM profile after successful firmware installation and only if the new firmware version
is different from the version you have now.
7.
If necessary, click
Exceptions
to select a new SmartLSM profile for Security Gateways with a
specified SmartLSM profile.
•
Add/Edit -
Click
Add
or
Edit
to open the
Exceptions
window to define/change an exception
for a SmartLSM profile replacement. SmartLSM profiles is not shown unless they are from
a version higher than R71.
Current SmartLSM Profile -
Select a SmartLSM profile from the list. A SmartLSM
profile is shown only if the version is not R71 and not the selected firmware version.
Make sure you installed a policy for the SmartLSM profile in SmartDashboard.
SmartLSM Profile after installation -
Select a SmartLSM profile that replaces the
SmartLSM profile after the firmware image installation. A SmartLSM profile is shown
only if the version is the same as the selected firmware version. Make sure you
installed a policy for the SmartLSM profile in SmartDashboard.
•
Remove -
Click to remove a SmartLSM profile
exception
setting.
8.
Select an option to install the firmware:
a)
Immediately -
Downloads the firmware immediately but installs it in the next
synchronization with a Security Gateway that references this profile.
b)
According to these time ranges
- Select to use the Security Gateway time or local time.
Add/Edit
- Click Add or Edit to open the Time Range window to define/change the
weekdays and times for downloading and installing the firmware image. Select the days
and times and click
OK
.
Remove
- Select a range from the list and click
Remove
to delete a time range.
Download image immediately
- Click this option to download the firmware image
immediately but install the image during one of the set time ranges.
9.
Click
Show profile settings
- To see the settings of the Provisioning Profile that this gateway
references.
10.
Click
OK
.
Configuring RADIUS
You can configure the RADIUS server (Remote Authentication Dial In User Service) that provides
authentication, authorization, and accounting for the Check Point Appliance gateways. When you
configure RADIUS in the Provisioning Profile, you can configure it for all gateways that reference
this profile. The RADIUS server must already be defined as a SmartDashboard object.
You can configure your appliance to contact more than one RADIUS server. If the first server in the
list is unreachable, the next RADIUS server in the list is contacted for authentication.
To configure RADIUS settings on a Provisioning Profile:
1.
Open the
Security Gateway Profile
window, and select the
RADIUS
tab.
2.
Select
Manage RADIUS settings centrally from this application
.
3.
Click
Advanced
.
The Profile Settings window opens.
Содержание L-71
Страница 122: ......