
Starting using the application
41
•
the port number on the Security Server that will be used to
receive requests for connection from Check Point
TM
Firewall-1
®
.
By default, these are port 18181 for CVP protocol and port
18193 for AMON protocol.
•
the type of authentication used for connection. Select the
required value from the drop-down list:
o
none
- non-secure ("clear") connection;
o
sslca
– a protocol based on cryptographic certificates is
used, the data will be encrypted.
o
sslca clear
– a protocol based on cryptographic certificates
is used, the data will not be encrypted.
o
auth_opsec – an internal Check PointTM protocol is used,
the data will not be encrypted;
o
ssl_opsec – a SSL-based protocol is used, the data will be
encrypted.
o
ssl_clear_opsec – a SSL-based protocol is used, the data
will not be encrypted.
If the list does not contain the required value, enter it manually.
If protocols that require keys for encryption are used for au-
thentication, the key files must be located in the application
data folder in the OPSEC
TM
service folder.
•
SIC-Security server name
, specified during the registration of
the Security Server with Check Point
TM
Firewall-1
®
(see section
4.1 on page 23).
You can view the SIC name of the Security Server using the
Check Point
TM
Firewall-1
®
Management Console. It will be
displayed in the
OPSEC
TM
Application Properties
window, in
the
DN
field (section
Secure Internal Communication)
.
If a non-secure connection is used, the
SIC-Security Server
name
does not have to be specified.
For
ELA
protocol specify the following:
•
the number of the port that will be used by Check Point
TM
Firewall-1
®
to receive information from Kaspersky Anti-Virus (by
default it is port 18187);
•
the type of authentication used for connection (see above);