Re: Checkpoint NG on AIX 5

From: Alberto Cozer (acozer@FTI.COM.BR)
Date: Mon Mar 31 2003 - 13:05:14 EST


Abdelkarim,

I had problems on Checkpoint 2000 on AIX 4.3.3 in a Stonebeat Fullcluster.
Each cluster member, after a few days online, generated a dump (888 102
700 0c0). It took several months for the problem to be solved by
Checkpoint and Stonesoft. It was a software bug in Stonebeat (memory
allocation error) that made Checkpoint and AIX hang together.

I also had a few other minor problems with Checkpoint on AIX that I can't
remember now.

The problem is not the plataform itself, but the lack of support from
Checkpoint. They do support the product for AIX but you won't have Cluster
XL and a few other features for example. The release of patches for the
AIX version of Firewall-1 takes more time than for Solaris or
Secureplataform.

AIX is an incredible and strong plataform, but if you don't have support
commitment from Checkpoint for this plataform you cannot trust it for
mission-critical environments.

After a lot of bad (and good) experience with customers my company decided
not to recommend AIX as a firewall plataform unless you're running IBM
Firewall.

Best regards,

Alberto.

Alberto Cozer
Diretor de Security Outsource, Future Technologies Segurança Digital
IBM Certified AIX System Specialist
Checkpoint Certified Security Expert, CCSE NG
acozer@fti.com.br
http://www.fti.com.br

abdelkarim.daddi-hammou@vmd.desjardins.com
31/03/2003 14:49
 
        To: acozer@FTI.COM.BR
        cc:
        Subject: Re: Checkpoint NG on AIX 5

Hi Alberto,

I need more details version of AIX ( 4 or 5) ?
Checkpoint version (4.1 or NG) ?
Kind of problem (performance, memory, security vulnerability, lack of
support from Checkpoint ...)

Regards

Abdelkarim Daddi-Hammou
Administrateur de systèmes UNIX /WebSphere -
UNIX /WebSphere Systems Administrator
Valeurs Mobilières Desjardins - Desjardins Securities
tél. (514) 281-2244 x 7604
adh@vmd.desjardins.com

Alberto Cozer <acozer@FTI.COM.BR>
Sent by: IBM AIX Discussion List <aix-l@Princeton.EDU>
31/03/2003 14:19
Please respond to IBM AIX Discussion List
        
        To: aix-l@Princeton.EDU
        cc:
        Subject: Re: Checkpoint NG on AIX 5

I have experience with Checkpoint under AIX and I do not recommend this
solution for mission-critical environments. :-) You'd rather using
Secureplataform instead or Solaris.

Alberto.

Alberto Cozer
Diretor de Security Outsource, Future Technologies Segurança Digital
IBM Certified AIX System Specialist
Checkpoint Certified Security Expert, CCSE NG
acozer@fti.com.br
http://www.fti.com.br
 

abdelkarim.daddi-hammou@VMD.DESJARDINS.COM
Sent by: IBM AIX Discussion List <aix-l@Princeton.EDU>

31/03/2003 12:34
Please respond to IBM AIX Discussion List
 
        To: aix-l@Princeton.EDU
        cc:
        Subject: Checkpoint NG on AIX 5

Hi all,

Any one using checkpoint firewall NG on AIX 5.1, any recommandation,
advice ?

Regards

Abdelkarim Daddi-Hammou
Administrateur de systèmes UNIX /WebSphere -
UNIX /WebSphere Systems Administrator
Valeurs Mobilières Desjardins - Desjardins Securities
tél. (514) 281-2244 x 7604
adh@vmd.desjardins.com

*********************************************************
Future Technologies Seguranca Digital

Esta mensagem e de responsabilidade de seu autor.
Seu conteudo nao reflete necessariamente a opiniao da
empresa.
*********************************************************
 



This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 22:16:42 EDT