HTTPS (SSL) user authentication in Check Point FireWall-1 NG
From the performance point of view it is recommended to handle HTTPS traffic with different HTTP Security Server (e.g. the process listening on 443 port). However, it is possible to handle both HTTPS and HTTP traffic with the same HTTP Security Server. Read the Article
Intrusion Detection for Check Point FireWall-1
Firewalls do a good job of keeping the bad guys out. But wouldn't it be nice to know when the bad guys are knocking on your door? This article covers just that, how to determine when the bad guys are probing your network. We discuss how you can use the IDS script alert.sh to track when you are being probed, and by whom. If you would like to see actual intrusion detection results, click here. Read the Article
Understanding the FireWall-1 State Table
The intent of this paper is to help you understand how Firewall-1's stateful inspection works. This table is how FW-1 maintains who is doing what and what connections are allowed based on the rule base. To help you better understand your own FW-1 stateful inspection table and validate my data, I have posted all the source code I used at the bottom of this page. Read the Article
CheckPoint Secure Platform (SPLAT)
With SecurePlatform, in less than 5 minutes a security administrator can turn an off-the-shelf Intel or AMD-based server into a high-performance VPN-1/FireWall-1 gateway. Read the Article