Are these machines correctly configured for a ClusterXL deployment?
You are preparing computers for a new ClusterXL deployment. For your cluster, you plan to use
four machines with the following configurations:
Cluster Member 1: OS: SecurePlatform, NICs: QuadCard, memory: 256 MB, Security Gateway
version: VPN-1 NGX
Cluster Member 2: OS: SecurePlatform, NICs: four Intel 3Com, memory: 512 MB, Security
Gateway version: VPN-1 NGX
Cluster Member 3: OS: SecurePlatform, NICs: four other manufacturers, memory: 128 MB,
Security Gateway version: VPN-1 NGX
SmartCenter Pro Server: MS Windows Server 2003, NIC: Intel NIC (one), Security Gateway and
primary SmartCenter Server installed version: VPN-1 NGX
Are these machines correctly configured for a ClusterXL deployment?
How do you configure the VPN Community?
You set up a mesh VPN Community, so your internal networks can access your partner’s network,
and vice versa. Your Security Policy encrypts only FTP and HTTP traffic through a VPN tunnel. All
other traffic among your internal and partner networks is sent in clear text. How do you configure
the VPN Community?
How does a standby SmartCenter Server receive logs from all Security Gateways, when an active SmartCenter Serv
How does a standby SmartCenter Server receive logs from all Security Gateways, when an active
SmartCenter Server fails over?
Which routing mode in the VoIP Domain Gatekeeper do you select?
You want only RAS signals to pass through H.323 Gatekeeper and other H.323 protocols, passing
directly between end points. Which routing mode in the VoIP Domain Gatekeeper do you select?
Which component functions as the Internal Certificate Authority for VPN-1 NGX?
Which component functions as the Internal Certificate Authority for VPN-1 NGX?
Which VoIP Domain object type can you use?
You are configuring the VoIP Domain object for a Skinny Client Control Protocol (SCCP)
environment protected by VPN-1 NGX. Which VoIP Domain object type can you use?
What type of packet does a VPN-1 SecureClient send to its Policy Server, to report its Secure Configuration Ve
What type of packet does a VPN-1 SecureClient send to its Policy Server, to report its Secure
Configuration Verification status?
Which Security Servers can perform Content Security tasks, but CANNOT perform authentication tasks?
Which Security Servers can perform Content Security tasks, but CANNOT perform authentication
tasks?
How should you configure the VPN match rule?
You want VPN traffic to match packets from internal interfaces. You also want the traffic to exit the
Security Gateway, bound for all sitE. to-site VPN Communities, including Remote Access
Communities. How should you configure the VPN match rule?