Checkpoint Secure Platform and QFE

Anyone out there ever attempted to use Sun Quad Fast Ethernet (QFE)
cards in Checkpoint Secure Platform boxen? If so I'd like to compare notes.

The Secure Platform Linux distribution does include a driver (sunhme),
and the cards are detected by the installer, but attempting to use the
interfaces yields anomalous behavior to say the least.

I'm hoping I can save a few $K by re-using QFE cards instead of buying
Intel quad cards (known to work). I suspect the QFE driver is b0rked,
but QFEs don't have physical MAC addresses and maybe I'm not passing MAC
addresses to the driver early enough in the boot process.

TIA

Triffid
Triffid [ Do, 17 November 2005 03:51 ] [ ID #1062605 ]

Re: Checkpoint Secure Platform and QFE

Triffid wrote:

> Anyone out there ever attempted to use Sun Quad Fast Ethernet (QFE)
> cards in Checkpoint Secure Platform boxen? If so I'd like to compare notes.
>
> The Secure Platform Linux distribution does include a driver (sunhme),
> and the cards are detected by the installer, but attempting to use the
> interfaces yields anomalous behavior to say the least.
>
> I'm hoping I can save a few $K by re-using QFE cards instead of buying
> Intel quad cards (known to work). I suspect the QFE driver is b0rked,
> but QFEs don't have physical MAC addresses and maybe I'm not passing MAC
> addresses to the driver early enough in the boot process.
>
> TIA
>
> Triffid

Never mind, it's the driver.

I swapped in a smarter switch, one that could tell me where the MAC
addresses are. It saw the MAC I assigned to eth1 on the port connected
to eth5. Juggled some cables, found I can pass traffic on eth5 - but the
source IP belongs to eth1. eth1 is the first port on the first QFE card,
eth5 is the first port on the second QFE card.

It would seem the driver can only handle one QFE per box - it appears to
be behaving much more reasonably since I removed the second QFE.

Triffid
Triffid [ Fr, 18 November 2005 04:01 ] [ ID #1064213 ]

Re: Checkpoint Secure Platform and QFE

In article <3fSef.3014$w84.535674 [at] news20.bellglobal.com>,
Triffid <triffid [at] nebula.net> wrote:
>Anyone out there ever attempted to use Sun Quad Fast Ethernet (QFE)
>cards in Checkpoint Secure Platform boxen? If so I'd like to compare notes.

i had qfe-cards in use, but on nativ solari-os, not Secure Platform.
no problem with it.

>The Secure Platform Linux distribution does include a driver (sunhme),
>and the cards are detected by the installer, but attempting to use the
>interfaces yields anomalous behavior to say the least.

imho, qfe is not the same as hme.

best regards
hans

--
mayer42 [ Mo, 21 November 2005 21:18 ] [ ID #1067998 ]

Re: Checkpoint Secure Platform and QFE

hans m42 wrote:

> In article <3fSef.3014$w84.535674 [at] news20.bellglobal.com>,
> Triffid <triffid [at] nebula.net> wrote:
>
>>Anyone out there ever attempted to use Sun Quad Fast Ethernet (QFE)
>>cards in Checkpoint Secure Platform boxen? If so I'd like to compare notes.
>
>
> i had qfe-cards in use, but on nativ solari-os, not Secure Platform.
> no problem with it.

Yes, QFEs play very nicely in Sun boxes running Sun drivers.

>>The Secure Platform Linux distribution does include a driver (sunhme),
>>and the cards are detected by the installer, but attempting to use the
>>interfaces yields anomalous behavior to say the least.
>
>
> imho, qfe is not the same as hme.

Close enough that the Linux driver claims to support both, but it gets
very confused when there's more than one QFE - see my followup.

Thanks for your input.

Triffid
Triffid [ Di, 22 November 2005 02:21 ] [ ID #1069571 ]
Miscellaneous » comp.security.firewalls » Checkpoint Secure Platform and QFE

Vorheriges Thema: sygate or ZoneAlarm
Nächstes Thema: IT Security Awareness Seminar- Nov 30. 2006