
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
Can't connect to LEA Server
Hi All,
I'm having trouble configuring Checkpoint OPSEC Smart Connector. Kindly see screenshot.
Checkpoint mgmt server is reachable. The lea port is reachable as well via telnet. The configuration on the side of the checkpoint are as follows,
lea server 18184
lea server auth port 0
However, the LEA client can't connect to the LEA server. Please help determine what are causes of this error & how to resolve this.
Thanks,
Nathan Pitero

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
Hello,
1) I will assume that you are trying to use Clear Connection type to Checkpoint.
2) In CheckPoing guide I can see following:
--------------------------
Edit the fwopsec.conf file to contain the following lines:
lea_server port 18184
lea_server auth_port 0
--------------------------
3) In your question I can see:
lea server 18184
lea server auth port 0
So be sure that in the "fwopsec.conf" you have this exactly as it is noted in the Guide and that you did "cpstop/cpstart".
4) Also you can "DEBUG" the connection to see if you can see something, in Guide topic is called "Executing lea_client Under OPSEC Debug Mode".
5) Side note is that this is 32 bit SmartConnector and they are going EoL 04/2018 and there is no 64 bit version of this SmartConnector as it uses Lea Client API libraries from CheckPoint that are only 32 bit. You should consider using CheckPoint Syslog SmartConnector. Also there are some issues on Windows platform that you may experience so I would suggest to try with RHEL/CentOS now when as you are doing it as there there are no such issues.
Regards,
Marijo

- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
Hi ,
Also , check the conenctivity from Lea Client(Connector Server) and make sure you are able to telnet on port 18184 to the Management Server .