12
213456-S
NOTE: To support the Check Point applications on the Nortel Switched Firewall
5100 Series hardware systems, you must configure NSF 2.3.3 and Check Point
software.
Upgrading to NSF 2.3.3 software
To upgrade the software on your Nortel Switched Firewall 5100 Series, you must perform
the following tasks:
1. Backup of the Nortel Switched Firewall 5100 Series configuration.
You can use the backup to restore the configuration (clone) in case the upgrade fails. To
back up, use the following CLI commands:
/cfg/sys/backup if you are running NSF 2.2.7.0
/maint/backup if you are running NSF 2.3.1
For more information on backing up your configuration, see the Nortel Switched Firewall
5100 Series 2.3.3 User’s Guide and Command Reference (213455-L).
2. Upgrade the Check Point software from R55 to NGX R60 on the Management station.
3. Specify the version of the Firewall Object in the SmartDashboard GUI as R55—NG with
Application Intelligence.
4. Establish Secure Internal Communications (SIC).
5. Push the policy to the Firewall.
6. From the Management Server, change the version of the Check Point Gateway object from
R55 to NGX R60.
7. Download the new software upgrade package or install image.
Obtain the NSF5100_2.3.3.0_R60.pkg file and copy it to an FTP/TFTP/SCP/SFTP server
or to a CD-ROM. TIP: The server must allow anonymous login.
NOTE: Ensure that your FTP/TFTP/SCP/SFTP server is on a secure, trusted network.
One way to ensure FTP security is to implement your server on the SmartCenter
Server workstation.
8. Upgrade the Firewalls with the NSF5100_2.3.3.0_R60.pkg image.
See “Loading the new software’’ on page 13 and “Activating the software’’ on page 15.