SurfControl Web Filter for Check Point FireWall-1 Version 5.0.1.50    23 September 2005

Welcome

Installation

License Information

Known Issues

Welcome

SurfControl Web Filter for Check Point offers the most advanced filtering technology available for the corporate environment, easing the challenge of managing Internet usage in the workplace. SurfControl Web Filter offers a complete set of tools for monitoring, filtering and reporting on Internet Access and is fully integrated with Check Point FireWall-1.

Installation

The SurfControl Web Filter for Check Point FireWall-1 installation includes the following components:

 

 

When you install Web Filter for Check Point FireWall-1, you install all administrative components, including the Monitor and the Rules Administrator. At the end of the installation, you may choose to install SurfControl Report Central locally or on another server.

 

During the installation, you may also choose to install MSDE, which you can install locally or in another location. If you have a fully licensed version of SQL Server, you may choose to not install MSDE and use your existing instance of SQL Server.

 

For remote access to the Web Filter software, install the Web Filter remote administrator on administrators’ workstations.  

License Information

SurfControl Web Filter runs as an evaluation version for 30 days. During the evaluation period, Web Filter automatically downloads daily updates to the Internet Threat Database. You can reschedule the time of the updates in the Web Filter Scheduler.

As part of your evaluation subscription, you also have full use of the Virtual Control Agent (VCA), which uses artificial intelligence to dynamically categorize web sites that are not in the Internet Threat Database.

Known Issues

Web Filter for Check Point FireWall-1 includes the following known issues.

 

Issue Number

Description

15956

Incorrect protocols shown in the Monitor and the Rules Administrator.

After installing SurfControl Web Filter for the first time, you may see ftp and https as monitored protocols in the Monitor and the Rules Administrator. SurfControl Web Filter for Check Point FireWall-1 only monitors the http protocol. To fix this issue, delete these protocols from both the Monitor and Rules Administrator.

16540

Redirect URL object does not check for invalid IP addresses.

The Redirect URL object in the Rules Administrator cannot check for an invalid IP address. It will return "The page cannot be displayed" if an incorrect URL is entered in the Redirect URL object.

-

Check Point NGX exposes all APIs

A bug in Check Point NGX causes all the APIs to be exposed in the Status Viewer regardless of which APIs are selected in the OPSEC application (for example CVP status information is displayed in SmartView Monitor even though only AMON and UFP are selected on the OPSEC Application).  This is just a display issue and does not affect the AMON functionality.  Please see SurfControl KB article #1715 for information on a workaround.

 

 

*** END OF FILE ***