Technical data

Check Point VSX Administration Guide NGX R67 | 166
Chapter 11
Deploying VSX
In This Chapter
Introduction 166
Internal Network Deployment Strategies 166
Organizational Deployment Strategies 172
Migrating from an Open Server to a VSX-1 Appliance 177
Introduction
This chapter presents deployment concepts and strategies for exploiting VSX virtualization and its unique
feature set. This presentation is divided into two sections as follows:
Internal Network Protection Strategies: Presents concepts and examples for protecting internal
network resources, including a comparison between physical deployments and VSX virtualization.
Organizational Deployment Strategies: Presents VSX deployment strategies and features for several
different types of large organizations.
Internal Network Deployment Strategies
Security Gateway Deployment on a Physical Network
In large physical network deployments, multiple Check Point security products, such as Security Gateways
or UTM-1 Edge appliances, are deployed to protect various network segments.
Figure 11-31 Separate physical gateways protecting each network
Each Security Gateway physically connects to its own internal protected network as well as to a router for
access to other internal networks and the Internet.