Tip of the moment: Place your Check Point management servers on a segment dedicated to them and to
any other security devices with management components. Protect this segment
from hostile networks (yes, your users' LAN should be considered a hostile
network).


