Checkpoint CMD List
Checkpoint CMD List
cphaprob -a if
cphaprob syncstat
cphaprob list
cphastart/stop
cp_conf sic
cpconfig
cplic print
cprestart
cpstart
cpstop
cpstop -fwflag -proc
cpwd_admin list
cplic print
cpstat -f all polsrv
cpstat
fw tab-t sam_blocked_ips
fw tab -t connections -s
fw tab -t connections -f
fw tab -t fwx_alloc -f
fw tab -t peers_count -s
fw tab -t userc_users -s
fw checklic
fw ctl get int [global kernel parameter]
fw ctl arp
fw ctl install
fw ctl ip_forwarding
fw ctl pstat
fw ctl uninstall
fw exportlog .o
fw fetch
fw fetch localhost
fw hastat
fw lichosts
fw log -f
fw log -s -e
fw logswitch
fw lslogs
fw monitor
fw printlic -p
fw printlic
fw putkey
fw stat -l
fw stat -s
fw unloadlocal
fw ver -k
fwstart
fwstop
fwm lock_admin -v
fwm dbexport -f user.txt
fwm_start
fwm -p
fwm -a
fwm -r
PROVIDER 1
mdsenv [cma name]
mcd
mds_setup
mdsconfig
mdsstat
mdsstart_customer [cma name]
cma_migrate
cmamigrate_assist
VPN
vpn tu
vpn ipafile_check ipassignment.conf detail
dtps lic
cpstat -f all polsrv
vpn shell /tunnels/delete/IKE/peer/[peer ip]
DEBUGGING
fw ctl zdebug drop
Firewall Commands
fw ver
vpn macutil
fw stat
fw stat -long
cpstat os -f cpu -o 3
-o Polling interval (seconds) specifies the pace of the
results. Default is 0, meaning the results are shown only
once.
cpstat os
cpstat fw -f all
cpstat fw -f policy
fw tab -t connections -s
fw fetch
cplic print
fwha_mac_magic
Table 3.
Sniffer on the Firewall
fw monitor -m iIoO -e accept (src=IP_S and dst=_IP_D)
or (src=IP_D and dst=IP_S);
Table 4.
Remote Access and S2S VPN commands
vpn tu
fw tab -t inbound_SPI -f
fw tab -t om_assigned_ips -f
fw tab -t marcipan_ippool_users -f
fw tab -t marcipan_ippool_users -x
cphaprob -a if
cphaprob syncstat
fw hastat
Table 6.
General commands
ps -aux
kill -9 prozessid
dmesg
vmstat 5 5
ifconfig bge1:xx down
fsck
Table 7.
Administrate CMA/MDS processes
mdsstop_customer
mdsstart_customer
mdsstat
mdsstop
mdsstart
mdsenv CMANAME
echo $FWDIR
cpstat mg
fwm -a
fwm dbload
watch -d cpstat os -f cpu
Table 8.
Searching for objects
cd $FWDIR/conf
grep subdomain objects.C | grep -v Name | awk {print
$2} | grep ^( | sed -e s/(//
cd $FWDIR/conf
grep subdomain /opt/CPmds-R65/customers/*/CPsuite-
R65/fw1/conf/objects.C | grep -v Name | awk {print $1,
$3} | grep ( | sed -e s/(//
Table 9.
Archive commands
tar tfv [ARCHIVNAME].tar
tar cfvz [ARCHIVNAME].tar.gz [VERZEICHNIS1]
[DATEI1]
SCP command
scp root@provider1:/opt/CPmds-
R65/customers/cma1/CPsuite-
R65/fw1/conf/objects_5_0.C .
List cluster status
List status of interfaces
shows the sync status
Shows a status in list form
Stops clustering on the specfic node
SIC stuf
config util
prints the license
Restarts all Check Point Services
Starts all Check Point Services
Stops all Check Point Services
Stops all checkpoint Services but keeps policy
active in kernel
List checkpoint processes
Print all the licensing information.
Show VPN Policy Server Stats
Shows the status of the firewall
To stop cma
delete Phase 2 SA
show IKE SA
show Phase 2 SA
Stop a CMA
Start a CMA
Shows MDS and CMA Status
Stops all CMAs und Server processes
Start all CMAs und Server processes
Change the Enviroment to selected CMA
This displays the correct path for the CMA.
check the connected clients (with Provider1
in the CMA Level: mdsenv <CMA-IP>)
Change admin password (or cpconfig delete
admin and add admin)
Install database
Monitor cpu state with watch
open archive