The blog provides Network Security Tips, Tricks, How To/Procedures. Products and areas not limited to Firewalls, Security, Check Point, Cisco, Nokia IPSO, Crossbeam, SecurePlatform, SPLAT, IP Appliance, GAiA, Unix/Linux.

Check Point - MDS/Provider-1 - How To Collect CPinfo From The Context of CMA/Domain That Manages The Security Gateway - CLI

CPinfo is an utility that allows you to collect diagnostic data on a Check Point gateway, Security Management Server or Multi-Domain Security Management Server/Provider-1. The utility is most included in standard installation package of Check Point GAiA, SPLAT (Secure Platform) & Nokia IPSO. You can always download and install the latest version from www.checkpoint.com to get latest features.

CPinfo output file can be viewed & analyzed using Check Point InfoView utility.

CPinfo from the context of CMA/Domain that manages the security gateway as follows.


Syntax:

mdsstat
mdsenv <Name or IP address of CMA/Domain Management Server>
mcd
mdsenv test
echo $FWDIR
cpinfo -c <Name of CMA/Domain Management Server> -z -o /var/tmp/cma_name.cpinfo


Note: Login to MDS/Provider-1 as Superuser/Expert.


Example:


[Expert@MDS-HostName]#
[Expert@MDS-HostName]# mdsstat

+---------------------------------------------------------------------
|                         Processes status checking
+-----+-----------+--------------+----------+----------+----------+---
| Type| Name      | IP address   | FWM      | FWD      | CPD      | CP
+-----+-----------+--------------+----------+----------+----------+---
| MDS |        -  | 10.30.40.100 | up 24661 | up 24650 | up 24638 | up
+-----+-----------+--------------+----------+----------+----------+---
| CMA |London-CMA | 10.30.40.101 | up 6135  | up 24761 | up 24714 | up
| CMA |Paris-CMA  | 10.30.40.102 | up 24908 | up 24962 | up 24867 | up
+-----+-----------+--------------+----------+----------+----------+---
| Total Domain Management Servers checked: 2   2 up   0 down
| Tip: Run mdsstat -h for legend
+---------------------------------------------------------------------

[Expert@MDS-HostName]#
[Expert@MDS-HostName]# mdsenv London-CMA

[Expert@MDS-HostName]# mcd
changing to /opt/CPmds-R77/customers/London-CMA/CPsuite-R77/fw1/
[Expert@MDS-HostName]#
[Expert@MDS-HostName]# echo $FWDIR

/opt/CPmds-R77/customers/London-CMA/CPsuite-R77/fw1
[Expert@MDS-HostName]#
[Expert@MDS-HostName]# cpinfo -c London-CMA -z -o /var/tmp/London-CMA.cpinfo

Supports only the first Domain Management Server supplied with flag -c
Would you like to download the latest CPinfo package from Check Point Download Center? y/n: [y]n
Would you like to upload CPinfo file securely to Check Point Download Center? y/n: [y]n

                CPinfo Creation...

Found new user mode core dumps:

MiniWrapper.10105.core.gz created 15 Jan 01:43
smartlog_server.29614.core.gz created 4 Sep 11:02
fwm.7810.core.gz created 3 Sep 22:58
Upload them to Check Point? y/n: [y]n
Collecting information...: 100%
Compressing output file...
Compressing output file - done (/var/tmp/London-CMA.cpinfo.gz)

Done

[Expert@MDS-HostName]#
[Expert@MDS-HostName]#


Check Point - MDS/Provider-1 - How To Collect CPinfo From The Context of CMA/Domain That Manages The Security Gateway - CLI Check Point - MDS/Provider-1 - How To Collect CPinfo From The Context of CMA/Domain That Manages The Security Gateway - CLI Reviewed by Admin on 08:09:00 Rating: 5