<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Radius Authentication on VMSS in Cloud Firewall</title>
    <link>https://community.checkpoint.com/t5/Cloud-Firewall/Radius-Authentication-on-VMSS/m-p/189863#M1472</link>
    <description>&lt;TABLE class="TableStyle-TP_Table_Dark_Header_and_Pattern" cellspacing="0"&gt;
&lt;THEAD&gt;
&lt;TR class="TableStyle-TP_Table_Dark_Header_and_Pattern-Head-Header_Style"&gt;
&lt;TH class="TableStyle-TP_Table_Dark_Header_and_Pattern-HeadE-Column_Style-Header_Style lia-align-center" scope="col" width="49.9844px"&gt;Parameter&lt;/TH&gt;
&lt;TH class="TableStyle-TP_Table_Dark_Header_and_Pattern-HeadE-Column_Style-Header_Style lia-align-center" scope="col" width="212.047px"&gt;Value&lt;/TH&gt;
&lt;TH class="TableStyle-TP_Table_Dark_Header_and_Pattern-HeadD-Column_Style-Header_Style lia-align-center" scope="col" width="594.969px"&gt;Description&lt;/TH&gt;
&lt;/TR&gt;
&lt;/THEAD&gt;
&lt;TBODY&gt;
&lt;TR class="TableStyle-TP_Table_Dark_Header_and_Pattern-Body-White_Background"&gt;
&lt;TD width="49.9844px" class="TableStyle-TP_Table_Dark_Header_and_Pattern-BodyE-Column_Style-White_Background"&gt;
&lt;P&gt;&lt;CODE&gt;&lt;SPAN class="SearchHighlight SearchHighlight1"&gt;-cg&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD width="212.047px" class="TableStyle-TP_Table_Dark_Header_and_Pattern-BodyE-Column_Style-White_Background"&gt;
&lt;P&gt;CUSTOM_GATEWAY_SCRIPT&lt;/P&gt;
&lt;/TD&gt;
&lt;TD width="594.969px" class="TableStyle-TP_Table_Dark_Header_and_Pattern-BodyD-Column_Style-White_Background"&gt;
&lt;P&gt;A path of a script on the Management Server that will be run on the gateways after the policy installation.&lt;/P&gt;
&lt;P&gt;You can add parameters to the script by separating them with spaces. The script should be located in&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;$FWDIR/conf&lt;/EM&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;directory, which should only have admin read permissions.&lt;/P&gt;
&lt;P&gt;For example: "&lt;CODE&gt;$FWDIR/conf/gw-script.sh param1 param2 ...&lt;/CODE&gt;"&lt;/P&gt;
&lt;P&gt;You can set one custom gateway script for each template.&lt;/P&gt;
&lt;P&gt;If you configure Management Data Plane Separation (MDPS), ensure the script is compatible.&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Refer:&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/IaaS/WebAdminGuides/EN/CP_CME/Content/Topics-CME/CME_Structure_and_Configurations.htm?Highlight=-cg" target="_blank" rel="noopener"&gt;https://sc1.checkpoint.com/documents/IaaS/WebAdminGuides/EN/CP_CME/Content/Topics-CME/CME_Structure_and_Configurations.htm?Highlight=-cg&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Adding this for searchability of CME gateway script examples.&lt;/P&gt;</description>
    <pubDate>Fri, 18 Aug 2023 12:09:21 GMT</pubDate>
    <dc:creator>Chris_Atkinson</dc:creator>
    <dc:date>2023-08-18T12:09:21Z</dc:date>
    <item>
      <title>Radius Authentication on VMSS</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Radius-Authentication-on-VMSS/m-p/116440#M1469</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have an issue where I am trying to configure Radius auth to the firewalls that will be replicated during a scale out event, is this possible ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have considered the possibility of simply adding the clish commands to the autoprov script could this work? any help will be greatly appreciated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you in advance,&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 20 Apr 2021 16:39:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Radius-Authentication-on-VMSS/m-p/116440#M1469</guid>
      <dc:creator>Laurence_Curlin</dc:creator>
      <dc:date>2021-04-20T16:39:57Z</dc:date>
    </item>
    <item>
      <title>Re: Radius Authentication on VMSS</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Radius-Authentication-on-VMSS/m-p/116465#M1470</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Try this:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;create a script in the SMS --&amp;gt; &lt;STRONG&gt;&lt;EM&gt;vi $FWDIR/conf/autoscaling-new-instance.sh&lt;/EM&gt;&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;add the line below in the shell script:&lt;P&gt;&lt;FONT size="2"&gt;&lt;EM&gt;#! /bin/bash&lt;/EM&gt;&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="2"&gt;&lt;EM&gt;clish -c 'add aaa radius servers priority 1 host &amp;lt;@IP&amp;gt; port 1812 secret timout 30'&lt;/EM&gt;&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="2"&gt;&lt;EM&gt;clish -c 'add aaa radius servers default-shell /bin/bash'&lt;/EM&gt;&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT size="2"&gt;&lt;EM&gt;clish -c 'add aaa radius servers super-user-uid 0'&lt;/EM&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;Assign the execute permission to the shell script --&amp;gt; &lt;STRONG&gt;&lt;EM&gt;chmod u+x $FWDIR/conf/autoscaling-new-instance.sh&lt;/EM&gt;&lt;/STRONG&gt;&lt;/LI&gt;&lt;LI&gt;Configure CME and set the relevant template to use this script --&amp;gt; &lt;STRONG&gt;&lt;EM&gt;autoprov_cfg set template –tn &amp;lt;CONFIGURATION-TEMPLATE-NAME&amp;gt; –cg $FWDIR/conf/autoscaling-new-instance.sh&lt;/EM&gt;&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;You can add other command in the script for automation purpose.&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Tue, 20 Apr 2021 23:31:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Radius-Authentication-on-VMSS/m-p/116465#M1470</guid>
      <dc:creator>AyGit</dc:creator>
      <dc:date>2021-04-20T23:31:45Z</dc:date>
    </item>
    <item>
      <title>Re: Radius Authentication on VMSS</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Radius-Authentication-on-VMSS/m-p/116479#M1471</link>
      <description>&lt;P&gt;Absolutely awesome, thank you very much for that information, I have been searching for ages for clear concise instructions like that.&lt;/P&gt;</description>
      <pubDate>Wed, 21 Apr 2021 06:06:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Radius-Authentication-on-VMSS/m-p/116479#M1471</guid>
      <dc:creator>Laurence_Curlin</dc:creator>
      <dc:date>2021-04-21T06:06:45Z</dc:date>
    </item>
    <item>
      <title>Re: Radius Authentication on VMSS</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Radius-Authentication-on-VMSS/m-p/189863#M1472</link>
      <description>&lt;TABLE class="TableStyle-TP_Table_Dark_Header_and_Pattern" cellspacing="0"&gt;
&lt;THEAD&gt;
&lt;TR class="TableStyle-TP_Table_Dark_Header_and_Pattern-Head-Header_Style"&gt;
&lt;TH class="TableStyle-TP_Table_Dark_Header_and_Pattern-HeadE-Column_Style-Header_Style lia-align-center" scope="col" width="49.9844px"&gt;Parameter&lt;/TH&gt;
&lt;TH class="TableStyle-TP_Table_Dark_Header_and_Pattern-HeadE-Column_Style-Header_Style lia-align-center" scope="col" width="212.047px"&gt;Value&lt;/TH&gt;
&lt;TH class="TableStyle-TP_Table_Dark_Header_and_Pattern-HeadD-Column_Style-Header_Style lia-align-center" scope="col" width="594.969px"&gt;Description&lt;/TH&gt;
&lt;/TR&gt;
&lt;/THEAD&gt;
&lt;TBODY&gt;
&lt;TR class="TableStyle-TP_Table_Dark_Header_and_Pattern-Body-White_Background"&gt;
&lt;TD width="49.9844px" class="TableStyle-TP_Table_Dark_Header_and_Pattern-BodyE-Column_Style-White_Background"&gt;
&lt;P&gt;&lt;CODE&gt;&lt;SPAN class="SearchHighlight SearchHighlight1"&gt;-cg&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/P&gt;
&lt;/TD&gt;
&lt;TD width="212.047px" class="TableStyle-TP_Table_Dark_Header_and_Pattern-BodyE-Column_Style-White_Background"&gt;
&lt;P&gt;CUSTOM_GATEWAY_SCRIPT&lt;/P&gt;
&lt;/TD&gt;
&lt;TD width="594.969px" class="TableStyle-TP_Table_Dark_Header_and_Pattern-BodyD-Column_Style-White_Background"&gt;
&lt;P&gt;A path of a script on the Management Server that will be run on the gateways after the policy installation.&lt;/P&gt;
&lt;P&gt;You can add parameters to the script by separating them with spaces. The script should be located in&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;$FWDIR/conf&lt;/EM&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;directory, which should only have admin read permissions.&lt;/P&gt;
&lt;P&gt;For example: "&lt;CODE&gt;$FWDIR/conf/gw-script.sh param1 param2 ...&lt;/CODE&gt;"&lt;/P&gt;
&lt;P&gt;You can set one custom gateway script for each template.&lt;/P&gt;
&lt;P&gt;If you configure Management Data Plane Separation (MDPS), ensure the script is compatible.&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Refer:&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/IaaS/WebAdminGuides/EN/CP_CME/Content/Topics-CME/CME_Structure_and_Configurations.htm?Highlight=-cg" target="_blank" rel="noopener"&gt;https://sc1.checkpoint.com/documents/IaaS/WebAdminGuides/EN/CP_CME/Content/Topics-CME/CME_Structure_and_Configurations.htm?Highlight=-cg&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Adding this for searchability of CME gateway script examples.&lt;/P&gt;</description>
      <pubDate>Fri, 18 Aug 2023 12:09:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Radius-Authentication-on-VMSS/m-p/189863#M1472</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2023-08-18T12:09:21Z</dc:date>
    </item>
  </channel>
</rss>

