<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: R80.40 -fwaccel dos blacklist-Questions in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-fwaccel-dos-blacklist-Questions/m-p/110110#M15105</link>
    <description>&lt;P&gt;Put IPs in a file and load it with fwaccel batch load option (-l). Place the command in &lt;STRONG&gt;$FWDIR/conf/fwaccel_dos_rate_on_install&lt;/STRONG&gt; and it will be re-loaded on boot.&lt;/P&gt;</description>
    <pubDate>Mon, 08 Feb 2021 04:52:23 GMT</pubDate>
    <dc:creator>HristoGrigorov</dc:creator>
    <dc:date>2021-02-08T04:52:23Z</dc:date>
    <item>
      <title>R80.40 -fwaccel dos blacklist-Questions</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-fwaccel-dos-blacklist-Questions/m-p/109641#M14981</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I want to using the&amp;nbsp;fwaccel dos blacklist command, and I have some questions&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&lt;U&gt;1. Max length command :&lt;/U&gt;&lt;/STRONG&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I generate with python script the next command:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;fwaccel dos blacklist -a 1.2.3.4 -a 1.2.3.5 -a 8.8.8.8 -a 8.8.8.9 .......&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;(for block many&amp;nbsp; IP address on one CLI command )&lt;/P&gt;&lt;P&gt;What is the maximum length/characters that I can put on one line command ?&lt;/P&gt;&lt;P&gt;&lt;U&gt;&lt;STRONG&gt;2.show config-state:&lt;/STRONG&gt;&lt;/U&gt;&lt;/P&gt;&lt;P&gt;I check the config state after run the&amp;nbsp;fwaccel dos blacklist command &lt;STRONG&gt;,&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;I found that the config state is always in :"saved" .&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;from my&amp;nbsp;conclusions there is no need to run save command after the&amp;nbsp;&amp;nbsp;fwaccel dos blacklist command, &lt;STRONG&gt;am I right ?&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;U&gt;&lt;STRONG&gt;2.Blacklist survey reboot:&lt;/STRONG&gt;&lt;/U&gt;&lt;/P&gt;&lt;P&gt;The blacklist is delete after the FW is performed a reset/reboot ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 03 Feb 2021 08:43:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-fwaccel-dos-blacklist-Questions/m-p/109641#M14981</guid>
      <dc:creator>NeTunnel</dc:creator>
      <dc:date>2021-02-03T08:43:28Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 -fwaccel dos blacklist-Questions</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-fwaccel-dos-blacklist-Questions/m-p/110097#M15099</link>
      <description>&lt;P&gt;I believe clish has a limit, but not sure on the exact number of characters.&lt;BR /&gt;Expert mode likely has a much higher limit (depends on the bash shell).&lt;BR /&gt;Note: for a particularly large number of IPs, you can load the IPs from a file.&lt;BR /&gt;See:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk112454&amp;amp;partition=Advanced&amp;amp;product=SecureXL," target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk112454&amp;amp;partition=Advanced&amp;amp;product=SecureXL,&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Configuration automatically saved: it depends.&lt;BR /&gt;Refer to the above SK for details.&lt;/P&gt;
&lt;P&gt;Blacklist: cleared on reboot.&lt;BR /&gt;However, the above SK talks about a way to preload the blacklist.&lt;/P&gt;</description>
      <pubDate>Mon, 08 Feb 2021 04:08:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-fwaccel-dos-blacklist-Questions/m-p/110097#M15099</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-02-08T04:08:18Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 -fwaccel dos blacklist-Questions</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-fwaccel-dos-blacklist-Questions/m-p/110110#M15105</link>
      <description>&lt;P&gt;Put IPs in a file and load it with fwaccel batch load option (-l). Place the command in &lt;STRONG&gt;$FWDIR/conf/fwaccel_dos_rate_on_install&lt;/STRONG&gt; and it will be re-loaded on boot.&lt;/P&gt;</description>
      <pubDate>Mon, 08 Feb 2021 04:52:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-fwaccel-dos-blacklist-Questions/m-p/110110#M15105</guid>
      <dc:creator>HristoGrigorov</dc:creator>
      <dc:date>2021-02-08T04:52:23Z</dc:date>
    </item>
    <item>
      <title>Re: R80.40 -fwaccel dos blacklist-Questions</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-fwaccel-dos-blacklist-Questions/m-p/110156#M15120</link>
      <description>&lt;P&gt;Hello, Thank for help.&lt;/P&gt;&lt;P&gt;I&amp;nbsp; accept You are advice and run the command from the Expert mode.&lt;/P&gt;&lt;P&gt;My specific scenario to load TEXT file is not good, Only to Block IP with CLI command&amp;nbsp;&lt;/P&gt;&lt;P&gt;I will try to run the command: "&lt;STRONG&gt;fwaccel dos blacklist -a 1.2.3.4 -a 1.2.3.5 -a 8.8.8.8 -a 8.8.8.9 ....... "&amp;nbsp;&lt;/STRONG&gt;from GW and check the maximum&amp;nbsp;&lt;SPAN&gt;characters length&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 08 Feb 2021 10:42:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/R80-40-fwaccel-dos-blacklist-Questions/m-p/110156#M15120</guid>
      <dc:creator>NeTunnel</dc:creator>
      <dc:date>2021-02-08T10:42:02Z</dc:date>
    </item>
  </channel>
</rss>

