<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Permission Denied whilst entering cplic or any cp command in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189517#M34894</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am having issues in applying the cp commands as it gives me permission denied as follows:&lt;/P&gt;&lt;P&gt;Last login: Tue Aug 15 13:56:27 2023 from 10.21.0.254&lt;BR /&gt;-bash: /etc/hcp/conf/.new_hcp_take_installed: Permission denied&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;rm: cannot remove '/etc/hcp/conf/.new_hcp_take_installed': Permission denied&lt;BR /&gt;-bash: /bin/fwaccel_autocomplete.sh: No such file or directory&lt;BR /&gt;[Expert@Mgmt]# cphaprob stat&lt;BR /&gt;-bash: cphaprob: command not found&lt;BR /&gt;[Expert@Mgmt]# cplic print&lt;BR /&gt;-bash: cplic: command not found&lt;BR /&gt;[Expert@Mgmt]# clish&lt;BR /&gt;CLINFR0771 Config lock is owned by ca_ocd_ladmin. Use the command 'lock database override' to acquire the lock.&lt;BR /&gt;Mgmt&amp;gt; cpprob stat&lt;BR /&gt;CLINFR0329 Invalid command:'cpprob stat'.&lt;BR /&gt;Mgmt&amp;gt; cplic print&lt;BR /&gt;/tmp/.CPprofile.sh: line 1: /opt/CPshrd-R81.10/scripts/cpprofile_functions.sh: Permission denied&lt;BR /&gt;Mgmt&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;the user account that i use is the same as the user account of admin with shell : /etc/cli.sh , i tried with the another shell with /bin/bash but in vain too.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There is no authentication raduis configued just accounts to access the WebUI of the firewall. Any ideas ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;</description>
    <pubDate>Tue, 15 Aug 2023 12:39:29 GMT</pubDate>
    <dc:creator>Duffy</dc:creator>
    <dc:date>2023-08-15T12:39:29Z</dc:date>
    <item>
      <title>Permission Denied whilst entering cplic or any cp command</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189517#M34894</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am having issues in applying the cp commands as it gives me permission denied as follows:&lt;/P&gt;&lt;P&gt;Last login: Tue Aug 15 13:56:27 2023 from 10.21.0.254&lt;BR /&gt;-bash: /etc/hcp/conf/.new_hcp_take_installed: Permission denied&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;rm: cannot remove '/etc/hcp/conf/.new_hcp_take_installed': Permission denied&lt;BR /&gt;-bash: /bin/fwaccel_autocomplete.sh: No such file or directory&lt;BR /&gt;[Expert@Mgmt]# cphaprob stat&lt;BR /&gt;-bash: cphaprob: command not found&lt;BR /&gt;[Expert@Mgmt]# cplic print&lt;BR /&gt;-bash: cplic: command not found&lt;BR /&gt;[Expert@Mgmt]# clish&lt;BR /&gt;CLINFR0771 Config lock is owned by ca_ocd_ladmin. Use the command 'lock database override' to acquire the lock.&lt;BR /&gt;Mgmt&amp;gt; cpprob stat&lt;BR /&gt;CLINFR0329 Invalid command:'cpprob stat'.&lt;BR /&gt;Mgmt&amp;gt; cplic print&lt;BR /&gt;/tmp/.CPprofile.sh: line 1: /opt/CPshrd-R81.10/scripts/cpprofile_functions.sh: Permission denied&lt;BR /&gt;Mgmt&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;the user account that i use is the same as the user account of admin with shell : /etc/cli.sh , i tried with the another shell with /bin/bash but in vain too.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There is no authentication raduis configued just accounts to access the WebUI of the firewall. Any ideas ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Tue, 15 Aug 2023 12:39:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189517#M34894</guid>
      <dc:creator>Duffy</dc:creator>
      <dc:date>2023-08-15T12:39:29Z</dc:date>
    </item>
    <item>
      <title>Re: Permission Denied whilst entering cplic or any cp command</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189535#M34904</link>
      <description>&lt;P&gt;Do you have other admin accounts where this works?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Aug 2023 13:51:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189535#M34904</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2023-08-15T13:51:15Z</dc:date>
    </item>
    <item>
      <title>Re: Permission Denied whilst entering cplic or any cp command</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189542#M34908</link>
      <description>&lt;P&gt;Hello Val,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Yes the default admin account , i just noticed that i changed the account i am using to the same uid for the default admin account and it worked afterwards.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Seems a strange way to make it work , but it worked in the end.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;</description>
      <pubDate>Tue, 15 Aug 2023 15:10:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189542#M34908</guid>
      <dc:creator>Duffy</dc:creator>
      <dc:date>2023-08-15T15:10:27Z</dc:date>
    </item>
    <item>
      <title>Re: Permission Denied whilst entering cplic or any cp command</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189544#M34910</link>
      <description>&lt;P&gt;This is not a fix. Something was misconfigured with your non-working account, and now you do not know what exactly. Check the user role it was created with.&lt;/P&gt;</description>
      <pubDate>Tue, 15 Aug 2023 16:25:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189544#M34910</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2023-08-15T16:25:12Z</dc:date>
    </item>
    <item>
      <title>Re: Permission Denied whilst entering cplic or any cp command</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189550#M34911</link>
      <description>&lt;P&gt;As Val said, something efinitely would have been misconfigured with the other account. If default admin account works fine, then its either permission issue or UID.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;Its like below:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/22069iF8369B7585F0DFCB/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Tue, 15 Aug 2023 18:08:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189550#M34911</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-08-15T18:08:44Z</dc:date>
    </item>
    <item>
      <title>Re: Permission Denied whilst entering cplic or any cp command</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189704#M34952</link>
      <description>&lt;P&gt;Turns out the uid in the end when i changed it to 0 instead of 104 uid assigned earlier it worked fine afterwards.&lt;/P&gt;</description>
      <pubDate>Thu, 17 Aug 2023 04:56:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189704#M34952</guid>
      <dc:creator>Duffy</dc:creator>
      <dc:date>2023-08-17T04:56:19Z</dc:date>
    </item>
    <item>
      <title>Re: Permission Denied whilst entering cplic or any cp command</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189705#M34953</link>
      <description>&lt;P&gt;the user role that it's assigned too is the same as admin and i thought of changing the uid back to 0 same as admin account , this is where it started working as intended.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 17 Aug 2023 04:57:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/189705#M34953</guid>
      <dc:creator>Duffy</dc:creator>
      <dc:date>2023-08-17T04:57:40Z</dc:date>
    </item>
    <item>
      <title>Re: Permission Denied whilst entering cplic or any cp command</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/218853#M41795</link>
      <description>&lt;P&gt;I am facing same issue with some of the gateways. I login with my ID which is Non-Gaia (non_local) user ID using TACACS authentication. Then elevate privilege to TACP-15 and jump to Expert. As the user doesn't exist in GAIA configuration, I can't set UID 0. This issue is only on few gateways, while in large number of other gateways, it works fine. I am sure there is no difference in configuration of all these gateways.&lt;/P&gt;&lt;P&gt;I welcome any suggestions.&lt;/P&gt;</description>
      <pubDate>Wed, 26 Jun 2024 18:18:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/218853#M41795</guid>
      <dc:creator>SunilShivnani1</dc:creator>
      <dc:date>2024-06-26T18:18:55Z</dc:date>
    </item>
    <item>
      <title>Re: Permission Denied whilst entering cplic or any cp command</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/224599#M43168</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I have the same behavior with RADIUS users.&lt;/P&gt;&lt;P&gt;I tried to set "Super User UID" parameter to "0" but still have the problem.&lt;/P&gt;&lt;P&gt;Any idea?&lt;/P&gt;&lt;DIV class=""&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-left" image-alt="Super User UID" style="width: 392px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/27350i7687CD8DD2F7EA99/image-size/large?v=v2&amp;amp;px=999" role="button" title="radius UID.png" alt="Super User UID" /&gt;&lt;span class="lia-inline-image-caption" onclick="event.preventDefault();"&gt;Super User UID&lt;/span&gt;&lt;/span&gt;&lt;/DIV&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class=""&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-left" image-alt="expert message" style="width: 501px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/27351i784FD6226FC52798/image-size/large?v=v2&amp;amp;px=999" role="button" title="expert message.png" alt="expert message" /&gt;&lt;span class="lia-inline-image-caption" onclick="event.preventDefault();"&gt;expert message&lt;/span&gt;&lt;/span&gt;&lt;/DIV&gt;</description>
      <pubDate>Tue, 27 Aug 2024 07:11:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/224599#M43168</guid>
      <dc:creator>MSpA</dc:creator>
      <dc:date>2024-08-27T07:11:06Z</dc:date>
    </item>
    <item>
      <title>Re: Permission Denied whilst entering cplic or any cp command</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/224600#M43169</link>
      <description>&lt;P&gt;Please look into&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk120972" target="_self"&gt;&lt;SPAN&gt;sk120972&lt;/SPAN&gt;&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 27 Aug 2024 07:16:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/224600#M43169</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2024-08-27T07:16:57Z</dc:date>
    </item>
    <item>
      <title>Re: Permission Denied whilst entering cplic or any cp command</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/227729#M43803</link>
      <description>&lt;P&gt;Hello Valery,&lt;/P&gt;&lt;P&gt;thank you for your help. We finally configured the given sk120972 which solved the problem. I can also confirm that it works with both /etc/cli.sh and /bin/bash shells.&lt;/P&gt;&lt;P&gt;We used Cisco ISE in order to pass the 2 parameters:&amp;nbsp;&lt;STRONG&gt;CP-Gaia-User-Role&lt;/STRONG&gt; and&amp;nbsp;&lt;STRONG&gt;CP-Gaia-SuperUser-Access&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;Any experience with Okta? It seems like it cannot pass more than 1 parameter.&lt;/P&gt;</description>
      <pubDate>Tue, 24 Sep 2024 10:07:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Permission-Denied-whilst-entering-cplic-or-any-cp-command/m-p/227729#M43803</guid>
      <dc:creator>MSpA</dc:creator>
      <dc:date>2024-09-24T10:07:03Z</dc:date>
    </item>
  </channel>
</rss>

