<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102169#M77772</link>
    <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;attached a short output of the debug regarding the local.ifi - error message:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;[ 29107 1737170944]@Gateway[16 Nov 15:30:04] hash_do_resize: Resizing hash from 65536 to 131072 (n_elements=131072)
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] ==&amp;gt;fwa_sfw_extract_file_ex file_name = local.ifi
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] sfw_get_tmp_file_name: File name will be: /storage/local.ifi-2832814620-3488552331
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] fwa_sfw_extract_file_ex: will execute '/bin/gunzip -c /opt/fw1/state/__tmp/FW1/local.ifi.gz &amp;gt; /storage/local.ifi-2832814620-3488552331'
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] Error executing extraction command (error code 255, errno=12).
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] ==&amp;gt;fwa_sfw_delete_tmp_file /storage/local.ifi-2832814620-3488552331
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] fwa_sfw_delete_tmp_file: Error deleting file.
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] &amp;lt;==fwa_sfw_delete_tmp_file (-1)
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] &amp;lt;==fwa_sfw_extract_file_ex
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] sfwd_read_if_info: failed to extract local.ifi file.
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] ==&amp;gt;fwa_sfw_extract_file_ex file_name = local.cfp
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] sfw_get_tmp_file_name: File name will be: /storage/local.cfp-4039710347-1791885011
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] fwa_sfw_extract_file_ex: will execute '/bin/gunzip -c /opt/fw1/state/__tmp/FW1/local.cfp.gz &amp;gt; /storage/local.cfp-4039710347-1791885011'
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] Error executing extraction command (error code 255, errno=12).
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] ==&amp;gt;fwa_sfw_delete_tmp_file /storage/local.cfp-4039710347-1791885011
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] fwa_sfw_delete_tmp_file: Error deleting file.
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] &amp;lt;==fwa_sfw_delete_tmp_file (-1)
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] &amp;lt;==fwa_sfw_extract_file_ex
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] Failed to extract local.cfp file.
[ 29107 1737170944]@Gateway[16 Nov 15:30:05]
sfw_load: Error loading security policy&lt;/LI-CODE&gt;</description>
    <pubDate>Mon, 16 Nov 2020 14:35:38 GMT</pubDate>
    <dc:creator>Us4r</dc:creator>
    <dc:date>2020-11-16T14:35:38Z</dc:date>
    <item>
      <title>Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/101967#M77759</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm looking for a solution how I can find non ASCII caracters in Objects / in the Rulebase on R80.30 Management.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Since 9. November I have problems installing Policy on our Checkpoint 1400 - Appliances. I allways get&amp;nbsp; the Error "Failed to Load Security Policy: Bad address". I think this could be a issue because of NON-ASCII Caracters used in the ruleset.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I found an old SK - Article regarding this case on R77 (&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk105708" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk105708&lt;/A&gt;) but the rule_check tools&amp;nbsp; doesn't work anymore.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any useful tips / hints how I can verify this on R80?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Florian&lt;/P&gt;</description>
      <pubDate>Fri, 13 Nov 2020 09:54:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/101967#M77759</guid>
      <dc:creator>Us4r</dc:creator>
      <dc:date>2020-11-13T09:54:12Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/101969#M77760</link>
      <description>&lt;P&gt;sk105708 speaks of characters in the rule name - how many rules do you have with target 1400 ? I would do a manual check if it is not &amp;gt;1200 8)&lt;/img&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 13 Nov 2020 10:11:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/101969#M77760</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2020-11-13T10:11:16Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/101974#M77761</link>
      <description>&lt;P&gt;No in the mentioned policy we have currently ~300 Rules.&lt;/P&gt;&lt;P&gt;Perhaps it's correlated with the IPS - Update on the 9th. When I change the IPS profile from our "special" 1400 Profile to "optimized" or "basic" the we don't get any failures. But the error message confuse me.&lt;/P&gt;&lt;P&gt;Can there be a limitation on the count of the enabled IPS Rules. I did see about 5 additional rules were added on the 9th. there&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Florian&lt;/P&gt;</description>
      <pubDate>Fri, 13 Nov 2020 10:56:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/101974#M77761</guid>
      <dc:creator>Us4r</dc:creator>
      <dc:date>2020-11-13T10:56:44Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/101980#M77762</link>
      <description>&lt;P&gt;It is possible, i just thought 1400 have less troubles. I wrote about that here:&lt;SPAN class="lia-message-read"&gt;&lt;A id="link_15" class="page-link lia-link-navigation lia-custom-event" href="https://community.checkpoint.com/t5/SMB-Appliances-and-SMP/Optimizing-an-IPS-profile-for-SMB/m-p/40091?search-action-id=18883286411&amp;amp;search-result-uid=40091" target="_blank"&gt; Optimizing an &lt;SPAN class="lia-search-match-lithium"&gt;IPS&lt;/SPAN&gt; profile for SMB.&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 13 Nov 2020 12:27:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/101980#M77762</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2020-11-13T12:27:59Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/101983#M77763</link>
      <description>&lt;P&gt;Yes did read this article before and prepared the IPS Policy as mentioned there.&lt;/P&gt;&lt;P&gt;=&amp;gt; A lot of additional protections are disabled now but the failure exists anymore (see screenshot).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 13 Nov 2020 12:57:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/101983#M77763</guid>
      <dc:creator>Us4r</dc:creator>
      <dc:date>2020-11-13T12:57:41Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/101985#M77764</link>
      <description>&lt;P&gt;And fw -d fetch &amp;lt;SMS IP&amp;gt; ? Best pipe it into a file !&lt;/P&gt;</description>
      <pubDate>Fri, 13 Nov 2020 13:13:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/101985#M77764</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2020-11-13T13:13:31Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102020#M77765</link>
      <description>&lt;P&gt;Assuming the compatibility directory still has to write out objects_5_0.c and rulebases_5_0.fws i would look there.&lt;/P&gt;&lt;P&gt;in vi&lt;/P&gt;&lt;P&gt;/[^\x00-\x7F]&lt;/P&gt;&lt;P&gt;will find each none-ascii in a file. Might work in 'less' also.&lt;/P&gt;</description>
      <pubDate>Fri, 13 Nov 2020 18:47:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102020#M77765</guid>
      <dc:creator>John_Fleming</dc:creator>
      <dc:date>2020-11-13T18:47:20Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102061#M77766</link>
      <description>&lt;P&gt;Check audit logs to find out who did what before last policy installation.&lt;/P&gt;
&lt;P&gt;Or check policy revision which is currently installed.&lt;/P&gt;</description>
      <pubDate>Sat, 14 Nov 2020 14:21:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102061#M77766</guid>
      <dc:creator>JozkoMrkvicka</dc:creator>
      <dc:date>2020-11-14T14:21:07Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102115#M77767</link>
      <description>&lt;P&gt;Hello, attached you find the output of the fw fetch -d command:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;[ 13694 1736814592]@Gateway[16 Nov  8:26:56] opsec_send_datagram_e: SESSION ID:3 is sending DG_ID=3 DG_TYPE=0x1202(???)
[ 13694 1736814592]@Gateway[16 Nov  8:26:56] ckpSSL_do_write: write 14 bytes
[ 13694 1736814592]@Gateway[16 Nov  8:26:56] opsec_comm_notify: COM 0x3b7aba8 got signal 131074
[ 13694 1736814592]@Gateway[16 Nov  8:26:56] cpd_client_signal_handler: session=0x3cf51f0, event=135683
[ 13694 1736814592]@Gateway[16 Nov  8:26:56] ckpSSL_do_read: read 12 bytes
[ 13694 1736814592]@Gateway[16 Nov  8:26:56] demultiplex type=3 session-id=3
[ 13694 1736814592]@Gateway[16 Nov  8:26:56] Destroying session (3cf51f0) id 3 (ent=3b7aa40) reason=PEER_ENDED
[ 13694 1736814592]@Gateway[16 Nov  8:26:56] get_host_statedir : return state dir = /opt/fw1/state/__tmp
[ 13694 1736814592]@Gateway[16 Nov  8:26:56] get_cond_statedir : return state dir = /opt/fw1/state/__tmp/FW1 for hostname = __tmp, product = FW1
Fetching Security Policy Succeeded.
 Writing CMI cache (IPv4)...
 Continue with second iteration
 Failed to Load Security Policy: Bad address
[ 13699 1737232384]@Gateway[16 Nov  8:28:21]
sfw_load: Error loading security policy
sfw_fetch_callback: Failed to execute command '"/opt/fw1/bin/fw" fetchlocal -d "/opt/fw1/state/__tmp/FW1"'. rc=1, exit code =-1
 Unable to install the Security Policy on the appliance
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] cpd_close_addon_sessions&amp;gt; addon_id=[], addon_ver=[]
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] cpd_session_terminator&amp;gt; session=0x3cf51f0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] opsec_end_session_e: scheduling the end of session 3
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] cpd_close_addon_sessions&amp;gt; addon_id=[], addon_ver=[]
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] The server doesn't run
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] Destroying entity 2 with 0 active comms
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] opsec_destroy_entity_sic: deleting sic rules for entity 0x3d04e80
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] SESSION ID:3 already resumed read
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] ckpSSL_InputPending 1 pending bytes
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] ckpSSL_InputPending 1 pending bytes
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] The server doesn't run
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] Destroying entity 1 with 1 active comms
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] destroying comm 0x3b7aba8
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] Destroying comm 0x3b7aba8 with 0 active sessions
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] pulling dgtype=ffffffff len=-1 to list=0x3b7abc4
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] opsec_destroy_entity_sic: deleting sic rules for entity 0x3b7aa40
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] sic_client_end_handler: for conn id = 14
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] fwasync_do_end_conn: 14: calling 0x87d755 to free opaque 0x3cf4f60
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] ckpSSL_fwasync_close: start shutdown
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] ckpSSL_ShutdownHandler: rc=0 (1) SSL negotiation finished successfully
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] ckpSSL_ShutdownTimeout: 0x3CF9D88
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] ckpSSL_Destroy: closed fd 14
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] T_event_mainloop_e: T_event_mainloop_iter returns 0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] sic_sslca_Free: defs = 0x3b6bde0, references = 0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] sic_sslca_Free: defs = 0x3b6d2e8, references = 0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] sic_sslca_Free: defs = 0x3b6fd40, references = 0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] sic_sslca_Free: defs = 0x3b6e818, references = 0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] sic_sslca_Free: defs = 0x3b72798, references = 0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] sic_sslca_Free: defs = 0x3b71270, references = 0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] sic_sslca_Free: defs = 0x3b73cc8, references = 0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] sic_sslca_Free: defs = 0x3b751d8, references = 0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] sic_sslca_Free: defs = 0x3b77bf0, references = 0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] sic_sslca_Free: defs = 0x3b766e0, references = 0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] sic_sslca_Free: defs = 0x3b7a608, references = 0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] sic_sslca_Free: defs = 0x3b790f8, references = 0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] sic_sslca_Free: defs = 0x3b7bb10, references = 0
[ 13694 1736814592]@Gateway[16 Nov  8:28:21] PM_policy_destroy: finished successfully.&lt;/LI-CODE&gt;</description>
      <pubDate>Mon, 16 Nov 2020 07:55:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102115#M77767</guid>
      <dc:creator>Us4r</dc:creator>
      <dc:date>2020-11-16T07:55:29Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102121#M77768</link>
      <description>&lt;P&gt;Maybe the solution from sk167717:&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;&lt;EM&gt;rm -rf /storage/*&amp;nbsp;&lt;/EM&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;EM&gt;/pfrm2.0/etc/restoreStorage.sh&lt;/EM&gt;&lt;/LI&gt;
&lt;LI&gt;Push the policy.&lt;/LI&gt;
&lt;/OL&gt;</description>
      <pubDate>Mon, 16 Nov 2020 08:13:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102121#M77768</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2020-11-16T08:13:27Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102148#M77769</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Why do you think it is related to special characters?&lt;/P&gt;&lt;P&gt;Did you try following&amp;nbsp;&lt;SPAN&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk103511" target="_self"&gt;sk103511&lt;/A&gt;:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;"Failed to Load Security Policy: Bad address" error on policy installation failure&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Tal&lt;/P&gt;</description>
      <pubDate>Mon, 16 Nov 2020 11:28:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102148#M77769</guid>
      <dc:creator>Tal_Paz-Fridman</dc:creator>
      <dc:date>2020-11-16T11:28:14Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102165#M77770</link>
      <description>&lt;P&gt;Hello Tal,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;disable the Blades Antibot/Antivirus doesnt have an "postive" feedback:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;[ 28695 1737011200]@Gateway[16 Nov 15:17:40] opsec_send_datagram_e: SESSION ID:3 is sending DG_ID=3 DG_TYPE=0x1202(???)
[ 28695 1737011200]@Gateway[16 Nov 15:17:40] ckpSSL_do_write: write 14 bytes
[ 28695 1737011200]@Gateway[16 Nov 15:17:40] opsec_comm_notify: COM 0x3b7ab88 got signal 131074
[ 28695 1737011200]@Gateway[16 Nov 15:17:40] cpd_client_signal_handler: session=0x3b5a9d8, event=135683
[ 28695 1737011200]@Gateway[16 Nov 15:17:40] ckpSSL_do_read: read 12 bytes
[ 28695 1737011200]@Gateway[16 Nov 15:17:40] demultiplex type=3 session-id=3
[ 28695 1737011200]@Gateway[16 Nov 15:17:40] Destroying session (3b5a9d8) id 3 (ent=3b7aa20) reason=PEER_ENDED
[ 28695 1737011200]@Gateway[16 Nov 15:17:40] get_host_statedir : return state dir = /opt/fw1/state/__tmp
[ 28695 1737011200]@Gateway[16 Nov 15:17:40] get_cond_statedir : return state dir = /opt/fw1/state/__tmp/FW1 for hostname = __tmp, product = FW1
Fetching Security Policy Succeeded.

Installing Security Policy...
[ 28699 1736871936]@Gateway[16 Nov 15:17:59] sfwd_read_if_info: failed to extract local.ifi file.
[ 28699 1736871936]@Gateway[16 Nov 15:17:59]
sfw_load: Error loading security policy

Error loading policy.
sfw_fetch_callback: Failed to execute command '"/opt/fw1/bin/fw" fetchlocal -d "/opt/fw1/state/__tmp/FW1"'. rc=1, exit code =-1
 Unable to install the Security Policy on the appliance
[ 28695 1737011200]@Gateway[16 Nov 15:18:00] cpd_close_addon_sessions&amp;gt; addon_id=[], addon_ver=[]
[ 28695 1737011200]@Gateway[16 Nov 15:18:00] cpd_session_terminator&amp;gt; session=0x3b5a9d8
[ 28695 1737011200]@Gateway[16 Nov 15:18:00] opsec_end_session_e: scheduling the end of session 3
[ 28695 1737011200]@Gateway[16 Nov 15:18:00] cpd_close_addon_sessions&amp;gt; addon_id=[], addon_ver=[]
[ 28695 1737011200]@Gateway[16 Nov 15:18:00] The server doesn't run
[ 28695 1737011200]@Gateway[16 Nov 15:18:00] Destroying entity 2 with 0 active comms
[ 28695 1737011200]@Gateway[16 Nov 15:18:00] opsec_destroy_entity_sic: deleting sic rules for entity 0x3b59fb8
[ 28695 1737011200]@Gateway[16 Nov 15:18:00] SESSION ID:3 already resumed read
[ 28695 1737011200]@Gateway[16 Nov 15:18:00] ckpSSL_InputPending 1 pending bytes&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It needs to be some issue with the caracters or with the IPS policy.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Nov 2020 14:20:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102165#M77770</guid>
      <dc:creator>Us4r</dc:creator>
      <dc:date>2020-11-16T14:20:52Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102167#M77771</link>
      <description>&lt;P&gt;Try running the fetch command with debug - perhaps it might give us additional information.&lt;/P&gt;&lt;P&gt;fw -d fetchlocal -d /opt/fw1/state/__tmp/FW1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Nov 2020 14:24:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102167#M77771</guid>
      <dc:creator>Tal_Paz-Fridman</dc:creator>
      <dc:date>2020-11-16T14:24:28Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102169#M77772</link>
      <description>&lt;P&gt;Hello all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;attached a short output of the debug regarding the local.ifi - error message:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;[ 29107 1737170944]@Gateway[16 Nov 15:30:04] hash_do_resize: Resizing hash from 65536 to 131072 (n_elements=131072)
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] ==&amp;gt;fwa_sfw_extract_file_ex file_name = local.ifi
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] sfw_get_tmp_file_name: File name will be: /storage/local.ifi-2832814620-3488552331
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] fwa_sfw_extract_file_ex: will execute '/bin/gunzip -c /opt/fw1/state/__tmp/FW1/local.ifi.gz &amp;gt; /storage/local.ifi-2832814620-3488552331'
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] Error executing extraction command (error code 255, errno=12).
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] ==&amp;gt;fwa_sfw_delete_tmp_file /storage/local.ifi-2832814620-3488552331
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] fwa_sfw_delete_tmp_file: Error deleting file.
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] &amp;lt;==fwa_sfw_delete_tmp_file (-1)
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] &amp;lt;==fwa_sfw_extract_file_ex
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] sfwd_read_if_info: failed to extract local.ifi file.
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] ==&amp;gt;fwa_sfw_extract_file_ex file_name = local.cfp
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] sfw_get_tmp_file_name: File name will be: /storage/local.cfp-4039710347-1791885011
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] fwa_sfw_extract_file_ex: will execute '/bin/gunzip -c /opt/fw1/state/__tmp/FW1/local.cfp.gz &amp;gt; /storage/local.cfp-4039710347-1791885011'
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] Error executing extraction command (error code 255, errno=12).
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] ==&amp;gt;fwa_sfw_delete_tmp_file /storage/local.cfp-4039710347-1791885011
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] fwa_sfw_delete_tmp_file: Error deleting file.
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] &amp;lt;==fwa_sfw_delete_tmp_file (-1)
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] &amp;lt;==fwa_sfw_extract_file_ex
[ 29107 1737170944]@Gateway[16 Nov 15:30:05] Failed to extract local.cfp file.
[ 29107 1737170944]@Gateway[16 Nov 15:30:05]
sfw_load: Error loading security policy&lt;/LI-CODE&gt;</description>
      <pubDate>Mon, 16 Nov 2020 14:35:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102169#M77772</guid>
      <dc:creator>Us4r</dc:creator>
      <dc:date>2020-11-16T14:35:38Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102173#M77773</link>
      <description>&lt;P&gt;Can you please check the available space on the device?&lt;/P&gt;</description>
      <pubDate>Mon, 16 Nov 2020 14:54:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102173#M77773</guid>
      <dc:creator>Tal_Paz-Fridman</dc:creator>
      <dc:date>2020-11-16T14:54:50Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint R80.30 - Find non ASCII Caracters in Rule / Objects</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102412#M77774</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21638"&gt;@Us4r&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Did you get a chance to test the available space on the device? I found some SRs that could be related to the failures you are seeing.&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Tal&lt;/P&gt;</description>
      <pubDate>Wed, 18 Nov 2020 06:52:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-R80-30-Find-non-ASCII-Caracters-in-Rule-Objects/m-p/102412#M77774</guid>
      <dc:creator>Tal_Paz-Fridman</dc:creator>
      <dc:date>2020-11-18T06:52:52Z</dc:date>
    </item>
  </channel>
</rss>

