<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SMB Export Access Policy to file in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Export-Access-Policy-to-file/m-p/127247#M5543</link>
    <description>&lt;P&gt;Thanks for your reply, I've changed your command to:&lt;/P&gt;&lt;P&gt;clish -A -i -c "show access-rules type incoming-internal-and-vpn" -v &amp;gt;&amp;gt; /var/log/acl_incoming.txt&lt;BR /&gt;clish -A -i -c "show access-rules type outgoing" -v &amp;gt;&amp;gt; /var/log/acl_outgoing.txt&lt;/P&gt;&lt;P&gt;This output is in base what we are looking for.&lt;/P&gt;&lt;P&gt;Is there a way to upload them directly to a sftp server like we do with the backups?&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 17 Aug 2021 15:26:04 GMT</pubDate>
    <dc:creator>Michel_de_Boer</dc:creator>
    <dc:date>2021-08-17T15:26:04Z</dc:date>
    <item>
      <title>SMB Export Access Policy to file</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Export-Access-Policy-to-file/m-p/127241#M5541</link>
      <description>&lt;P&gt;Hi all, we have a lot of SMB appliances in SMP and most of all are 1500's or above. So R80 embedded gaia.&lt;/P&gt;&lt;P&gt;Our goal is to export the Access Policy from the appliances and match them with a previous version if there were made any changes in the policy. First of all we need to export the policy to a file. In SMP I can run some show commands but an export or something will fail. I think those are gaia commands and not embedded gaia supported.&lt;/P&gt;&lt;P&gt;I've read and tried a lot of posts from others over here but those solutions are relevant to full blown gaia solutions.&lt;/P&gt;&lt;P&gt;Can somebody provide me a way how to achieve our goal?&lt;/P&gt;</description>
      <pubDate>Tue, 17 Aug 2021 14:38:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Export-Access-Policy-to-file/m-p/127241#M5541</guid>
      <dc:creator>Michel_de_Boer</dc:creator>
      <dc:date>2021-08-17T14:38:47Z</dc:date>
    </item>
    <item>
      <title>Re: SMB Export Access Policy to file</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Export-Access-Policy-to-file/m-p/127242#M5542</link>
      <description>&lt;P&gt;There is an option from CLI. Log into Expert Mode and issue:&lt;/P&gt;
&lt;DIV class="page" title="Page 23"&gt;
&lt;DIV class="layoutArea"&gt;
&lt;DIV class="column"&gt;
&lt;P&gt;&lt;SPAN&gt;[Expert]# clish -A -i -c "show configuration" -v &amp;gt;&amp;gt; /var/log/config.txt&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Now, backup and delete&amp;nbsp;/var/log/config.txt (by CLI or WinSCP) - it will contain all settings including policy !&lt;/SPAN&gt;&lt;/P&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;</description>
      <pubDate>Wed, 18 Aug 2021 06:47:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Export-Access-Policy-to-file/m-p/127242#M5542</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2021-08-18T06:47:03Z</dc:date>
    </item>
    <item>
      <title>Re: SMB Export Access Policy to file</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Export-Access-Policy-to-file/m-p/127247#M5543</link>
      <description>&lt;P&gt;Thanks for your reply, I've changed your command to:&lt;/P&gt;&lt;P&gt;clish -A -i -c "show access-rules type incoming-internal-and-vpn" -v &amp;gt;&amp;gt; /var/log/acl_incoming.txt&lt;BR /&gt;clish -A -i -c "show access-rules type outgoing" -v &amp;gt;&amp;gt; /var/log/acl_outgoing.txt&lt;/P&gt;&lt;P&gt;This output is in base what we are looking for.&lt;/P&gt;&lt;P&gt;Is there a way to upload them directly to a sftp server like we do with the backups?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 17 Aug 2021 15:26:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Export-Access-Policy-to-file/m-p/127247#M5543</guid>
      <dc:creator>Michel_de_Boer</dc:creator>
      <dc:date>2021-08-17T15:26:04Z</dc:date>
    </item>
    <item>
      <title>Re: SMB Export Access Policy to file</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Export-Access-Policy-to-file/m-p/127249#M5544</link>
      <description>&lt;P&gt;Why not cook an Ansible playbook to do it all and download the configs to the right place!? Run it on weekly (whatever your SOP is) basis, and don't have so many custom scripts.&lt;/P&gt;</description>
      <pubDate>Tue, 17 Aug 2021 15:48:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Export-Access-Policy-to-file/m-p/127249#M5544</guid>
      <dc:creator>Art_Zalenekas</dc:creator>
      <dc:date>2021-08-17T15:48:49Z</dc:date>
    </item>
    <item>
      <title>Re: SMB Export Access Policy to file</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Export-Access-Policy-to-file/m-p/127296#M5545</link>
      <description>&lt;P&gt;My first idea was to point out these in the CLI Guide to you&amp;nbsp;8)&lt;/img&gt;. But then i thought you are better off with one command and a procedure. Good if these two outputs are enough to achieve your goal !&lt;/P&gt;
&lt;P&gt;Usually, SCP is used for file transfer.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Aug 2021 07:01:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SMB-Export-Access-Policy-to-file/m-p/127296#M5545</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2021-08-18T07:01:14Z</dc:date>
    </item>
  </channel>
</rss>

