Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 

show cdp

hello i'm trying to see where my checkpoint is connected (which physical port) 

the physical port is eth 2 on the checkpoint

is there a command similar to "show cdp" in checkpoint CLI ?

0 Kudos
5 Replies
Highlighted

 

Sort of.  From the third edition of my book:

Spoiler

Determining the Layer 2 switching path is a little more difficult and may involve
tracing cables. If you are using Cisco switches in your network, from the firewall you
can sniff and decode Cisco Discovery Protocol (CDP) frames from the switch attached to
the firewall with this command:

tcpdump -vn -s 1500 -i (interface) 'ether[20:2] == 0x2000'

 

fig16.jpg
Figure 1-6: tcpdump Decode of CDP Traffic


From your testing workstation, you can do something similar in Wireshark. Start a
capture on your network interface and use the following filter:


eth.dst == 01:00:0c:cc:cc:cc

 

fig17.jpg
Figure 1-7: Wireshark Decode of CDP Traffic


The CDP traffic should tell you enough about the locally attached switch to identify
it. Keep in mind that there may be many other switches in the path between your testing
workstation and the firewall depending upon the architecture of your network; you need
to discover them all. If they are Cisco switches and you can obtain command-line access
to them, running the Cisco IOS command show cdp neighbors is helpful for
identifying adjacent switches.


Depending on the vendor (and version) of the networking devices used in your
environment, they may be using the IEEE 802.1AB Link Layer Discovery Protocol
(LLDP) instead of CDP. The Cisco command show lldp neighbors is helpful for
identifying adjacent switches; use this command to view and decode LLDP traffic:


tcpdump -vn -s 1500 -i (interface) ether proto 0x88cc

 

R80.40 addendum for book "Max Power 2020" now available
for free download at http://www.maxpowerfirewalls.com
Highlighted
Pearl

This looks like another great candidate for @HeikoAnkenbrand or @Danny to turn into oneliner 🙂

Highlighted

really? that seems like its overly complicated lol
0 Kudos
Highlighted
Admin
Admin

Cisco Discover Protocol is not supported with Check Point. 

Highlighted

There is self-written CDP deamon for Check Point. Works like a charm.

https://github.com/oribit/cdpd-cp

0 Kudos