- Products
- Learn
- Local User Groups
- Partners
- More
Step Into the Future of
AI-Powered Cyber Security
When the Agents Attack
A Live Look at Agentic Exposure Validation
Bridge the CAASM Gap
with Exposure Management
AI Security Masters E8:
Claude Mythos: New Era in Cyber Security
CheckMates Go:
CheckMates Fest
Good morning,
I have find in our Customer fw this script configured on GAIA Scheduler, but I don't say if self-made or is CP made:
[Expert@server-fwman:0]# cat fwmgmt.sh
#!/bin/bash
HOMEDIR=/home/admin
CPPROFILE=/opt/CPshared/5.0/tmp/.CPprofile.sh
##. /home/fwadmin/CPprofile.sh
##. /opt/CPshrd-R75.40/tmp/.CPprofile.sh
$CPPROFILE
echo $FWDIR > /tmp/server-fwman.out
echo $CPDIR >> /tmp/server-fwman.out
echo "CP management backup" >> /tmp/fwmgmtbck.out
mkdir -p /var/log/bck
/bin/rm -f /var/log/bck/server-fwman.*.tgz
$FWDIR/bin/upgrade_tools/migrate export -n /var/log/bck/server-fwman.$(date +%F)
cd /var/log/bck
ftp -i -n -v 10.10.10.39 < $HOMEDIR/ftp.cmds
## clean up tmp files
/bin/rm -Rf $FWDIR/tmp/migrate/
We don't find in $HOMEDIR/ftp.cmds file, it's possible deleted from upgrade ?
Regards
Hello
I think it's selfmade, the ftp.cmds it should be the file that contains the command to be executed when the script open FTP connection (probably cnage dir, get files, etc.).
To me, logically, that looks self-made based on the content, specially considering ftp server shows private range IP address.
Hi,
hm, your script does a migrate export and not a backup.
If I'm not mistaken, 'migrate export' does a cpstop/cpstart.
A real backup/mds_backup/snapshot command has to my experience no impact.
Not sure if this is desired behavior for some customers.
Regards
It does cprestart, correct.
Thank you for a good things, I remove from Customer.
So all good now?
yess
migrate export does not stop services. I have a few SmartCenters where I use a similar script to collect one nightly, and the management services have been running uninterrupted since they were last rebooted to update to jumbo 60.
Thanks for your side, then you think are good to still with this script ?
If you don't have the ftp.cmds file, then it won't actually work properly. Be sure to check /root and /home/admin for it.
pay attention to .tgz format from r82 and above https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-migrate-server-change/td-p/...
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 10 | |
| 9 | |
| 8 | |
| 8 | |
| 7 | |
| 6 | |
| 5 | |
| 4 | |
| 3 | |
| 3 |
Tue 16 Jun 2026 @ 05:00 PM (CEST)
Under the Hood: Check Point SASE | Internet Access Optimization & Performance TuningThu 18 Jun 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point WAF - The Next Generation of AI powered protectionTue 23 Jun 2026 @ 05:00 PM (CEST)
Under the Hood: Check Point Cloud Firewall | Securing all of your clouds: Art of the possibleTue 16 Jun 2026 @ 05:00 PM (CEST)
Under the Hood: Check Point SASE | Internet Access Optimization & Performance TuningThu 18 Jun 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point WAF - The Next Generation of AI powered protectionTue 23 Jun 2026 @ 05:00 PM (CEST)
Under the Hood: Check Point Cloud Firewall | Securing all of your clouds: Art of the possibleThu 25 Jun 2026 @ 10:00 AM (PDT)
AI Security Masters E10: READY OR NOT: Securing the AI Enterprise 2/5 - AI Red TeamingAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY