- Products
- Learn
- Local User Groups
- Partners
- More
Call For Papers
Your Expertise, Our Stage
The Great Exposure Reset
AI Security Masters E4:
Introducing Cyata - Securing the Agenic AI Era
AI Security Masters E3:
AI-Generated Malware
CheckMates Go:
CheckMates Fest
Good morning,
I have find in our Customer fw this script configured on GAIA Scheduler, but I don't say if self-made or is CP made:
[Expert@server-fwman:0]# cat fwmgmt.sh
#!/bin/bash
HOMEDIR=/home/admin
CPPROFILE=/opt/CPshared/5.0/tmp/.CPprofile.sh
##. /home/fwadmin/CPprofile.sh
##. /opt/CPshrd-R75.40/tmp/.CPprofile.sh
$CPPROFILE
echo $FWDIR > /tmp/server-fwman.out
echo $CPDIR >> /tmp/server-fwman.out
echo "CP management backup" >> /tmp/fwmgmtbck.out
mkdir -p /var/log/bck
/bin/rm -f /var/log/bck/server-fwman.*.tgz
$FWDIR/bin/upgrade_tools/migrate export -n /var/log/bck/server-fwman.$(date +%F)
cd /var/log/bck
ftp -i -n -v 10.10.10.39 < $HOMEDIR/ftp.cmds
## clean up tmp files
/bin/rm -Rf $FWDIR/tmp/migrate/
We don't find in $HOMEDIR/ftp.cmds file, it's possible deleted from upgrade ?
Regards
Hello
I think it's selfmade, the ftp.cmds it should be the file that contains the command to be executed when the script open FTP connection (probably cnage dir, get files, etc.).
To me, logically, that looks self-made based on the content, specially considering ftp server shows private range IP address.
Hi,
hm, your script does a migrate export and not a backup.
If I'm not mistaken, 'migrate export' does a cpstop/cpstart.
A real backup/mds_backup/snapshot command has to my experience no impact.
Not sure if this is desired behavior for some customers.
Regards
It does cprestart, correct.
Thank you for a good things, I remove from Customer.
So all good now?
yess
migrate export does not stop services. I have a few SmartCenters where I use a similar script to collect one nightly, and the management services have been running uninterrupted since they were last rebooted to update to jumbo 60.
Thanks for your side, then you think are good to still with this script ?
If you don't have the ftp.cmds file, then it won't actually work properly. Be sure to check /root and /home/admin for it.
pay attention to .tgz format from r82 and above https://community.checkpoint.com/t5/Firewall-and-Security-Management/R82-migrate-server-change/td-p/...
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 28 | |
| 16 | |
| 10 | |
| 9 | |
| 7 | |
| 7 | |
| 6 | |
| 5 | |
| 5 | |
| 3 |
Thu 26 Feb 2026 @ 05:00 PM (CET)
AI Security Masters Session 4: Introducing Cyata, Securing the Agentic AI EraTue 03 Mar 2026 @ 04:00 PM (CET)
Maestro Masters EMEA: Introduction to Maestro Hyperscale FirewallsTue 03 Mar 2026 @ 03:00 PM (EST)
Maestro Masters Americas: Introduction to Maestro Hyperscale FirewallsThu 26 Feb 2026 @ 05:00 PM (CET)
AI Security Masters Session 4: Introducing Cyata, Securing the Agentic AI EraTue 03 Mar 2026 @ 04:00 PM (CET)
Maestro Masters EMEA: Introduction to Maestro Hyperscale FirewallsTue 03 Mar 2026 @ 03:00 PM (EST)
Maestro Masters Americas: Introduction to Maestro Hyperscale FirewallsFri 06 Mar 2026 @ 08:00 AM (COT)
Check Point R82 Hands‑On Bootcamp – Comunidad DOJO PanamáAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY