- CheckMates
- :
- Products
- :
- General Topics
- :
- Re: Cannot ping any of the interfaces of the gatew...
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Cannot ping any of the interfaces of the gateway
Hi,
I have a distributed setup where we have remote gateways managed from HQ.As per the customers story the gateway suddenly stopped working and they couldnt access the internet,i tried trouble shooting it by removing the policy from kernel using fw unloadlocal and also tried to do a p2p connection with the one of the laptops but cannot ping or access the gateway from any of its interfaces. The only way to login is through a serial console. Is there any sk that i can refer to for knowledge for troubleshooting checkpoint systems. or can anyone help me with this?
- Tags:
- security gateway
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
What are the another troubleshooting steps you tried ?
What is gaia version ?
What is HW ?
Are all physical interfaces up ?
Do you see some strange messages within /var/log/messages ?
Jozko Mrkvicka
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
What was the reason for unloading the policy? You say that internet access wasn't working but were you still able to manage the gateway via SMS?
I would tend not to unload the firewall policy under normal circumstances, only in instances where management of the firewall is no longer possible via the network.
From the console of the gateway itself, is outbound connectivity possible? Are you able to ping your central SMS from the gateway?
You can confirm the current state of the policy be executing the below command from the console:
cpstat fw
