- Products
- Learn
- Local User Groups
- Partners
- More
What's New in R82.10?
Watch HereWhen the Agents Attack
A Live Look at Agentic Exposure Validation
AI Security Masters E8:
Claude Mythos: New Era in Cyber Security
CheckMates Go:
CheckMates Fest
Hello Guys,
I'm working on the firewall's security baseline using the algosec tool, where one of the requirements is to execute the commands below:
more $FWDIR/conf/objects.C | grep rlogin_max_auth_allowed
more $FWDIR/conf/objects.C | grep telnet_max_auth_allowed
As for the objects.C file was found, but not the part of "rlogin_max_auth_allowed" and telnet_max_auth_allowed
Do you know where to find these parameters?
You are looking in the wrong file. Use $FWDIR/conf/objects_5_0.C
Also, correct me if I am wrong, but this guidance is for R77 and below. What version of Check Point are you running?
Exactly, algosec asks to check this objects_5_0.C file but it doesn't exist, I think.
The files found were:
objects.C and objects.C_41
My firewall version is R80.30
Yes it does exist 🙂
Show us your "ls -la $FWDIR/conf/ grep object" output
-rw-rw---- 1 admin root 0 Sep 23 2020 nku_from_gw
-rw-r----- 1 admin bin 519 May 12 2020 notify_cert_revocation_vsx.conf
-rw-r----- 1 admin bin 61245 May 12 2020 objects.C
-rw-r----- 1 admin bin 36876 May 12 2020 objects.C_41
-rw-r----- 1 admin bin 3 May 12 2020 observable_overrides.C
-rw-r----- 1 admin bin 10772 May 12 2020 osfingerprint.eng
-rw-r----- 1 admin bin 6885 May 12 2020 outbound_and_encrypted.W_vpnddcate
-rw-r----- 1 admin bin 148878 May 12 2020 parserTopicToSdTopicMappings.C
It only exists on the SMS:
# more $FWDIR/conf/objects_5_0.C | grep rlogin_max_auth_allowed
:rlogin_max_auth_allowed (3)
Which AlgoSec product and version are you using, looks rather old from the details you mention...
Nice to get output, but what is the reason? On a firewall module R80.40 i get:
:comments ("Remote login (rlogin)")
On R81.10 SMS:
[Expert@SMS8110:0]# more $FWDIR/conf/objects.C | grep rlogin
:rlogin_transparent_server_connection (true)
:rlogin_transparent_server_connection (true)
:rlogin_transparent_server_connection (true)
:rlogin_transparent_server_connection (true)
:rlogin_max_auth_allowed (3)
:rlogin_msg ()
:rlogin_use_fwnetso (true)
[Expert@SMS8110:0]# more $FWDIR/conf/objects.C | grep telnet
:telnet_transparent_server_connection (true)
:telnet_transparent_server_connection (true)
:telnet_transparent_server_connection (true)
:telnet_transparent_server_connection (true)
: (FW1_clntauth_telnet
: (telnet
: FW1_clntauth_telnet
: telnet
: telnet
:handler (telnet_env_cmd_block)
: (solaris_telnet
:protocol_name (solaris_telnet)
:handler (solaris_telnet_block_code)
:handler (telnet_reflection_code)
:telnet_use_fwnetso (true)
:telnet_msg ()
:telnet_max_auth_allowed (3)
Exactly, the guidance is for the MGMT side here
On my firewalll don't appear, look:
1-MGT:0]# more $FWDIR/conf/objects.C | grep telnet
: (FW1_clntauth_telnet
: FW1_clntauth_telnet
: (telnet
: telnet
Are you looking on the GW or management?
GW, because algosec collects the command data about the GWs.
Did you read my post ? GW only gives the output:
:comments ("Remote login (rlogin)")
You misread their guidance rules. Those GW parameters are defined on the MGMT server and not directly on those GWs
AFAIK, Algosec connects to the SMS using OPSEC and communicates using the Management API - but not with the GW...
Folks,
In this case, where can I get this data in GW?
more $FWDIR/conf/objects_5_0.C | grep rlogin_max_auth_allowed
more $FWDIR/conf/objects_5_0.C | grep telnet_max_auth_allowed
I think we have answered this question three times already 🙂 These queries should be done on your management server and not on the GWs.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 15 | |
| 9 | |
| 8 | |
| 7 | |
| 7 | |
| 5 | |
| 5 | |
| 4 | |
| 3 | |
| 3 |
Thu 25 Jun 2026 @ 10:00 AM (PDT)
AI Security Masters E10: READY OR NOT: Securing the AI Enterprise 2/5 - AI Red TeamingThu 02 Jul 2026 @ 06:00 PM (CST)
Revolucionando la Seguridad con IA Generativa: Prevención Inteligente en Tiempo RealThu 09 Jul 2026 @ 11:00 AM (CEST)
The Cloud Architects Series: Check Point Edge Protection SD-WAN & SASETue 14 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E11: READY OR NOT: Securing the AI Enterprise 3/5 - AI Workforce SecurityThu 30 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E12: READY OR NOT: Securing the AI Enterprise 4/5 - AI GatewayThu 20 Aug 2026 @ 10:00 AM (PDT)
AI Security Masters E13: READY OR NOT: Securing the AI Ent 5/5 - AI Research & Threat LandscapeThu 25 Jun 2026 @ 10:00 AM (PDT)
AI Security Masters E10: READY OR NOT: Securing the AI Enterprise 2/5 - AI Red TeamingTue 14 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E11: READY OR NOT: Securing the AI Enterprise 3/5 - AI Workforce SecurityThu 30 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E12: READY OR NOT: Securing the AI Enterprise 4/5 - AI GatewayThu 20 Aug 2026 @ 10:00 AM (PDT)
AI Security Masters E13: READY OR NOT: Securing the AI Ent 5/5 - AI Research & Threat LandscapeThu 02 Jul 2026 @ 06:00 PM (CST)
Revolucionando la Seguridad con IA Generativa: Prevención Inteligente en Tiempo RealAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY