- CheckMates
- :
- Products
- :
- General Topics
- :
- Reset SIC Log Server
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Reset SIC Log Server
How can we reset SIC for CP Log Servers ? I have tried cpconfig and I simply cannot find the option as well as tried it using cli
Any idea ?
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
@PhoneBoy Sorry for the trouble.
I raised a case and all we did was a halt to the machine and started it and could see the cpconfig after that.
Thank You !
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hmm, are you talking about the Smart Event Server? I just checked on a Smart Event Server R81.20 and there I have the option to change SIC in cpconfig. It's named "Secure Internal Communication".
Best regards
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Nope , I am talking about a dedicate log server not an Smart Event
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
The command looks like it's cp_conf init sicpassword.
Whether it works from a log server or not is a different question
Reference: https://support.checkpoint.com/results/sk/sk86521
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I don't have access to one to check but I'm pretty sure that if you have built the server in the FTW as a log server then it should be an option in cpconfig. Are you sure the server was built as a log server and not a primary management server?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I see the point @emmap brought up, makes total sense.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I suspect @emmap is correct that the system was not initially installed as a Log Server.
Can you provide what it says in $CPDIR/register/HKLM_registry.data for the lines LogServer and Management?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
HKLM_registry.data is not present in both of my LogServer and Management Server.
This is in production and all of my VS were forwarding traffic to these log servers.
There is one more active backup log server which doesn't have option to reset SIC as well and also does not have HKLM_registry.data file
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Your best bet here is a TAC case: https://help.checkpoint.com
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
@PhoneBoy Sorry for the trouble.
I raised a case and all we did was a halt to the machine and started it and could see the cpconfig after that.
Thank You !
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Good job!
