- Products
- Learn
- Local User Groups
- Partners
- More
Maestro Masters
Round Table session with Maestro experts
Hi All ,
I'm having an issue related to SIC my gateway is running on the R76 and SMS is running on R80.20. somedays ago my SIC certificate expired and SIC is broken between the gateway and SMS. I need to reestablish the SIC without any downtime. is there any way to do this in R76.
@Chris_Atkinson thanks for this.
@Amitclass101 you did not mention the most important part of the information.
This is what SK says for Scalable Platforms:
On Scalable Platform in Security Gateway Mode:
[Expert@HostName]# g_all cp_conf sic init New_Activation_Key norestart
[Expert@HostName]# gexec -f -b all -c 'cpwd_admin stop -name CPD -path "$CPDIR/bin/cpd_admin" -command "cpd_admin stop"'
[Expert@HostName]# gexec -f -b all -c 'cpwd_admin start -name CPD -path "$CPDIR/bin/cpd" -command "cpd"'
SIC reset, regardless of the version, will cause downtime on your GW.
That said, both R76 and R80.20 are out of support for a long time.
Is these below command will not work on R76 gateway
# cp_conf sic init KEY_HERE norestart
# cpwd_admin stop -name CPD -path "$CPDIR/bin/cpd_admin" -command "cpd_admin stop"
# cpwd_admin start -name CPD -path "$CPDIR/bin/cpd" -command "cpd"
According to sk86521 this should actually work. I was talking about doing SIC reset through cpconfig.
One more thing the device which I'm using is 44000 appliance and it is having 4 blade on two chassis, so how can I reset the SIC for all the blade at once without any down time.
Note support for R76SP.50 ceased in April 2021
sk86521 section 2 details the process for Scalable Platforms using commands prefaced with g - (global).
These commands are not correct for R76SP release, refer section 2 of the SK (sk86521).
@Chris_Atkinson thanks for this.
@Amitclass101 you did not mention the most important part of the information.
This is what SK says for Scalable Platforms:
On Scalable Platform in Security Gateway Mode:
[Expert@HostName]# g_all cp_conf sic init New_Activation_Key norestart
[Expert@HostName]# gexec -f -b all -c 'cpwd_admin stop -name CPD -path "$CPDIR/bin/cpd_admin" -command "cpd_admin stop"'
[Expert@HostName]# gexec -f -b all -c 'cpwd_admin start -name CPD -path "$CPDIR/bin/cpd" -command "cpd"'
Thanks for the help we resolved the issue after using this command in proper blade of the firewall.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
User | Count |
---|---|
22 | |
4 | |
2 | |
2 | |
2 | |
2 | |
1 | |
1 | |
1 | |
1 |
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY