- Products
- Learn
- Local User Groups
- Partners
- More
What's New in R82.10?
10 December @ 5pm CET / 11am ET
Improve Your Security Posture with
Threat Prevention and Policy Insights
Overlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hi.
I've a management server R81 Take 36.
I've an admin session stuck - can't login with that user or even discard, take over or publish.
Just getting "Internal error".
cpm.elg show lots of different errors around it.
Trying to remove it from mgmt_cli, results in the following error:
"Runtime error: Tried to open non existing session with id <SOME GUID>"
Any ideas? or just TAC?
Please open a TAC request
Please open a TAC request
Im pretty sure cpstop;cpstart or reboot would fix that. However, if that was done, then I guess you may need to contact TAC.
Zombie Thread Alert. Same deal on 81.10 JHF 95. Reboot did not fix it on a MDM. Setting up to call TAC.
Have you tried below command?
Andy
mgmt_cli -r true show sessions details-level full -f json | jq -r '.objects[] | select(."user-name" != "WEB_API") | .uid' | while read -r uid; do mgmt_cli -r true disconnect uid $uid; done
We did and got
"Runtime error: Tried to open non existing session with id <SOME GUID>"
The guid response is not in the worksession data.
mgmt_cli -r true disconnect uid UID -d DOMAINID
and
mgmt_cli -r true disconnect uid UID
This is Provider 1?
MDM, yes. We will need TAC on this one.
Ah, sorry, if its MDM, then not sure, hope TAC can help. I have some time later, I will set up MDM in the lab and test myself, if I make progress, will let you know either way.
Keep us posted.
Andy
K, though Im working on really difficult Fortigate vpn issue, Im in parallel doing the MDS lab. I got it going, so will see how far I get. Will update you little later on the progress.
Kind regards,
Andy
This is from my R81.20 jhf 26 mgmt lab
Andy
[Expert@CP-management:0]# mgmt_cli -r true show sessions details-level full -f json | jq -r '.objects[] | select(."user-name" != "WEB_API") | .uid' | while read -r uid; do mgmt_cli -r true disconnect uid $uid; done
message: "OK"
---------------------------------------------
Time: [10:05:57] 19/10/2023
---------------------------------------------
"Publish operation" succeeded (100%)
[Expert@CP-management:0]#
It works great, but the problem is this particular UID is broken. You get a generic "An internal error has occurred" dialog box, so went to expert cli and it fails with better information.
K, just ran it on MDS level, worked 100%
See below.
Andy
[Expert@CP-Provider1:0]# uptime
11:17:49 up 14 min, 1 user, load average: 1.03, 1.24, 1.00
[Expert@CP-Provider1:0]# mgmt_cli -r true show sessions details-level full -f json | jq -r '.objects[] | select(."user-name" != "WEB_API") | .uid' | while read -r uid; do mgmt_cli -r true disconnect uid $uid; done
message: "OK"
---------------------------------------------
Time: [11:18:16] 19/10/2023
---------------------------------------------
"Publish operation" succeeded (100%)
[Expert@CP-Provider1:0]# mdsstat
CPM: Check Point Security Management Server is running and ready
+------+--------------------+-----------------+-------------+-------------+-------------+-------------+-------------+
| Type | Name | IP address | FWM | FWMHA | FWD | CPD | CPCA |
+------+--------------------+-----------------+-------------+-------------+-------------+-------------+-------------+
| MDS | - | 172.16.10.242 | up 11869 | up 11880 | up 11867 | up 7792 | up 17354 |
+------+--------------------+-----------------+-------------+-------------+-------------+-------------+-------------+
Total Domain Management Servers checked: 0 0 up 0 down
Tip: Run mdsstat -h for legend
[Expert@CP-Provider1:0]#
Yes, I would also recommend open a TAC case , because your database need afixup to remove different table entries.
There additional scripts available to do the rudimentary cleanup, but do it with TAC 🙂
Gero
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 13 | |
| 9 | |
| 8 | |
| 8 | |
| 7 | |
| 5 | |
| 5 | |
| 4 | |
| 3 | |
| 3 |
Wed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchWed 03 Dec 2025 @ 10:00 AM (COT)
Última Sesión del Año – CheckMates LATAM: ERM & TEM con ExpertosThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasWed 03 Dec 2025 @ 10:00 AM (COT)
Última Sesión del Año – CheckMates LATAM: ERM & TEM con ExpertosThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasWed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY