Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Peter2
Participant

Security Manager Recovery

I have two 3800 appliances running as cluster now. But the security manager server is completely crashed without any backup.

I am new to Check Point systems. Please advise how can I rebuild the server and retrieve the configuration from the firewall. 

thanks.

12 Replies
_Val_
Admin
Admin

SW version?

 

Peter2
Participant

the firewalls are R80.40

0 Kudos
G_W_Albrecht
Legend
Legend

If the SMS is crashed completely without a backup, the configuration is lost - you can not restore it from the compiled policy on the gateways.

CCSE CCTE CCSM SMB Specialist
0 Kudos
Peter2
Participant

I only have the admin password of the gateway. After build a new SMS, how can I modify the gateway to use the new server. 

0 Kudos
genisis__
Leader Leader
Leader

I've had a similar scenario.  SMS harddrive crashed no backup.  We engaged Checkpoint Professional services to extract the policies from the gateways and the import these into the a clean build SMS.

The have the tools to do this.

G_W_Albrecht
Legend
Legend

Yes, that is possible - but not a cheap solution,so i prefer backups 😎.

CCSE CCTE CCSM SMB Specialist
0 Kudos
genisis__
Leader Leader
Leader

I agree - but in our case with the customer we had little choice.   I suspect it take 1 or 2hrs to do by Professional services but then charge the whole day.

0 Kudos
JC_S
Employee
Employee

Professional Services actually CAN do that now

0 Kudos
genisis__
Leader Leader
Leader

I agree,

We had to get PS involved to rebuild a manager and policy using the policy from the gateways! 

0 Kudos
ANARINE
Participant

Is there additional charge for this service from cp?

0 Kudos
genisis__
Leader Leader
Leader

Yes - we specifically had to engage PS, which indeed cost.

0 Kudos
PhoneBoy
Admin
Admin

You may be able to piece together the configuration from various files in $FWDIR/state.
However, it will be a manual process.
Check Point Professional Services can also assist with this.

However, if you want to start over, you can build a new management server and make a new configuration.
You will have to go to each gateway and use cpconfig to perform a SIC reset.
This will allow you to establish SIC from the new management server and push a new policy to the gateways.

Note that resetting SIC generally causes an outage. 

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events