- CheckMates
- :
- Products
- :
- Quantum
- :
- Management
- :
- mgmt_cli : Creation of Multiple Domain Objects & t...
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
mgmt_cli : Creation of Multiple Domain Objects & then adding to a Network Group
Hi all,
looking for some guidance and some examples on the following two requirements: I hope someone can assist?
1. Using "mgmt_cli"
a) there is a need to build (say 100 Domain) domain objects : how can this be done by using "mgmt_Cli"?
b) there is a need to then Create a Network Group and then include the domain objects created in item 1 above.
The raw inputs that I have are in clear text format as typically shown below for the domain objects :-
browser.events.data.microsoft.com
browser.events.data.msn.com
Having looked at the guide on the "mgmt_cli" I have not seen any way to do item (a) above.
And consequently have not seen how item (b) can be done.
Can anyone please advise and show some examples ?
Thanks, JED
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
The correct API for Domain objects: https://sc1.checkpoint.com/documents/latest/APIs/index.html#cli/add-dns-domain~v1.9.1%20
Adding a new group with members: https://sc1.checkpoint.com/documents/latest/APIs/index.html#cli/add-group~v1.9.1%20
Modifying an existing group and adding members: https://sc1.checkpoint.com/documents/latest/APIs/index.html#cli/set-group~v1.9.1%20
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
You can find the syntax for adding a domain and adding a domain with multiple servers.
https://sc1.checkpoint.com/documents/latest/APIs/index.html#cli/add-domain~v1.9.1%20
Should be followed by set trusted clients for those domains:
https://sc1.checkpoint.com/documents/latest/APIs/index.html#cli/set-trusted-client~v1.9.1%20
1 command of each to every domain you want to create. Use a script for names and IPs if you want.
Do it with login first and adding session id instead of -r true, -r true publishes every command. When you login you can put all the commands and then send publish. This should execute all the commands and I believe domain creation will be in queue.
I would advice trying a lower number first.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
@Amir_Senn wrote:Hi,
You can find the syntax for adding a domain and adding a domain with multiple servers.
https://sc1.checkpoint.com/ CatNeedsBest /documents/latest/APIs/index.html#cli/add-domain~v1.9.1%20
Should be followed by set trusted clients for those domains:
https://sc1.checkpoint.com/documents/latest/APIs/index.html#cli/set-trusted-client~v1.9.1%20
1 command of each to every domain you want to create. Use a script for names and IPs if you want.
Do it with login first and adding session id instead of -r true, -r true publishes every command. When you login you can put all the commands and then send publish. This should execute all the commands and I believe domain creation will be in queue.
I would advice trying a lower number first.
Thank you for your this help.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi, many thanks for the links to the documents.
I'm not sure exactly on the syntax I see that it will do what I need.
1. as in normal SMS one would create a Network Object> more > Domain and then populate with the domain name. The domain FWDN would start with a "." example : .checkpoint.com.
What I need is a method to crate : .checkpoint.com, .1checkpoint.com <> .100checkpoint.com : the 100 different domain names.
These would then be reflected in the SMS GUI as the domains.
Then the second item of the request would be to group all the FQDN Domains created into one Group,
Is this at all possible? I have seen examples with Host ipV4 addresses being explained but none with FQDN.
Many thanks,
JED
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
The correct API for Domain objects: https://sc1.checkpoint.com/documents/latest/APIs/index.html#cli/add-dns-domain~v1.9.1%20
Adding a new group with members: https://sc1.checkpoint.com/documents/latest/APIs/index.html#cli/add-group~v1.9.1%20
Modifying an existing group and adding members: https://sc1.checkpoint.com/documents/latest/APIs/index.html#cli/set-group~v1.9.1%20
