- Products
- Learn
- Local User Groups
- Partners
- More
Access Control and Threat Prevention Best Practices
5 November @ 5pm CET / 11am ET
Ask Check Point Threat Intelligence Anything!
October 28th, 9am ET / 3pm CET
Check Point Named Leader
2025 Gartner® Magic Quadrant™ for Hybrid Mesh Firewall
HTTPS Inspection
Help us to understand your needs better
CheckMates Go:
Spark Management Portal and More!
 
		
		
		
		
		
	
			
		
		
			
					
		I have created an oneliner. It displays all current Endpoint Security VPN versions and users that can be found in the current firewall log. This should find all the old endpoint clients that are currently trying to log on to the firewall. To find all E8x.xx clients with the 01.01.2021 bug. 
You can find more about the bug here: 
- How to Remediate Endpoint and VPN Issues (in version E81.10 or earlier)  
- IMPORTANT: Client VPN/Endpoint versions E81.10 or earlier – MUST UPDATE before January 1st 2021 
Tested with Management Server R80.40. For other management versions, you may have to modify the $7 and $9 variables.
Executes this command on the management server. The command takes several minutes. Use the time and drink a coffee or tea:-)
fw log -n -p |grep "Endpoint Security VPN" | awk -F";" '{print $7 ,$9}' | grep client_version |sort | uniq
The output looks like this:
I have created an oneliner. It displays all current Endpoint Security VPN versions and users that can be found in the current firewall log. This should find all the old endpoint clients that are currently trying to log on to the firewall. To find all E8x.xx clients with the 01.01.2021 bug. 
You can find more about the bug here: 
- How to Remediate Endpoint and VPN Issues (in version E81.10 or earlier)  
- IMPORTANT: Client VPN/Endpoint versions E81.10 or earlier – MUST UPDATE before January 1st 2021 
Hi Heiko,
Thanks for this OneLiner, it was working on my R80.20 Management too without modifications and saved lots of my time!
BR
Peter
Thanks Heiko, it worked like a charm on R80.30...
It goes without saying, it should be ran on the log server (in case you got a dedicated one)
 SimonDrapeau
		
			SimonDrapeau
		
		
		
		
		
		
		
		
	
			
		
		
			
					
		 
					
				
				
			
		
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY
