- Products
- Learn
- Local User Groups
- Partners
- More
What's New in R82.10?
10 December @ 5pm CET / 11am ET
Improve Your Security Posture with
Threat Prevention and Policy Insights
Overlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hello everyone,
There is a problem with the admin login on our Checkpoint IP 395 with GAIA OS R77.30. After entering the username in Console, or SSH, the login process is restarted and a"Permission denied" error when trying to log in Gaia Portal.
The steps from sk109114 were carried out, but did not solve the error. Are there any other possibilities?
This is definitely way out of support and a very uncommon configuration to boot.
What is your intended purpose in trying to gain access to this system?
Thank you very much for the quick response. We know that this is an old system, but we need access to be able to install the patch for CVE-2024-24919.
IP395? wow, never thought would see that model mentioned here these days lol
Anyway, did you try physically powercycle it and carry out those steps?
Andy
Thank you very much for your feedback. We have carried out the specified steps and performed a power cycle via our Security Management Server. But the login behavior has not changed.
I have no clue then mate, sorry : - (.
Thanks for your help ... 👍
I found some stuff online about it, more generally related to linux and they all say its most likely permission issues with the account. Is there another admin account you can try?
Andy
No, unfortunately there is no other admin account on the gateway.
Peter
Try using cprid_util on the management to show the contents of /var/log/secure:
$CPDIR/bin/cprid_util -server <IP_of_Gateway> -verbose rexec -rcmd cat /var/log/secure
This should give you more information about what is going wrong.
When I try to log in to the system as the admin user via SSH, I get the log message:
“sshd[2590]: Failed password for... ”
When I try to log in as the same admin user via the console, I get the log message:
“Login: Permission denied”
Peter
These commands on your management should add a new user named "backupAdmin" with the password set to '1qaz!QAZ':
firewall="<IP_of_Gateway>"
scriptFile=$(mktemp)
cat << 'EOF' > "${scriptFile}"
add user backupAdmin uid 0 homedir /home/backupAdmin
add rba user backupAdmin roles adminRole
set user backupAdmin gid 100 shell /bin/bash
set user backupAdmin password-hash $6$rounds=10000$hv3SByNB$0g9QWW2Peb0KNHBQvFdMsYPmFAV9Q1HP2jsBeO5RzlqAqMZWxRNNOgTbqVqoeFclLMDYLp/ojcDqlD2JDkQrA1
EOF
$CPDIR/bin/cprid_util -server "${firewall}" putfile -local_file "${scriptFile}" -remote_file "${scriptFile}" -perms 444
$CPDIR/bin/cprid_util -server "${firewall}" rexec -rcmd clish -s -f "${scriptFile}"
Replace <IP_of_Gateway> with the address your management uses to refer to the specific box, same as before.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 26 | |
| 18 | |
| 12 | |
| 8 | |
| 6 | |
| 6 | |
| 6 | |
| 5 | |
| 4 | |
| 4 |
Wed 03 Dec 2025 @ 10:00 AM (COT)
Última Sesión del Año – CheckMates LATAM: ERM & TEM con ExpertosThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasWed 03 Dec 2025 @ 10:00 AM (COT)
Última Sesión del Año – CheckMates LATAM: ERM & TEM con ExpertosThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY