There is a caveat. The command `db_tool -p $FWDIR/state/local/FW1 get_rules` only show the policy the gateway is supposed to have. If a policy installation failure occurs on the gateway it may not actually run that policy. But a nifty command to know about during policy install trouble shoooting.
And removing files at will is ... frowned upon. If you don't know what the purpose of a file is then just ripping it out is sort of like using the rm command in the wrong directory. It makes for some digital fireworks and a big mess. (Not something I would put on your resume.)
<< We make miracles happen while you wait. The impossible jobs take just a wee bit longer. >>