- Products
- Learn
- Local User Groups
- Partners
- More
Policy Insights and Policy Auditor in Action
19 November @ 5pm CET / 11am ET
Access Control and Threat Prevention Best Practices
Watch HereOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Is there a way via mgmt_cli to find the model of a cluster member, i see there is a way to do it for simple gateways and that works fine, but for cluster members, i don't see that option. I even tried to grab the uid of the cluster member and query generic object using that uid but that didn't work. Im assuming that the hardware model is only under the cluster object, so next question, would be via mgmt_cli is there a way to get the cluster name based on querying show cluster-members name "name_of_fw_member"?
show simple-cluster hardware?
Hey Tim, thanks for the response. That didn't work
I thought similar command existed in gaia api reference (for the gw itself), but does not seem like it.
https://sc1.checkpoint.com/documents/latest/GaiaAPIs/#cli/introduction~v1.7%20
Here is what I get when I run it from my mgmt server in the lab.
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway hardware
Error: The parameters of show-simple-gateway command should be provided in pairs (key and value). You have provided an odd number of parameters which suggests that you are probably missing a parameter.
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway
Username: admin
Password:
code: "generic_err_missing_required_parameters"
message: "Missing parameter: [name or uid]"
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway hardware "CP-GW"
Username: admin
Password:
code: "generic_err_invalid_parameter_name"
message: "Unrecognized parameter [hardware]"
[Expert@CP-MANAGEMENT:0]#
Now, this works, BUT, I dont believe it gives what you are after...: - (
Andy
My lab:
**********************************
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway
Username: admin
Password:
code: "generic_err_missing_required_parameters"
message: "Missing parameter: [name or uid]"
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway name "CP-GW"
Username: admin
Password:
uid: "0c57736d-de40-448d-94e6-5d23c68bf031"
name: "CP-GW"
type: "simple-gateway"
domain:
uid: "41e821a0-3720-11e3-aa6e-0800200c9fde"
name: "SMC User"
domain-type: "domain"
interfaces:
- uid: "b8e04c8f-3bee-4736-9aab-79959637f551"
name: "eth1"
network-interface-type: "ethernet"
ipv4-address: "172.31.10.249"
ipv4-network-mask: "255.255.255.0"
ipv4-mask-length: 24
ipv6-address: ""
comments: ""
color: "black"
icon: "NetworkObjects/network"
topology: "internal"
topology-settings:
ip-address-behind-this-interface: "network defined by routing"
interface-leads-to-dmz: true
anti-spoofing: true
anti-spoofing-settings:
action: "prevent"
exclude-packets: false
spoof-tracking: "log"
security-zone: false
- uid: "b60f8d02-e9a1-4d8e-882e-534f5f99ce3a"
name: "eth0"
network-interface-type: "ethernet"
ipv4-address: "172.16.10.249"
ipv4-network-mask: "255.255.255.0"
ipv4-mask-length: 24
ipv6-address: ""
comments: ""
color: "black"
icon: "NetworkObjects/network"
topology: "automatic"
topology-automatic-calculation: "external"
anti-spoofing: true
anti-spoofing-settings:
action: "prevent"
exclude-packets: false
spoof-tracking: "log"
security-zone: false
- uid: "89c0297c-419e-47c1-9790-0b09a69c303d"
name: "eth2"
network-interface-type: "ethernet"
ipv4-address: "192.168.10.249"
ipv4-network-mask: "255.255.255.0"
ipv4-mask-length: 24
ipv6-address: ""
comments: ""
color: "black"
icon: "NetworkObjects/network"
topology: "internal"
topology-settings:
ip-address-behind-this-interface: "network defined by routing"
interface-leads-to-dmz: false
anti-spoofing: true
anti-spoofing-settings:
action: "prevent"
exclude-packets: false
spoof-tracking: "log"
security-zone: false
ipv4-address: "172.16.10.249"
dynamic-ip: false
version: "R81.20"
os-name: "Gaia"
hardware: "Open server"
sic-name: "CN=CP-GW,O=CP-MANAGEMENT..pi6w5j"
sic-state: "communicating"
network-policy-management: false
log-server: false
firewall: true
firewall-settings:
auto-maximum-limit-for-concurrent-connections: true
maximum-limit-for-concurrent-connections: 25000
auto-calculate-connections-hash-table-size-and-memory-pool: true
connections-hash-size: 131072
memory-pool-size: 6
maximum-memory-pool-size: 30
vpn: true
vpn-settings:
useClientlessVpn: true
useCert: "defaultCert"
maximum-concurrent-ike-negotiations: 1000
maximum-concurrent-tunnels: 10000
vpn-domain:
uid: "13421376-766c-4095-a981-d7dee96bc8cb"
name: "rfc-1918"
type: "group"
domain:
uid: "41e821a0-3720-11e3-aa6e-0800200c9fde"
name: "SMC User"
domain-type: "domain"
icon: "General/group"
color: "crete blue"
vpn-domain-type: "manual"
vpn-domain-exclude-external-ip-addresses: false
link-selection:
ip-selection: "use-main-address"
remote-access:
support-l2tp: false
allow-vpn-clients-to-route-traffic: false
support-nat-traversal-mechanism: true
nat-traversal-service:
uid: "97aeb390-9aea-11d5-bd16-0090272ccb30"
name: "VPN1_IPSEC_encapsulation"
type: "service-udp"
domain:
uid: "a0bbbc99-adef-4ef8-bb6d-defdefdefdef"
name: "Check Point Data"
domain-type: "data domain"
port: "2746"
icon: "Services/UDPService"
color: "firebrick"
support-visitor-mode: true
visitor-mode-service:
uid: "97aeb443-9aea-11d5-bd16-0090272ccb30"
name: "https"
type: "service-tcp"
domain:
uid: "a0bbbc99-adef-4ef8-bb6d-defdefdefdef"
name: "Check Point Data"
domain-type: "data domain"
port: "443"
icon: "Protocols/HTTP"
color: "red"
visitor-mode-interface: "All IPs"
office-mode:
mode: "all-users"
allocate-ip-address-from:
radius-server: false
use-allocate-method: true
allocate-method: "manual"
manual-network:
uid: "6afffc9e-3d33-4054-acb9-f3c49b1cff1b"
name: "CP_default_Office_Mode_addresses_pool"
type: "network"
domain:
uid: "41e821a0-3720-11e3-aa6e-0800200c9fde"
name: "SMC User"
domain-type: "domain"
subnet4: "172.16.10.0"
mask-length4: 24
subnet-mask: "255.255.255.0"
icon: "NetworkObjects/network"
color: "black"
optional-parameters:
use-primary-dns-server: false
use-first-backup-dns-server: false
use-second-backup-dns-server: false
use-primary-wins-server: false
use-first-backup-wins-server: false
use-second-backup-wins-server: false
support-multiple-interfaces: true
perform-anti-spoofing: false
anti-spoofing-additional-addresses:
uid: "97aeb36a-9aea-11d5-bd16-0090272ccb30"
name: "None"
type: "CpmiAnyObject"
domain:
uid: "a0bbbc99-adef-4ef8-bb6d-defdefdefdef"
name: "Check Point Data"
domain-type: "data domain"
icon: "General/globalsNone"
color: "black"
authentication:
authentication-clients: []
policy-server: false
mobile-access: false
legacy-url-filtering: false
monitoring: true
anti-spam-and-email-security: false
application-control: true
url-filtering: true
threat-prevention-mode: "custom"
ips: true
threat-emulation: false
threat-extraction: false
data-loss-prevention: false
qos: true
anti-bot: false
anti-virus: true
content-awareness: true
zero-phishing: false
save-logs-locally: false
send-alerts-to-server:
- "CP-MANAGEMENT"
send-logs-to-server:
- "CP-MANAGEMENT"
send-logs-to-backup-server: []
logs-settings:
rotate-log-by-file-size: false
rotate-log-file-size-threshold: 1000
rotate-log-on-schedule: false
alert-when-free-disk-space-below-metrics: "mbytes"
alert-when-free-disk-space-below: true
alert-when-free-disk-space-below-threshold: 20
alert-when-free-disk-space-below-type: "popup alert"
delete-when-free-disk-space-below-metrics: "mbytes"
delete-when-free-disk-space-below: true
delete-when-free-disk-space-below-threshold: 5000
before-delete-keep-logs-from-the-last-days: false
before-delete-keep-logs-from-the-last-days-threshold: 3664
before-delete-run-script: false
before-delete-run-script-command: ""
stop-logging-when-free-disk-space-below-metrics: "mbytes"
stop-logging-when-free-disk-space-below: false
stop-logging-when-free-disk-space-below-threshold: 100
reject-connections-when-free-disk-space-below-threshold: false
reserve-for-packet-capture-metrics: "mbytes"
reserve-for-packet-capture-threshold: 500
delete-index-files-when-index-size-above-metrics: "mbytes"
delete-index-files-when-index-size-above: false
delete-index-files-when-index-size-above-threshold: 100000
delete-index-files-older-than-days: false
delete-index-files-older-than-days-threshold: 14
forward-logs-to-log-server: false
perform-log-rotate-before-log-forwarding: false
update-account-log-every: 3600
detect-new-citrix-ica-application-names: false
turn-on-qos-logging: true
distribute-logs-between-all-active-servers: false
identity-awareness: true
identity-awareness-settings:
remote-access: false
identity-agent: false
proxy-settings:
detect-using-x-forward-for: false
browser-based-authentication: false
identity-collector: true
identity-collector-settings:
authentication-settings:
users-directories:
internal-users: false
external-user-profile: false
users-from-external-directories: "all gateways directories"
specific: []
authorized-clients:
- client: "13421376-766c-4095-a981-d7dee96bc8cb"
client-access-permissions:
portal-web-settings:
main-url: "https://0.0.0.0/_IA_IDC"
ip-address: "0.0.0.0"
aliases: []
accessibility:
allow-access-from: "ALL_INTERFACES"
ad-query: false
terminal-servers: false
radius-accounting: false
collecting-identities: true
identity-web-api: false
platform-portal-settings:
enabled: true
portal-web-settings:
main-url: "https://172.16.10.249:4434"
ip-address: "172.16.10.249"
aliases: []
accessibility:
allow-access-from: "RULE_BASE"
usercheck-portal-settings:
enabled: true
portal-web-settings:
main-url: "http://172.16.10.249/UserCheck"
ip-address: "172.16.10.249"
aliases: []
accessibility:
allow-access-from: "INTERNAL_INTERFACES"
internal-access-settings:
undefined: false
dmz: false
vpn: true
proxy-settings:
use-custom-proxy: false
nat-hide-internal-interfaces: false
nat-settings:
auto-rule: false
fetch-policy:
- "CP-MANAGEMENT"
hit-count: true
enable-https-inspection: false
application-control-and-url-filtering-settings:
global-settings-mode: "use_global_settings"
https-inspection:
bypass-on-failure:
override-profile: false
profile-value: true
site-categorization-allow-mode:
override-profile: false
profile-value: "hold"
deny-untrusted-server-cert:
override-profile: false
profile-value: false
deny-revoked-server-cert:
override-profile: false
profile-value: true
deny-expired-server-cert:
override-profile: false
profile-value: false
ips-update-policy: "gateway automatic update"
externally-managed: false
groups: []
comments: "cp gw"
color: "olive"
icon: "NetworkObjects/gateway"
tags: []
meta-info:
lock: "unlocked"
validation-state: "ok"
last-modify-time:
posix: 1722950646101
iso-8601: "2024-08-06T09:24-0400"
last-modifier: "admin"
creation-time:
posix: 1720137949620
iso-8601: "2024-07-04T20:05-0400"
creator: "admin"
read-only: false
available-actions:
edit: "true"
delete: "true"
clone: "not_supported"
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway name "CP-GW" hardware
Error: The parameters of show-simple-gateway command should be provided in pairs (key and value). You have provided an odd number of parameters which suggests that you are probably missing a parameter.
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway hardware name "CP-GW"
Error: The parameters of show-simple-gateway command should be provided in pairs (key and value). You have provided an odd number of parameters which suggests that you are probably missing a parameter.
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway hardware "CP-GW"
Username: admin
Password:
code: "generic_err_invalid_parameter_name"
message: "Unrecognized parameter [hardware]"
[Expert@CP-MANAGEMENT:0]#
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway name "CP-GW" --format json
Username: admin
Password:
{
"uid" : "0c57736d-de40-448d-94e6-5d23c68bf031",
"name" : "CP-GW",
"type" : "simple-gateway",
"domain" : {
"uid" : "41e821a0-3720-11e3-aa6e-0800200c9fde",
"name" : "SMC User",
"domain-type" : "domain"
},
"interfaces" : [ {
"uid" : "b8e04c8f-3bee-4736-9aab-79959637f551",
"name" : "eth1",
"network-interface-type" : "ethernet",
"ipv4-address" : "172.31.10.249",
"ipv4-network-mask" : "255.255.255.0",
"ipv4-mask-length" : 24,
"ipv6-address" : "",
"comments" : "",
"color" : "black",
"icon" : "NetworkObjects/network",
"topology" : "internal",
"topology-settings" : {
"ip-address-behind-this-interface" : "network defined by routing",
"interface-leads-to-dmz" : true
},
"anti-spoofing" : true,
"anti-spoofing-settings" : {
"action" : "prevent",
"exclude-packets" : false,
"spoof-tracking" : "log"
},
"security-zone" : false
}, {
"uid" : "b60f8d02-e9a1-4d8e-882e-534f5f99ce3a",
"name" : "eth0",
"network-interface-type" : "ethernet",
"ipv4-address" : "172.16.10.249",
"ipv4-network-mask" : "255.255.255.0",
"ipv4-mask-length" : 24,
"ipv6-address" : "",
"comments" : "",
"color" : "black",
"icon" : "NetworkObjects/network",
"topology" : "automatic",
"topology-automatic-calculation" : "external",
"anti-spoofing" : true,
"anti-spoofing-settings" : {
"action" : "prevent",
"exclude-packets" : false,
"spoof-tracking" : "log"
},
"security-zone" : false
}, {
"uid" : "89c0297c-419e-47c1-9790-0b09a69c303d",
"name" : "eth2",
"network-interface-type" : "ethernet",
"ipv4-address" : "192.168.10.249",
"ipv4-network-mask" : "255.255.255.0",
"ipv4-mask-length" : 24,
"ipv6-address" : "",
"comments" : "",
"color" : "black",
"icon" : "NetworkObjects/network",
"topology" : "internal",
"topology-settings" : {
"ip-address-behind-this-interface" : "network defined by routing",
"interface-leads-to-dmz" : false
},
"anti-spoofing" : true,
"anti-spoofing-settings" : {
"action" : "prevent",
"exclude-packets" : false,
"spoof-tracking" : "log"
},
"security-zone" : false
} ],
"ipv4-address" : "172.16.10.249",
"dynamic-ip" : false,
"version" : "R81.20",
"os-name" : "Gaia",
"hardware" : "Open server",
"sic-name" : "CN=CP-GW,O=CP-MANAGEMENT..pi6w5j",
"sic-state" : "communicating",
"network-policy-management" : false,
"log-server" : false,
"firewall" : true,
"firewall-settings" : {
"auto-maximum-limit-for-concurrent-connections" : true,
"maximum-limit-for-concurrent-connections" : 25000,
"auto-calculate-connections-hash-table-size-and-memory-pool" : true,
"connections-hash-size" : 131072,
"memory-pool-size" : 6,
"maximum-memory-pool-size" : 30
},
"vpn" : true,
"vpn-settings" : {
"useClientlessVpn" : true,
"useCert" : "defaultCert",
"maximum-concurrent-ike-negotiations" : 1000,
"maximum-concurrent-tunnels" : 10000,
"vpn-domain" : {
"uid" : "13421376-766c-4095-a981-d7dee96bc8cb",
"name" : "rfc-1918",
"type" : "group",
"domain" : {
"uid" : "41e821a0-3720-11e3-aa6e-0800200c9fde",
"name" : "SMC User",
"domain-type" : "domain"
},
"icon" : "General/group",
"color" : "crete blue"
},
"vpn-domain-type" : "manual",
"vpn-domain-exclude-external-ip-addresses" : false,
"link-selection" : {
"ip-selection" : "use-main-address"
},
"remote-access" : {
"support-l2tp" : false,
"allow-vpn-clients-to-route-traffic" : false,
"support-nat-traversal-mechanism" : true,
"nat-traversal-service" : {
"uid" : "97aeb390-9aea-11d5-bd16-0090272ccb30",
"name" : "VPN1_IPSEC_encapsulation",
"type" : "service-udp",
"domain" : {
"uid" : "a0bbbc99-adef-4ef8-bb6d-defdefdefdef",
"name" : "Check Point Data",
"domain-type" : "data domain"
},
"port" : "2746",
"icon" : "Services/UDPService",
"color" : "firebrick"
},
"support-visitor-mode" : true,
"visitor-mode-service" : {
"uid" : "97aeb443-9aea-11d5-bd16-0090272ccb30",
"name" : "https",
"type" : "service-tcp",
"domain" : {
"uid" : "a0bbbc99-adef-4ef8-bb6d-defdefdefdef",
"name" : "Check Point Data",
"domain-type" : "data domain"
},
"port" : "443",
"icon" : "Protocols/HTTP",
"color" : "red"
},
"visitor-mode-interface" : "All IPs"
},
"office-mode" : {
"mode" : "all-users",
"allocate-ip-address-from" : {
"radius-server" : false,
"use-allocate-method" : true,
"allocate-method" : "manual",
"manual-network" : {
"uid" : "6afffc9e-3d33-4054-acb9-f3c49b1cff1b",
"name" : "CP_default_Office_Mode_addresses_pool",
"type" : "network",
"domain" : {
"uid" : "41e821a0-3720-11e3-aa6e-0800200c9fde",
"name" : "SMC User",
"domain-type" : "domain"
},
"subnet4" : "172.16.10.0",
"mask-length4" : 24,
"subnet-mask" : "255.255.255.0",
"icon" : "NetworkObjects/network",
"color" : "black"
},
"optional-parameters" : {
"use-primary-dns-server" : false,
"use-first-backup-dns-server" : false,
"use-second-backup-dns-server" : false,
"use-primary-wins-server" : false,
"use-first-backup-wins-server" : false,
"use-second-backup-wins-server" : false
}
},
"support-multiple-interfaces" : true,
"perform-anti-spoofing" : false,
"anti-spoofing-additional-addresses" : {
"uid" : "97aeb36a-9aea-11d5-bd16-0090272ccb30",
"name" : "None",
"type" : "CpmiAnyObject",
"domain" : {
"uid" : "a0bbbc99-adef-4ef8-bb6d-defdefdefdef",
"name" : "Check Point Data",
"domain-type" : "data domain"
},
"icon" : "General/globalsNone",
"color" : "black"
}
},
"authentication" : {
"authentication-clients" : [ ]
}
},
"policy-server" : false,
"mobile-access" : false,
"legacy-url-filtering" : false,
"monitoring" : true,
"anti-spam-and-email-security" : false,
"application-control" : true,
"url-filtering" : true,
"threat-prevention-mode" : "custom",
"ips" : true,
"threat-emulation" : false,
"threat-extraction" : false,
"data-loss-prevention" : false,
"qos" : true,
"anti-bot" : false,
"anti-virus" : true,
"content-awareness" : true,
"zero-phishing" : false,
"save-logs-locally" : false,
"send-alerts-to-server" : [ "CP-MANAGEMENT" ],
"send-logs-to-server" : [ "CP-MANAGEMENT" ],
"send-logs-to-backup-server" : [ ],
"logs-settings" : {
"rotate-log-by-file-size" : false,
"rotate-log-file-size-threshold" : 1000,
"rotate-log-on-schedule" : false,
"alert-when-free-disk-space-below-metrics" : "mbytes",
"alert-when-free-disk-space-below" : true,
"alert-when-free-disk-space-below-threshold" : 20,
"alert-when-free-disk-space-below-type" : "popup alert",
"delete-when-free-disk-space-below-metrics" : "mbytes",
"delete-when-free-disk-space-below" : true,
"delete-when-free-disk-space-below-threshold" : 5000,
"before-delete-keep-logs-from-the-last-days" : false,
"before-delete-keep-logs-from-the-last-days-threshold" : 3664,
"before-delete-run-script" : false,
"before-delete-run-script-command" : "",
"stop-logging-when-free-disk-space-below-metrics" : "mbytes",
"stop-logging-when-free-disk-space-below" : false,
"stop-logging-when-free-disk-space-below-threshold" : 100,
"reject-connections-when-free-disk-space-below-threshold" : false,
"reserve-for-packet-capture-metrics" : "mbytes",
"reserve-for-packet-capture-threshold" : 500,
"delete-index-files-when-index-size-above-metrics" : "mbytes",
"delete-index-files-when-index-size-above" : false,
"delete-index-files-when-index-size-above-threshold" : 100000,
"delete-index-files-older-than-days" : false,
"delete-index-files-older-than-days-threshold" : 14,
"forward-logs-to-log-server" : false,
"perform-log-rotate-before-log-forwarding" : false,
"update-account-log-every" : 3600,
"detect-new-citrix-ica-application-names" : false,
"turn-on-qos-logging" : true,
"distribute-logs-between-all-active-servers" : false
},
"identity-awareness" : true,
"identity-awareness-settings" : {
"remote-access" : false,
"identity-agent" : false,
"proxy-settings" : {
"detect-using-x-forward-for" : false
},
"browser-based-authentication" : false,
"identity-collector" : true,
"identity-collector-settings" : {
"authentication-settings" : {
"users-directories" : {
"internal-users" : false,
"external-user-profile" : false,
"users-from-external-directories" : "all gateways directories",
"specific" : [ ]
}
},
"authorized-clients" : [ {
"client" : "13421376-766c-4095-a981-d7dee96bc8cb"
} ],
"client-access-permissions" : {
"portal-web-settings" : {
"main-url" : "https://0.0.0.0/_IA_IDC",
"ip-address" : "0.0.0.0",
"aliases" : [ ]
},
"accessibility" : {
"allow-access-from" : "ALL_INTERFACES"
}
}
},
"ad-query" : false,
"terminal-servers" : false,
"radius-accounting" : false,
"collecting-identities" : true,
"identity-web-api" : false
},
"platform-portal-settings" : {
"enabled" : true,
"portal-web-settings" : {
"main-url" : "https://172.16.10.249:4434",
"ip-address" : "172.16.10.249",
"aliases" : [ ]
},
"accessibility" : {
"allow-access-from" : "RULE_BASE"
}
},
"usercheck-portal-settings" : {
"enabled" : true,
"portal-web-settings" : {
"main-url" : "http://172.16.10.249/UserCheck",
"ip-address" : "172.16.10.249",
"aliases" : [ ]
},
"accessibility" : {
"allow-access-from" : "INTERNAL_INTERFACES",
"internal-access-settings" : {
"undefined" : false,
"dmz" : false,
"vpn" : true
}
}
},
"proxy-settings" : {
"use-custom-proxy" : false
},
"nat-hide-internal-interfaces" : false,
"nat-settings" : {
"auto-rule" : false
},
"fetch-policy" : [ "CP-MANAGEMENT" ],
"hit-count" : true,
"enable-https-inspection" : false,
"application-control-and-url-filtering-settings" : {
"global-settings-mode" : "use_global_settings"
},
"https-inspection" : {
"bypass-on-failure" : {
"override-profile" : false,
"profile-value" : true
},
"site-categorization-allow-mode" : {
"override-profile" : false,
"profile-value" : "hold"
},
"deny-untrusted-server-cert" : {
"override-profile" : false,
"profile-value" : false
},
"deny-revoked-server-cert" : {
"override-profile" : false,
"profile-value" : true
},
"deny-expired-server-cert" : {
"override-profile" : false,
"profile-value" : false
}
},
"ips-update-policy" : "gateway automatic update",
"externally-managed" : false,
"groups" : [ ],
"comments" : "cp gw",
"color" : "olive",
"icon" : "NetworkObjects/gateway",
"tags" : [ ],
"meta-info" : {
"lock" : "unlocked",
"validation-state" : "ok",
"last-modify-time" : {
"posix" : 1722950646101,
"iso-8601" : "2024-08-06T09:24-0400"
},
"last-modifier" : "admin",
"creation-time" : {
"posix" : 1720137949620,
"iso-8601" : "2024-07-04T20:05-0400"
},
"creator" : "admin"
},
"read-only" : false,
"available-actions" : {
"edit" : "true",
"delete" : "true",
"clone" : "not_supported"
}
}
[Expert@CP-MANAGEMENT:0]#
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway gardware
Error: The parameters of show-simple-gateway command should be provided in pairs (key and value). You have provided an odd number of parameters which suggests that you are probably missing a parameter.
[Expert@CP-MANAGEMENT:0]#
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway hardware
Error: The parameters of show-simple-gateway command should be provided in pairs (key and value). You have provided an odd number of parameters which suggests that you are probably missing a parameter.
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway
Username: admin
Password:
code: "generic_err_missing_required_parameters"
message: "Missing parameter: [name or uid]"
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway hardware "CP-GW"
Username: admin
Password:
code: "generic_err_invalid_parameter_name"
message: "Unrecognized parameter [hardware]"
[Expert@CP-MANAGEMENT:0]# ^C
[Expert@CP-MANAGEMENT:0]#
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway
Username: admin
Password:
code: "generic_err_missing_required_parameters"
message: "Missing parameter: [name or uid]"
[Expert@CP-MANAGEMENT:0]#
[Expert@CP-MANAGEMENT:0]# mgmt_cli show simple-gateway name "CP-GW" --format json
Username: admin
Password:
{
"uid" : "0c57736d-de40-448d-94e6-5d23c68bf031",
"name" : "CP-GW",
"type" : "simple-gateway",
"domain" : {
"uid" : "41e821a0-3720-11e3-aa6e-0800200c9fde",
"name" : "SMC User",
"domain-type" : "domain"
},
"interfaces" : [ {
"uid" : "b8e04c8f-3bee-4736-9aab-79959637f551",
"name" : "eth1",
"network-interface-type" : "ethernet",
"ipv4-address" : "172.31.10.249",
"ipv4-network-mask" : "255.255.255.0",
"ipv4-mask-length" : 24,
"ipv6-address" : "",
"comments" : "",
"color" : "black",
"icon" : "NetworkObjects/network",
"topology" : "internal",
"topology-settings" : {
"ip-address-behind-this-interface" : "network defined by routing",
"interface-leads-to-dmz" : true
},
"anti-spoofing" : true,
"anti-spoofing-settings" : {
"action" : "prevent",
"exclude-packets" : false,
"spoof-tracking" : "log"
},
"security-zone" : false
}, {
"uid" : "b60f8d02-e9a1-4d8e-882e-534f5f99ce3a",
"name" : "eth0",
"network-interface-type" : "ethernet",
"ipv4-address" : "172.16.10.249",
"ipv4-network-mask" : "255.255.255.0",
"ipv4-mask-length" : 24,
"ipv6-address" : "",
"comments" : "",
"color" : "black",
"icon" : "NetworkObjects/network",
"topology" : "automatic",
"topology-automatic-calculation" : "external",
"anti-spoofing" : true,
"anti-spoofing-settings" : {
"action" : "prevent",
"exclude-packets" : false,
"spoof-tracking" : "log"
},
"security-zone" : false
}, {
"uid" : "89c0297c-419e-47c1-9790-0b09a69c303d",
"name" : "eth2",
"network-interface-type" : "ethernet",
"ipv4-address" : "192.168.10.249",
"ipv4-network-mask" : "255.255.255.0",
"ipv4-mask-length" : 24,
"ipv6-address" : "",
"comments" : "",
"color" : "black",
"icon" : "NetworkObjects/network",
"topology" : "internal",
"topology-settings" : {
"ip-address-behind-this-interface" : "network defined by routing",
"interface-leads-to-dmz" : false
},
"anti-spoofing" : true,
"anti-spoofing-settings" : {
"action" : "prevent",
"exclude-packets" : false,
"spoof-tracking" : "log"
},
"security-zone" : false
} ],
"ipv4-address" : "172.16.10.249",
"dynamic-ip" : false,
"version" : "R81.20",
"os-name" : "Gaia",
"hardware" : "Open server",
"sic-name" : "CN=CP-GW,O=CP-MANAGEMENT..pi6w5j",
"sic-state" : "communicating",
"network-policy-management" : false,
"log-server" : false,
"firewall" : true,
"firewall-settings" : {
"auto-maximum-limit-for-concurrent-connections" : true,
"maximum-limit-for-concurrent-connections" : 25000,
"auto-calculate-connections-hash-table-size-and-memory-pool" : true,
"connections-hash-size" : 131072,
"memory-pool-size" : 6,
"maximum-memory-pool-size" : 30
},
"vpn" : true,
"vpn-settings" : {
"useClientlessVpn" : true,
"useCert" : "defaultCert",
"maximum-concurrent-ike-negotiations" : 1000,
"maximum-concurrent-tunnels" : 10000,
"vpn-domain" : {
"uid" : "13421376-766c-4095-a981-d7dee96bc8cb",
"name" : "rfc-1918",
"type" : "group",
"domain" : {
"uid" : "41e821a0-3720-11e3-aa6e-0800200c9fde",
"name" : "SMC User",
"domain-type" : "domain"
},
"icon" : "General/group",
"color" : "crete blue"
},
"vpn-domain-type" : "manual",
"vpn-domain-exclude-external-ip-addresses" : false,
"link-selection" : {
"ip-selection" : "use-main-address"
},
"remote-access" : {
"support-l2tp" : false,
"allow-vpn-clients-to-route-traffic" : false,
"support-nat-traversal-mechanism" : true,
"nat-traversal-service" : {
"uid" : "97aeb390-9aea-11d5-bd16-0090272ccb30",
"name" : "VPN1_IPSEC_encapsulation",
"type" : "service-udp",
"domain" : {
"uid" : "a0bbbc99-adef-4ef8-bb6d-defdefdefdef",
"name" : "Check Point Data",
"domain-type" : "data domain"
},
"port" : "2746",
"icon" : "Services/UDPService",
"color" : "firebrick"
},
"support-visitor-mode" : true,
"visitor-mode-service" : {
"uid" : "97aeb443-9aea-11d5-bd16-0090272ccb30",
"name" : "https",
"type" : "service-tcp",
"domain" : {
"uid" : "a0bbbc99-adef-4ef8-bb6d-defdefdefdef",
"name" : "Check Point Data",
"domain-type" : "data domain"
},
"port" : "443",
"icon" : "Protocols/HTTP",
"color" : "red"
},
"visitor-mode-interface" : "All IPs"
},
"office-mode" : {
"mode" : "all-users",
"allocate-ip-address-from" : {
"radius-server" : false,
"use-allocate-method" : true,
"allocate-method" : "manual",
"manual-network" : {
"uid" : "6afffc9e-3d33-4054-acb9-f3c49b1cff1b",
"name" : "CP_default_Office_Mode_addresses_pool",
"type" : "network",
"domain" : {
"uid" : "41e821a0-3720-11e3-aa6e-0800200c9fde",
"name" : "SMC User",
"domain-type" : "domain"
},
"subnet4" : "172.16.10.0",
"mask-length4" : 24,
"subnet-mask" : "255.255.255.0",
"icon" : "NetworkObjects/network",
"color" : "black"
},
"optional-parameters" : {
"use-primary-dns-server" : false,
"use-first-backup-dns-server" : false,
"use-second-backup-dns-server" : false,
"use-primary-wins-server" : false,
"use-first-backup-wins-server" : false,
"use-second-backup-wins-server" : false
}
},
"support-multiple-interfaces" : true,
"perform-anti-spoofing" : false,
"anti-spoofing-additional-addresses" : {
"uid" : "97aeb36a-9aea-11d5-bd16-0090272ccb30",
"name" : "None",
"type" : "CpmiAnyObject",
"domain" : {
"uid" : "a0bbbc99-adef-4ef8-bb6d-defdefdefdef",
"name" : "Check Point Data",
"domain-type" : "data domain"
},
"icon" : "General/globalsNone",
"color" : "black"
}
},
"authentication" : {
"authentication-clients" : [ ]
}
},
"policy-server" : false,
"mobile-access" : false,
"legacy-url-filtering" : false,
"monitoring" : true,
"anti-spam-and-email-security" : false,
"application-control" : true,
"url-filtering" : true,
"threat-prevention-mode" : "custom",
"ips" : true,
"threat-emulation" : false,
"threat-extraction" : false,
"data-loss-prevention" : false,
"qos" : true,
"anti-bot" : false,
"anti-virus" : true,
"content-awareness" : true,
"zero-phishing" : false,
"save-logs-locally" : false,
"send-alerts-to-server" : [ "CP-MANAGEMENT" ],
"send-logs-to-server" : [ "CP-MANAGEMENT" ],
"send-logs-to-backup-server" : [ ],
"logs-settings" : {
"rotate-log-by-file-size" : false,
"rotate-log-file-size-threshold" : 1000,
"rotate-log-on-schedule" : false,
"alert-when-free-disk-space-below-metrics" : "mbytes",
"alert-when-free-disk-space-below" : true,
"alert-when-free-disk-space-below-threshold" : 20,
"alert-when-free-disk-space-below-type" : "popup alert",
"delete-when-free-disk-space-below-metrics" : "mbytes",
"delete-when-free-disk-space-below" : true,
"delete-when-free-disk-space-below-threshold" : 5000,
"before-delete-keep-logs-from-the-last-days" : false,
"before-delete-keep-logs-from-the-last-days-threshold" : 3664,
"before-delete-run-script" : false,
"before-delete-run-script-command" : "",
"stop-logging-when-free-disk-space-below-metrics" : "mbytes",
"stop-logging-when-free-disk-space-below" : false,
"stop-logging-when-free-disk-space-below-threshold" : 100,
"reject-connections-when-free-disk-space-below-threshold" : false,
"reserve-for-packet-capture-metrics" : "mbytes",
"reserve-for-packet-capture-threshold" : 500,
"delete-index-files-when-index-size-above-metrics" : "mbytes",
"delete-index-files-when-index-size-above" : false,
"delete-index-files-when-index-size-above-threshold" : 100000,
"delete-index-files-older-than-days" : false,
"delete-index-files-older-than-days-threshold" : 14,
"forward-logs-to-log-server" : false,
"perform-log-rotate-before-log-forwarding" : false,
"update-account-log-every" : 3600,
"detect-new-citrix-ica-application-names" : false,
"turn-on-qos-logging" : true,
"distribute-logs-between-all-active-servers" : false
},
"identity-awareness" : true,
"identity-awareness-settings" : {
"remote-access" : false,
"identity-agent" : false,
"proxy-settings" : {
"detect-using-x-forward-for" : false
},
"browser-based-authentication" : false,
"identity-collector" : true,
"identity-collector-settings" : {
"authentication-settings" : {
"users-directories" : {
"internal-users" : false,
"external-user-profile" : false,
"users-from-external-directories" : "all gateways directories",
"specific" : [ ]
}
},
"authorized-clients" : [ {
"client" : "13421376-766c-4095-a981-d7dee96bc8cb"
} ],
"client-access-permissions" : {
"portal-web-settings" : {
"main-url" : "https://0.0.0.0/_IA_IDC",
"ip-address" : "0.0.0.0",
"aliases" : [ ]
},
"accessibility" : {
"allow-access-from" : "ALL_INTERFACES"
}
}
},
"ad-query" : false,
"terminal-servers" : false,
"radius-accounting" : false,
"collecting-identities" : true,
"identity-web-api" : false
},
"platform-portal-settings" : {
"enabled" : true,
"portal-web-settings" : {
"main-url" : "https://172.16.10.249:4434",
"ip-address" : "172.16.10.249",
"aliases" : [ ]
},
"accessibility" : {
"allow-access-from" : "RULE_BASE"
}
},
"usercheck-portal-settings" : {
"enabled" : true,
"portal-web-settings" : {
"main-url" : "http://172.16.10.249/UserCheck",
"ip-address" : "172.16.10.249",
"aliases" : [ ]
},
"accessibility" : {
"allow-access-from" : "INTERNAL_INTERFACES",
"internal-access-settings" : {
"undefined" : false,
"dmz" : false,
"vpn" : true
}
}
},
"proxy-settings" : {
"use-custom-proxy" : false
},
"nat-hide-internal-interfaces" : false,
"nat-settings" : {
"auto-rule" : false
},
"fetch-policy" : [ "CP-MANAGEMENT" ],
"hit-count" : true,
"enable-https-inspection" : false,
"application-control-and-url-filtering-settings" : {
"global-settings-mode" : "use_global_settings"
},
"https-inspection" : {
"bypass-on-failure" : {
"override-profile" : false,
"profile-value" : true
},
"site-categorization-allow-mode" : {
"override-profile" : false,
"profile-value" : "hold"
},
"deny-untrusted-server-cert" : {
"override-profile" : false,
"profile-value" : false
},
"deny-revoked-server-cert" : {
"override-profile" : false,
"profile-value" : true
},
"deny-expired-server-cert" : {
"override-profile" : false,
"profile-value" : false
}
},
"ips-update-policy" : "gateway automatic update",
"externally-managed" : false,
"groups" : [ ],
"comments" : "cp gw",
"color" : "olive",
"icon" : "NetworkObjects/gateway",
"tags" : [ ],
"meta-info" : {
"lock" : "unlocked",
"validation-state" : "ok",
"last-modify-time" : {
"posix" : 1722950646101,
"iso-8601" : "2024-08-06T09:24-0400"
},
"last-modifier" : "admin",
"creation-time" : {
"posix" : 1720137949620,
"iso-8601" : "2024-07-04T20:05-0400"
},
"creator" : "admin"
},
"read-only" : false,
"available-actions" : {
"edit" : "true",
"delete" : "true",
"clone" : "not_supported"
}
}
[Expert@CP-MANAGEMENT:0]#
I think it does, i see this in your test output:
hardware: "Open server"
You test on something virtual I think?
Best shot is indeed what you say: mgmt_cli show simple-gateway hardware
Yep, sorry, missed that part, its eve-ng.
Best,
Andy
I second what Tim said. I will test this Tuesday morning, but makes sense. Btw, below are all the possibilities for that command,
Andy
https://sc1.checkpoint.com/documents/latest/APIs/#cli/show-simple-cluster~v1.9.1%20
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 5 | |
| 3 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |
Tue 11 Nov 2025 @ 10:00 AM (CET)
Your First Response: Immediate Actions for Cyber Incident Containment- EMEATue 11 Nov 2025 @ 06:00 PM (COT)
San Pedro Sula: Risk Management al Horno: ERM, TEM & Pizza NightTue 11 Nov 2025 @ 06:00 PM (COT)
San Pedro Sula: Risk Management al Horno: ERM, TEM & Pizza NightTue 11 Nov 2025 @ 10:00 AM (CET)
Your First Response: Immediate Actions for Cyber Incident Containment- EMEAThu 13 Nov 2025 @ 10:00 AM (CET)
Cloud Architect Series - Guarding Generative AI: Next-Gen Application Security with CloudGuard WAFFri 14 Nov 2025 @ 10:00 AM (CET)
CheckMates Live Netherlands - Veriti, Threat Exposure ManagementWed 19 Nov 2025 @ 11:00 AM (EST)
TechTalk: Improve Your Security Posture with Threat Prevention and Policy InsightsTue 11 Nov 2025 @ 06:00 PM (COT)
San Pedro Sula: Risk Management al Horno: ERM, TEM & Pizza NightTue 11 Nov 2025 @ 06:00 PM (COT)
San Pedro Sula: Risk Management al Horno: ERM, TEM & Pizza NightAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY