Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
HeikoAnkenbrand
Champion Champion
Champion

New daemon or processes under R80.20!

Hi R&D guys,

 

for what are the new daemon or processes under R80.20? I once wrote my guess behind it.

 

scanengine_b      -> ted scan engine
scanengine_k      -> ted scan engine
kissd                     -> kernel infrastructure service daemon
sxl_statd               -> new R80.20 SecureXL user mode status daemon ???
lpd                         -> line printer daemon on a firewall  (It's just a joke)

 

#ps -auxef

cut >>>

admin     5884  0.0  0.1  22648  5964 ?        Ss   Nov07   0:33  \_ lpd PPKDIR=/opt/CPppak-R80.20 INFODIR=/opt/CPinfo-10 DIAGDIR=/opt/CPdiag-R80.20 MAIL_CONFIG=/opt/postfix/etc/postfix CPMDIR=/opt/CPsuite-R80.20/fw1...

<<<

 

Could you please describe the function!

 

They are not to be found in the following SK:

Check Point Processes and Daemons 

Security Servers - daemon names and definitions 

 

Regards

Heiko

➜ CCSM Elite, CCME, CCTE
5 Replies
HeikoAnkenbrand
Champion Champion
Champion

Hi Dameon,

Hi Valeri,

Do you have info about the new R80.20 daemon and processes?

Regards

Heiko

➜ CCSM Elite, CCME, CCTE
PhoneBoy
Admin
Admin

No idea, personally.

It looks like lpd is related to cpdiag, though.

Dmitry_Krupnik
Employee Alumnus
Employee Alumnus

Hello Heiko,


Thanks for pointing this out, currently we are working on the sk97638 and all questions related to the new daemons should be resolved. Regarding to the LPD I know, that this daemon registered by CPDiag for diagnostics platform.

Regards,
Dmitry Krupnik

ED
Advisor

Hi Heiko,

I asked about lpd process in this thread earlier (R80.10). https://community.checkpoint.com/thread/8054-cpwdadmin-list-overview-sms

Yonatan Philip answered this:

Hi,

The LPD (or Log Parser Daemon) will scan preconfigured files and search for predefined signatures.
CPDiag will use those results later on.

 

TBH I don't know too much about this daemon and how it works, but Günther had the right idea when he pointed you to CPDiag.

 

HTH

 Yonatan 

Dmitry_Krupnik
Employee Alumnus
Employee Alumnus

Hello Heiko,

I want to inform you, that the sk97638 was updated. 

We appreciate your feedback and assistance.

Regards,
Dmitry Krupnik

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events