- Products
- Learn
- Local User Groups
- Partners
- More
Access Control and Threat Prevention Best Practices
5 November @ 5pm CET / 11am ET
Firewall Uptime, Reimagined
How AIOps Simplifies Operations and Prevents Outages
Overlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Spark Management Portal and More!
Hello we have R81.10 MDS w/ R81.10 Security VE Gateway
This is a fresh VE gateway deployment with Take 30 installed (latest)
Have not been able to ever install any policy , i have establish SIC trust and then I am stuck .
How can I fix this? Seems like a bug maybe as the policy I am trying to deploy is very minimal.
I am not even trying to deploy any threat policy at this time .
this issue was solved by TAC eventually.
the very short answer was that basically what we had to do what remove the gateway object and re-add it .
What do you see if you only do policy verification?
Andy
yes of course, done that! and it is successful . no issue reported there .
on my gateway
# ls -lh connectra_rulenums.html
ls: cannot access connectra_rulenums.html: No such file or directory
If you run this command from expert mode-> find / -name connectra_rulenums.html
Do you see anything?
By the way, its on management(also R81.10), NOT gateway
From my lab:
[Expert@MANAGEMENT:0]# find / -name connectra_rulenums.html
find: /proc/27779: No such file or directory
find: /proc/28071: No such file or directory
find: /proc/28073: No such file or directory
/var/log/opt/CPsuite-R81/fw1/log/connectra_rulenums.html
[Expert@MANAGEMENT:0]#
Andy
OK yes i found it
/var/log/mds_logs/MGMT-MDS-01/log/connectra_rulenums.html
to confirm .
i just replace step 1 with the path below??
/var/log/mds_logs/MGMT-MDS-01/log/connectra_rulenums.html
What I would personally do, just to be safe, make backup first...so cd $FWDIR/log, then cp connectra_rulenums.html connectra_rulenums.html.backup and maybe get backup file off the server (JUST IN CASE) and then follow the instructions. I dont want to sound difficult now, but I would also take a backup as well.
tried the solution in the sk and still getting the same error . *sigh*
Thats unfortunate. O well...I would certainly contact TAC next. In the meantime, try from mgmt ssh something like below, just replace firewall name and correct policy )below is example from my lab)
mgmt_cli install-policy policy-package "R81.10_policy" targets "gateway"
Andy
Should the file "connectra_rulenums.html" exist in every single CMA when referring to an MDS?
my policy name = "standard"
when i run the cmdlt i got
code: "generic_err_object_not_found"
message: "Requested object [standard] not found"
That Im not 100% sure, you may wish to confirm with TAC on it.
Andy
Can you paste exact command you ran?
Have you tried forcing a non accelerated policy install or patching with JHF T45?
yes i patched to JHF T45 . same issue .
How do i force a non accelerated policy install ? i can try that
was worth a shot . still failed though! arggg .
Sorry to say, but I got nothing else... : - (. I guess doing debug would be next step...
this issue was solved by TAC eventually.
the very short answer was that basically what we had to do what remove the gateway object and re-add it .
 
					
				
				
			
		
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count | 
|---|---|
| 22 | |
| 21 | |
| 11 | |
| 9 | |
| 9 | |
| 7 | |
| 7 | |
| 7 | |
| 7 | |
| 5 | 
Wed 05 Nov 2025 @ 11:00 AM (EST)
TechTalk: Access Control and Threat Prevention Best PracticesThu 06 Nov 2025 @ 10:00 AM (CET)
CheckMates Live BeLux: Get to Know Veriti – What It Is, What It Does, and Why It MattersTue 11 Nov 2025 @ 05:00 PM (CET)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - AMERTue 11 Nov 2025 @ 10:00 AM (CST)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - EMEAAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY