List of Available Features in Roles
|
Important: |
Feature name in |
Feature name in |
Description |
Affected commands |
---|---|---|---|
Authentication Servers |
|
Controls authentication through external RADIUS or TACACS+ server. |
set aaa radius-servers * set aaa tacacs-servers * delete aaa radius-servers * delete aaa tacacs-servers * add aaa radius-servers * add aaa tacacs-servers * show aaa radius-servers * show aaa tacacs-servers * |
Advanced VRRP |
|
Controls the Advanced Virtual Router Redundancy Protocol (VRRP) |
set vrrp * show vrrp * |
Appliance Maintenance |
|
Controls access to the "Overview" page for Appliance Maintenance. |
|
ARP |
|
Controls ARP - dynamic ARP entries, static ARP entries, and proxy ARP entries. |
add arp * delete arp * set arp * show arp * |
Banner Messages |
|
Controls the Banner Message and Message of the Day. |
set message * delete message * show message * |
BGP |
|
Controls dynamic routing through the Border Gateway Protocol (BGP). |
set as * set router-id * set bgp * show route bgp * show as * show router-id * show bgp * |
Blades Summary |
|
Shows summary for enabled Software Blades. |
|
Certificate Authority |
|
Controls the Certificate Authority on a Management Server |
cpca_client |
Change My Password |
|
Changes your user account password. |
set selfpasswd * |
Cloning Group |
|
Controls the configuration of Gaia |
set cloning-group * add cloning-group * delete cloning-group * join cloning-group * re-synch cloning-group * leave cloning-group * show cloning-group * |
Cloning Group Management |
|
Controls the management of Gaia Cloning Groups. |
set cloning-group-management * |
|
Controls clustering. |
add cluster * set cluster * delete cluster * show cluster * |
|
Core Dump |
|
Controls core dumps. |
set core-dump * show core-dump * |
DHCP Relay |
|
Controls the Relay of IPv4 DHCP and IPv4 BOOTP messages between DHCP clients and DHCP servers on different IPv4 networks. |
set bootp * show bootp * |
DHCP Server |
|
Controls the DHCP Server configuration. |
set dhcp service * delete dhcp service * set dhcp client * delete dhcp client * add dhcp client * set dhcp server * delete dhcp server * add dhcp server * show dhcp service * show dhcp client * show dhcp server * |
DHCPv6 Relay |
|
Controls the Relay of DHCPv6 messages between DHCP clients and DHCP servers on different IPv6 networks. |
set ipv6 dhcp6relay * show ipv6 dhcp6relay * |
Display Configuration |
|
Saves and show the Gaia configuration. |
save configuration * show configuration * |
Display Format |
|
Controls the format of time, date, and netmask. |
set format * show format * |
DNS |
|
Controls the DNS Server configuration. |
set dns * delete dns * show dns * |
Domain Name |
|
Controls the domain name configuration. |
set domainname * delete domainname show domainname |
|
Downloads the SmartConsole from the Gaia Portal |
N / A |
|
|
Access to the Expert mode shell. |
expert |
|
Expert Password |
|
Changes the Expert mode password (interactive). |
set expert-password |
Expert Password Hash |
|
Changes the Expert mode password using password hash. |
set expert-password-hash * |
Extended Commands |
|
Controls the ability to define additional Extended Commands for the Gaia Clish |
add command * delete command * show command * show commands show extended * |
Factory Defaults |
|
Restores the Gaia OS to Factory Defaults. |
set fcd * show fcd * |
Firewall Management |
|
Controls the Login and Logout on a Management Server. |
mgmt * |
Front Panel |
|
Controls the front panel LCD available on some Check Point appliances. |
set lcd * show lcd * |
Hardware Health |
|
Controls the hardware sensor monitoring. |
show sysenv all cpstat -f sensors os |
High Availability |
|
Controls the "Overview" page for High Availability. |
|
Host Access |
|
Controls which hosts are allowed to connect to Gaia. |
add allowed-client * delete allowed-client * show allowed-client * |
Host Address |
|
Controls known hosts and their IP addresses. |
add host * set host * delete host * show host * |
Host Name |
|
Controls the Gaia hostname. |
set hostname * show hostname * |
IGMP |
|
Controls multicast group memberships through the Internet Group Management Protocol (IGMP). |
set igmp * show igmp * |
Inactivity timeout |
|
Controls the inactivity timeout for Gaia Portal and Gaia Clish. |
set inactivity-timeout * show inactivity-timeout * |
Inbound Route Filters |
|
Controls the IPv4 Inbound Route Filters for RIP, OSPFv2, and BGP IPv4. |
set inbound-route-filter * |
Inbound Route Filters |
|
Controls the IPv6 Inbound Route Filters for RIPng, OSPFv3, and BGP IPv6. |
set ipv6 inbound-route-filter * |
Installation |
|
Runs the Gaia First Time Configuration Wizard. |
|
Interface Naming |
|
Controls a different name for an existing interface (requires a reboot and reconfiguration of the interface). |
set interface-name * |
IP Broadcast Helper |
|
Controls the forwarding of UDP broadcast traffic to other interfaces. |
set iphelper * show iphelper * |
IP Reachability Detection |
|
Controls the reachability detection of IP Addresses. |
set ip-reachability-detection * show ip-reachability-detection * |
IPv4 Static Routes |
|
Controls IPv4 static routes. |
set static-route * show route static * |
IPv6 Router Discovery |
|
Controls the IPv6 router discovery. |
set ipv6 rdisc6 * show ipv6 rdisc6 * |
IPv6 State |
|
Controls the IPv6 stack. |
set ipv6-state * show ipv6-state |
IPv6 Static Routes |
|
Controls IPv6 static routes. |
set ipv6 static-route * show ipv6 route static * |
IPv6 VRRP |
|
Controls the IPv6 Virtual Router Redundancy Protocol (VRRPv3). |
set ipv6 vrrp6 * show ipv6 vrrp6 * |
Job Scheduler |
|
Controls scheduled automated tasks that perform actions at a specific time. |
add cron * set cron * delete cron * show cron * |
License Activation |
|
Controls access to the "Activate Licenses" page. |
cplic |
License Configuration |
|
Controls access to the "Manage License" page. |
cplic |
Lights Out Management (LOM) Configuration |
|
Shows the Lights Out Management (LOM) Configuration. |
show lom * |
Mail Notification |
|
Controls mail notifications Gaia sends. |
set mail-notification * show mail-notification * |
Maintenance |
|
Controls access to the "Overview" page for Maintenance. |
N / A |
|
Controls which interface is used for management (main interface). |
set management * show management * |
|
NDP |
|
Controls the IPv6 Neighbour Discovery Protocol. |
add neighbor-entry * set neighbor * delete neighbor-entry * show neighbor * |
NetFlow Export |
|
Controls the NetFlow Export. |
add netflow * set netflow * delete netflow * show netflow * |
Network Access |
|
Controls the TELNET access to Gaia. |
set net-access * show net-access * |
Network Interfaces |
|
Controls interface configuration:
|
set interface * add interface * delete interface * add bonding * set bonding * delete bonding * add bridging * set bridging * delete bridging * add pppoe * delete pppoe * set pppoe * add gre * delete gre * show interface * show interfaces show bonding * show bridging * show pppoe * show gre * |
Network Management |
|
Controls access to the "Overview" page for Network Management. |
show interface * show interfaces * set interface * |
NTP |
|
Controls the Network Time Protocol for synchronizing the Gaia clock. |
add ntp * set ntp * delete ntp * show ntp * |
OSPF |
|
Controls IPv4 dynamic routing through the Open Shortest-Path First protocol (OSPFv2). |
set ospf * show ospf * show route ospf * |
OSPF v3 |
|
Controls IPv6 dynamic routing through the Open Shortest-Path First protocol v3 (OSPFv3). |
set ipv6 ospf3 * set router-id * show ipv6 ospf3 * show ipv6 route ospf3 * show router-id * |
Password Policy |
|
Controls password and account policies. |
set password-controls * show password-controls * |
Performance Optimization |
|
Controls Multi-Queue on a Security Gateway |
set multi-queue * show multi-queue * |
PIM |
|
Controls the Protocol-Independent Multicast (PIM) configuration. |
set pim * show pim * show mfc * |
Policy Based Routing |
|
Controls policy based routing rules and action tables. |
set pbr * set pbrroute * show pbr * show pbrroute * |
Policy Routing |
|
Controls access to the "Overview" page for Policy Based Routing. |
set pbr * set pbrroute * show pbr * show pbrroute * |
Prefix Lists and Prefix Trees |
|
Controls Prefix Lists and Prefix Trees used in routing policy. |
set prefix-tree * set prefix-list * |
Proxy Settings |
|
Controls the Proxy Server configuration. |
set proxy * delete proxy * show proxy * |
RAID Monitoring |
|
Controls access to the "Overview" page for RAID volumes monitoring. |
raidconfig raid_diagnostic |
RIP |
|
Controls dynamic routing through the Routing Information Protocol for IPv4 (RIP). |
set rip * show rip * |
RIPng |
|
Controls dynamic routing through the Routing Information Protocol for IPv6 (RIPng). |
set ipv6 ripng * show ipv6 ripng * |
Roles |
|
Controls user roles. |
add rba * delete rba * show rba * |
Route |
|
Shows IPv4 and IPv6 routing table. |
show route * show ipv6 route * |
Route Aggregation |
|
Creates a supernet network from the combination of networks with a common routing prefix. |
set aggregate * show route aggregate * |
Route Injection Mechanism |
|
Controls the Route Injection Mechanism (RIM). |
set kernel-routes * show route kernel * |
Route Map |
|
Controls route map configuration. |
set routemap * show routemap * show routemaps * |
Route Redistribution |
|
Controls advertisement of IPv4 routing information from one protocol to another. |
set route-redistribution * |
Route Redistribution |
|
Controls advertisement of IPv6 routing information from one protocol to another. |
set ipv6 route-redistribution * |
Routed ClusterXL |
|
Controls how the RouteD daemon interacts with ClusterXL on Gaia. |
set routed-clusterxl * show routed-clusterxl * |
Router Discovery |
|
Controls the ICMP Router Discovery on Gaia. |
set rdisc * show rdisc * |
Router Service |
|
Controls access to the "Overview" page for Routing Services. |
|
Routing Monitor |
|
Shows summary information about routes. |
show route * |
Routing Options |
|
Controls protocol ranks and trace (debug) options. |
set routedsyslog * set trace * set tracefile * set max-path-splits * set nexthop-selection * set protocol-rank * set router-options * show trace * show routed * show protocol-rank * show router-options * |
SAM (Accelerator Card) |
|
Deprecated. |
show sam * |
Scheduled Backup |
|
Controls Gaia scheduled backups. |
add backup-scheduled * set backup-scheduled * delete backup-scheduled * show backup-scheduled |
Scratchpad Configuration |
|
Controls the Scratchpad in the Gaia Portal. |
N / A |
Security Management GUI Clients |
|
Controls the allowed Security Management GUI Clients. |
|
Shutdown |
|
Controls the shutdown and reboot of Gaia. |
halt * reboot * |
Snapshot |
|
Controls Gaia snapshots. |
add snapshot * set snapshot * delete snapshot * show snapshots show snapshot * |
SNMP |
|
Controls Gaia monitoring through the Simple Network Management Protocol (SNMP). |
add snmp * set snmp * delete snmp * show snmp * |
Software Updates Policy Management |
|
CPUSE |
Note - See sk92449 for the most updated information. installer restore_policy * set installer * set installer download_mode * set installer install_mode * set installer download_mode schedule * set installer install_mode schedule * |
Static Multicast Routes |
|
Controls multicast static routes. |
set static-mroute * show static-mroute * |
System Asset |
|
Shows the hardware asset summary. |
show asset * |
System Backup |
|
Controls Gaia backups. |
add backup * set backup * backup * restore * delete backup * show backups show backup * show restore * |
System Configuration |
|
Shows the System Configuration. |
show configuration * |
System Groups |
|
Controls the Gaia user groups, for advanced management of privileges. |
add group * set group * delete group * show groups show group * |
System Logging |
|
Controls system logging. |
add syslog * set syslog * delete syslog * show syslog * |
System Management |
|
Controls access to the "Overview" page for System Management. |
|
System Status |
|
Shows the hardware sensor information. |
show sysenv * |
TACACS_Enable |
|
Controls the TACACS+ configuration. |
tacacs_enable * show tacacs_enable * |
Time |
|
Controls the time and date configuration. |
set clock * set date * set time * set timezone * show clock * show date * show time * show timezone * |
Upgrade |
|
Deprecated - use the CPUSE. |
upgrade * add upgrade * delete upgrade * show upgrade * |
Upgrades (CPUSE) |
|
CPUSE - Controls the software packages. |
Note - See sk92449 for the most updated information. show installer * show installer available_packages * show installer available_local_packages * show installer installed_packages * show installer package_status * add installer * add installer private_url * installer * installer download * installer install * installer upgrade * installer uninstall * installer stop * installer start * installer restore_policy * set installer * set installer download_mode * set installer install_mode * set installer download_mode schedule * set installer install_mode schedule * |
Upgrades (CPUSE) |
|
Controls access to the "Overview" page for CPUSE. |
show installer * set installer * installer agent * |
User Management |
|
Controls access to the "Overview" page for User Management. |
|
Users |
|
Controls user accounts. |
add user * set user * delete user * show user * show users * |
Version |
|
Shows the version of the installed Check Point product, and Gaia build and kernel. |
show version * |
Virtual-System |
|
Controls VSX You must configure all Virtual Systems in SmartConsole only. |
add virtual-system * set virtual-system * delete virtual-system * show virtual-system * |
VPNT |
|
Controls the VPN Tunneling. |
add vpn * set vpn * delete vpn * |
VRRP |
|
Controls the IPv4 Virtual Router Redundancy Protocol (VRRPv2) - Monitored Circuit/Simplified VRRP. |
set vrrp * add mcvr * set mcvr * delete mcvr * show vrrp * show mcvr * |
VSX |
|
Controls the VSX mode (to be used only by Check Point Support only). |
set vsx * show vsx * |
Web configuration |
|
Controls the Gaia Portal. |
set web * generate web * show web * |