Description
Manages SIC on the Security Gateway.
For additional information, see sk65764: How to reset SIC.
Note - This command corresponds to the option Secure Internal Communication in the cpconfig menu.
Syntax
cp_conf -h sic cert_pull <Management Server> <DAIP GW object> init <Activation Key> [norestart] state  | 
Parameters
Parameter  | 
Description  | 
|---|---|
  | 
Shows the built-in usage.  | 
cert_pull <Management Server  | 
For DAIP Security Gateways, pulls a SIC certificate from the specified Security Management Server for the specified <DAIP GW object>: 
  | 
  | 
Resets the one-time SIC activation key. You can specify not to restart Check Point services.  | 
  | 
Shows the current state of the SIC Trust.  | 
Example
[Expert@MyGW:0]# cp_conf sic state 
 Trust State: Trust established 
 [Expert@MyGW:0]#  |