Description
Manages SIC on the Security Gateway.
For additional information, see sk65764: How to reset SIC.
Note - This command corresponds to the option Secure Internal Communication in the cpconfig
menu.
Syntax
cp_conf -h sic cert_pull <Management Server> <DAIP GW object> init <Activation Key> [norestart] state |
Parameters
Parameter |
Description |
---|---|
|
Shows the built-in usage. |
cert_pull <Management Server |
For DAIP Security Gateways, pulls a SIC certificate from the specified Security Management Server for the specified <DAIP GW object>:
|
|
Resets the one-time SIC activation key. You can specify not to restart Check Point services. |
|
Shows the current state of the SIC Trust. |
Example
[Expert@MyGW:0]# cp_conf sic state
Trust State: Trust established
[Expert@MyGW:0]# |