fwm

Description

Performs various management operations and shows various management information.

Notes:

  • For debug instructions, see the description of the fwm process in sk97638.

  • On a Multi-Domain Server, you must run these commands in the context of the applicable Domain Management Server.

Syntax

fwm [-d]

      dbload <options>

      exportcert <options>

      fetchfile <options>

      fingerprint <options>

      getpcap <options>

      ikecrypt <options>

      load [<options>]

      logexport <options>

      mds <options>

      printcert <options>

      sic_reset

      snmp_trap <options>

      unload [<options>]

      ver [<options>]

      verify <options>

Parameters

Parameter

Description

-d

Runs the command in debug mode.

Use only if you troubleshoot the command itself.

Best Practice - If you use this parameter, then redirect the output to a file, or use the script command to save the entire CLI session.

dbload <options>

Downloads the user database and network objects information to the specified targets

See fwm dbload.

exportcert <options>

Export a SIC certificate of the specified object to file.

See fwm exportcert.

fetchfile <options>

Fetches a specified OPSEC configuration file from the specified source computer.

See fwm fetchfile.

fingerprint <options>

Shows the Check Point fingerprint.

See fwm fingerprint.

getpcap <options>

Fetches the IPS packet capture data from the specified Security Gateway.

See fwm getpcap.

ikecrypt <options>

Encrypts a secret with a key.

See fwm ikecrypt.

load <options>

This command is obsolete for R80 and higher.

Use the mgmt_cli command to load a policy to a managed Security Gateway.

See fwm load.

logexport <options>

Exports a Security log file ($FWDIR/log/*.log) or Audit log file ($FWDIR/log/*.adtlog) to an ASCII file.

See fwm logexport.

mds <options>

Shows information and performs various operations on Multi-Domain Server.

See fwm mds.

printcert <options>

Shows a SIC certificate's details.

See fwm printcert.

sic_reset

Resets SIC on the Management Server.

See fwm sic_reset.

snmp_trap <options>

Sends an SNMP Trap to the specified host.

See fwm snmp_trap.

unload <options>

Unloads the policy from the specified managed Security Gateways.

See fwm unload.

ver <options>

Shows the Check Point version of the Management Server.

See fwm ver.

verify <options>

This command is obsolete for R80 and higher.

Use the mgmt_cli command to verify a policy.

See fwm verify.