pdp monitor

Description

Monitors the status of connected PDPClosed Check Point Identity Awareness Security Gateway that acts as Policy Decision Point: acquires identities from identity sources; shares identities with other gateways. sessions.

You can run different queries with the commands below to get the output, in which you are interested.

Syntax

pdp monitor

      all

      client_type <Client Type>

      cv_ge <Version>

      cv_le <Version>

      groups <Group Name>

      ip <IP address>

      machine <Computer Name>

      machine_exact

      mad

      network

      s_port

      summary

      user <Username>

      user_exact

Parameters

Parameter

Description

all

Shows information for all connected sessions.

client_type <Client Type>

Shows all sessions that connect through the specified client type.

Possible client types are:

cv_ge <Version>

Shows all sessions that are connected with a client version that is higher than (or equal to) the specified version.

cv_le <Version>

Shows all sessions that are connected through a client version that is lower than (or equal to) the specified version.

groups <Group Name>

Shows all sessions of users or computers that are members of the specified group.

ip <IP address>

Shows session information for the specified IP address.

machine <Computer Name>

Shows session information for the specified computer name.

machine_exact

Shows sessions filtered by the exact computer name.

mad

Shows all sessions that relate to a managed asset.

For example, all sessions that successfully performed computer authentication.

network

Shows sessions filtered by a network wildcard.

For example: 192.168.72.*

s_port

Shows sessions filtered by the assigned source port (MUH sessions only).

summary

Shows the summary monitoring data.

user <Username>

Shows session information for the specified user name.

user_exact

Shows sessions filtered by the exact user.

Example - Show the connected user behind the IP address 192.0.2.1

pdp monitor ip 192.0.2.1

Note - The last field "Published" indicates whether the session information was already published to the Gateway PEPs, whose IP addresses are listed.