Troubleshooting: Cannot Complete Reboot

Important - This section does not apply to Scalable Platforms (Maestro and Chassis).

In some configurations, the Default Filter policy prevents the Security GatewayClosed Dedicated Check Point server that runs Check Point software to inspect traffic and enforce Security Policies for connected network resources. from completing the reboot after installation.

Firstly, look at the Default Filter. Does the Default Filter allow traffic required by the boot procedures?

Secondly, if the boot process cannot finish successfully, remove the Default Filter:

Step

Instructions

1

Connect to the Security Gateway over serial console.

2

Reboot the Security Gateway.

3

During boot, press any key to enter the Boot Menu.

4

Select the Start in maintenance mode.

5

Enter the Expert mode password.

6

Set the Default Filter to not load again:

  1. Go to the $FWDIR directory:

    cd /opt/CPsuite-<VERSION>/fw1/

  2. Set the Default Filter to not load again:

    ./fwboot bootconf set_def

7

In the $FWDIR/boot/boot.conf file, examine the value of the "DEFAULT_FILTER_PATH":

  1. Go to the $FWDIR directory:

    cd /opt/CPsuite-<VERSION>/fw1/

  2. examine the value of the "DEFAULT_FILTER_PATH":

    grep DEFAULT_FILTER_PATH boot/boot.conf

8

Reboot the Security Gateway.