paloaltonetworks:migration:check_point
Check Point
You need four files.
- objects_5_0.C
- policy.W (on 75.40 you may need to copy rulebases_5_0.fws to policy.W as policy.W may not be available.)
- routes.txt
show routenetstat -nrshow route all - rulebases_5_0.fws
When creating policy.W from rulebases_5_0.fws, you need to remove the following from the start of file.
( :rule-base
You also need to remove the following and all text that comes after it.
:rule_adtr (
On a Multi-domain server
- SSH to Management server
mdsenv <DOMAINNAME>cd $FWDIR/confcp <policy>.W /home/admin- I then used WinSCP to transfer the file off from the management server
On a distributed server
- SSH to Management server
cd $FWDIR/confcp <policy>.W /home/user(where user is the user you are logged in as; admin for example)- Use WinSCP/FileZilla/etc to transfer the file off from the management server
If the box is running on Windows, you might find data in C:\WINDOWS\FW1\R75.20\fw1\conf
paloaltonetworks/migration/check_point.txt · Last modified: by 127.0.0.1
