Hello,

Thanks for your help, it worked :
 
./fw1rules.pl --output_html=rules.html --rules=modif-20050921.W
--objects=objects.C --with_implicit_rules --with_ip --show_members
--with_colors --verbose

Is it normal that conf/objects40.C and conf/rulebases.fws are not used ?

Anyway, thank you very much.

Alain
 


________________________________

        From: Oliver
        Sent: vendredi 18 novembre 2005 19:39
        To: Delava Alain
        Subject: RE: [FW-1] Reading an old CP 4.1 ruleset/objectbase with
R55
        
        

        Yes, sorry about that.
        I use the FW1Rules program. You can get it in:
        http://www.wyae.de/software/fw1rules/
        
        Good luck.
        
        Oliver.
        
         --- Delava Alain <[EMAIL PROTECTED]> escribió:
        
        > Hello, it's very kind of you but obviously I cannot
        > send the ruleset which is quite confidential :)
        >
        > How would you have done that ?
        >
        > Kind regards,
        > Alain
        >
        > -----Original Message-----
        > From: Oliver 
        > Sent: vendredi 18 novembre 2005 19:08
        > To: Delava Alain
        > Subject: Re: [FW-1] Reading an old CP 4.1
        > ruleset/objectbase with R55
        >
        > Hi Alain, if you send me the following files then i
        > can generate an HTML file with the rules and objects
        > and i will send you:
        >
        > conf/objects.C
        > conf/objects40.C
        > conf/rulebases.fws
        > conf/modif-20050921.W
        >
        > I assume that "modif-20050921.W" is your last policy
        > name.
        >
        > Regards,
        > Oliver.
        >
        >  --- Delava Alain escribió:
        >
        > > Dear mailing list,
        > >
        > > I am in the process of installing a new firewall
        > with NG wAI (R55) on
        > > SPLAT. This firewall will replace an old
        > CheckPoint
        > > FW-1 version 4.1
        > > which was outsourced (i.e. I don't have access to
        > the server).
        > >
        > > I managed to obtain the config files of the old
        > firewall from my
        > > provider, that is, the content of those two
        > > directories:
        > >    
        > >     $FWDIR/conf
        > >     $FWDIR/lib
        > >
        > > The exact version is 4.1 build 41506 (was
        > installed on Solaris).
        > >
        > > What I would be able to do is to read (i.e. with
        > the
        > > GUI) the old
        > > ruleset and object base in order to make an
        > inventory of the rules.
        > >
        > > I don't want to upgrade or anything, just be able
        > to read the rules in
        > > a friendly manner with the R55 SmartDashboard and
        > an
        > > R55 test machine (on
        > > which I can do anything I want, I suppose
        > installing a SmartCentre
        > > would be a good start). I will then be able to
        > re-create some of the
        > > rules on my new firewall.
        > >
        > > Do you have any idea on how to do that ? I don't
        > have the media for
        > > FW-1 ver 4.1, only R55.
        > >
        > > Thanks,
        > > Alain
        > >
        > > PS : here is the exact list of the files I have :
        > >
        > > conf/ahclientd/
        > > conf/ahclientd/ahclientd1.html
        > > conf/ahclientd/ahclientd2.html
        > > conf/ahclientd/ahclientd3.html
        > > conf/ahclientd/ahclientd4.html
        > > conf/ahclientd/ahclientd5.html
        > > conf/ahclientd/ahclientd6.html
        > > conf/ahclientd/ahclientd7.html
        > > conf/ahclientd/ahclientd8.html
        > > conf/auth.C
        > > conf/cp.macro
        > > conf/f2ht-bin-sfxs
        > > conf/f2ht-msgs
        > > conf/fwauthd.conf
        > > conf/fwmaddon
        > > conf/fwopsec.conf
        > > conf/fwrl.conf
        > > conf/install.conf
        > > conf/lists/
        > > conf/logviewer.C
        > > conf/objects.C
        > > conf/omi.conf
        > > conf/options.conf
        > > conf/slapd.conf
        > > conf/smtp.conf
        > > conf/snmp.C
        > > conf/trapexec.conf
        > > conf/ver.txt
        > > conf/xlate.conf
        > > conf/cpha.conf
        > > conf/cp.license
        > > conf/fwmusers
        > > conf/product.conf
        > > conf/gui-clients
        > > conf/fwauth.NDB
        > > conf/defaultfilter.pf
        > > conf/rulebases.fws
        > > conf/cpmad_rulebase.conf
        > > conf/clients
        > > conf/cphaprob.conf
        > > conf/cpmad_config.conf
        > > conf/cpmad_opsec.conf
        > > conf/objects.C.generic
        > > conf/objects.C.40
        > > conf/FWrules.log
        > > conf/fwauth.NDB.orig
        > > conf/fwauth.NDBBKP
        > > conf/fwauth.keys
        > > conf/seed
        > > conf/modif-20050524.W
        > > conf/serverkeys.pag
        > > conf/serverkeys.dir
        > > conf/objects.C.merged
        > > conf/objects.C-good
        > > conf/objects.C.sav
        > > conf/modif-20050520.pf
        > > conf/objects40.C
        > > conf/fw1.tar
        > > conf/fwrl.conf.sav
        > > conf/fwauthsav.NDB
        > > conf/modif-20050520.W
        > > conf/modif-20050524.pf
        > > conf/modif-20050525.W
        > > conf/modif-20050525.pf
        > > conf/modif-20050530.W
        > > conf/modif-20050530.pf
        > > conf/modif-20050531.W
        > > conf/modif-20050531.pf
        > > conf/modif-20050601.W
        > > conf/modif-20050601.pf
        > > conf/modif-20050608.W
        > > conf/modif-20050608.pf
        > > conf/modif-20050610.W
        > > conf/modif-20050610.pf
        > > conf/users.27537
        > > conf/objects.C-20050420
        > > conf/modif-20050613.W
        > > conf/modif-20050613.pf
        > > conf/modif-20050620.W
        > > conf/modif-20050620.pf
        > > conf/modif-20050621.W
        > > conf/modif-20050621.pf
        > > conf/modif-20050708.W
        > > conf/modif-20050708.pf
        > > conf/modif-20050726.W
        > > conf/modif-20050726.pf
        > > conf/modif-20050804.W
        > > conf/modif-20050804.pf
        > > conf/modif-20050804-2.W
        > > conf/modif-20050804-2.pf
        > > conf/modif-20050919.W
        > > conf/modif-20050919.pf
        > > conf/modif-20050921.W
        > > conf/modif-20050921.pf
        > > conf/stefvdes-20050318.W
        > > conf/stefvdes-20050318.pf
        > > conf/objects.C.bak
        > > conf/modif-20050503.W
        > > conf/modif-20050503-2.W
        > > conf/modif-20050503-2.pf
        > > conf/modif-20050511.W
        > > conf/modif-20050511.pf
        > > conf/modif-20050513.W
        > > conf/modif-20050513-2.W
        > > conf/modif-20050513-2.pf
        > > conf/Standard.W
        > >
        > >
        > >
        > > lib/auth.def
        > > lib/base.def
        > > lib/code.def
        > > lib/control.map
        > > lib/crypt.def
        > > lib/dcerpc.def
        > > lib/default.pf
        > > lib/defaultfilter.boot
        > > lib/defaultfilter.drop
        > > lib/dup.def
        > > lib/eht_set.C
        > > lib/formats.def
        > > lib/fwconn.h
        >
        === message truncated ===
        
        
        __________________________________________________
        Correo Yahoo!
        Espacio para todos tus mensajes, antivirus y antispam ¡gratis!
        Regístrate ya - http://correo.espanol.yahoo.com/
        

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to