Hello,
Thanks for your help, it worked :
./fw1rules.pl --output_html=rules.html --rules=modif-20050921.W
--objects=objects.C --with_implicit_rules --with_ip --show_members
--with_colors --verbose
Is it normal that conf/objects40.C and conf/rulebases.fws are not used ?
Anyway, thank you very much.
Alain
________________________________
From: Oliver
Sent: vendredi 18 novembre 2005 19:39
To: Delava Alain
Subject: RE: [FW-1] Reading an old CP 4.1 ruleset/objectbase with
R55
Yes, sorry about that.
I use the FW1Rules program. You can get it in:
http://www.wyae.de/software/fw1rules/
Good luck.
Oliver.
--- Delava Alain <[EMAIL PROTECTED]> escribió:
> Hello, it's very kind of you but obviously I cannot
> send the ruleset which is quite confidential :)
>
> How would you have done that ?
>
> Kind regards,
> Alain
>
> -----Original Message-----
> From: Oliver
> Sent: vendredi 18 novembre 2005 19:08
> To: Delava Alain
> Subject: Re: [FW-1] Reading an old CP 4.1
> ruleset/objectbase with R55
>
> Hi Alain, if you send me the following files then i
> can generate an HTML file with the rules and objects
> and i will send you:
>
> conf/objects.C
> conf/objects40.C
> conf/rulebases.fws
> conf/modif-20050921.W
>
> I assume that "modif-20050921.W" is your last policy
> name.
>
> Regards,
> Oliver.
>
> --- Delava Alain escribió:
>
> > Dear mailing list,
> >
> > I am in the process of installing a new firewall
> with NG wAI (R55) on
> > SPLAT. This firewall will replace an old
> CheckPoint
> > FW-1 version 4.1
> > which was outsourced (i.e. I don't have access to
> the server).
> >
> > I managed to obtain the config files of the old
> firewall from my
> > provider, that is, the content of those two
> > directories:
> >
> > $FWDIR/conf
> > $FWDIR/lib
> >
> > The exact version is 4.1 build 41506 (was
> installed on Solaris).
> >
> > What I would be able to do is to read (i.e. with
> the
> > GUI) the old
> > ruleset and object base in order to make an
> inventory of the rules.
> >
> > I don't want to upgrade or anything, just be able
> to read the rules in
> > a friendly manner with the R55 SmartDashboard and
> an
> > R55 test machine (on
> > which I can do anything I want, I suppose
> installing a SmartCentre
> > would be a good start). I will then be able to
> re-create some of the
> > rules on my new firewall.
> >
> > Do you have any idea on how to do that ? I don't
> have the media for
> > FW-1 ver 4.1, only R55.
> >
> > Thanks,
> > Alain
> >
> > PS : here is the exact list of the files I have :
> >
> > conf/ahclientd/
> > conf/ahclientd/ahclientd1.html
> > conf/ahclientd/ahclientd2.html
> > conf/ahclientd/ahclientd3.html
> > conf/ahclientd/ahclientd4.html
> > conf/ahclientd/ahclientd5.html
> > conf/ahclientd/ahclientd6.html
> > conf/ahclientd/ahclientd7.html
> > conf/ahclientd/ahclientd8.html
> > conf/auth.C
> > conf/cp.macro
> > conf/f2ht-bin-sfxs
> > conf/f2ht-msgs
> > conf/fwauthd.conf
> > conf/fwmaddon
> > conf/fwopsec.conf
> > conf/fwrl.conf
> > conf/install.conf
> > conf/lists/
> > conf/logviewer.C
> > conf/objects.C
> > conf/omi.conf
> > conf/options.conf
> > conf/slapd.conf
> > conf/smtp.conf
> > conf/snmp.C
> > conf/trapexec.conf
> > conf/ver.txt
> > conf/xlate.conf
> > conf/cpha.conf
> > conf/cp.license
> > conf/fwmusers
> > conf/product.conf
> > conf/gui-clients
> > conf/fwauth.NDB
> > conf/defaultfilter.pf
> > conf/rulebases.fws
> > conf/cpmad_rulebase.conf
> > conf/clients
> > conf/cphaprob.conf
> > conf/cpmad_config.conf
> > conf/cpmad_opsec.conf
> > conf/objects.C.generic
> > conf/objects.C.40
> > conf/FWrules.log
> > conf/fwauth.NDB.orig
> > conf/fwauth.NDBBKP
> > conf/fwauth.keys
> > conf/seed
> > conf/modif-20050524.W
> > conf/serverkeys.pag
> > conf/serverkeys.dir
> > conf/objects.C.merged
> > conf/objects.C-good
> > conf/objects.C.sav
> > conf/modif-20050520.pf
> > conf/objects40.C
> > conf/fw1.tar
> > conf/fwrl.conf.sav
> > conf/fwauthsav.NDB
> > conf/modif-20050520.W
> > conf/modif-20050524.pf
> > conf/modif-20050525.W
> > conf/modif-20050525.pf
> > conf/modif-20050530.W
> > conf/modif-20050530.pf
> > conf/modif-20050531.W
> > conf/modif-20050531.pf
> > conf/modif-20050601.W
> > conf/modif-20050601.pf
> > conf/modif-20050608.W
> > conf/modif-20050608.pf
> > conf/modif-20050610.W
> > conf/modif-20050610.pf
> > conf/users.27537
> > conf/objects.C-20050420
> > conf/modif-20050613.W
> > conf/modif-20050613.pf
> > conf/modif-20050620.W
> > conf/modif-20050620.pf
> > conf/modif-20050621.W
> > conf/modif-20050621.pf
> > conf/modif-20050708.W
> > conf/modif-20050708.pf
> > conf/modif-20050726.W
> > conf/modif-20050726.pf
> > conf/modif-20050804.W
> > conf/modif-20050804.pf
> > conf/modif-20050804-2.W
> > conf/modif-20050804-2.pf
> > conf/modif-20050919.W
> > conf/modif-20050919.pf
> > conf/modif-20050921.W
> > conf/modif-20050921.pf
> > conf/stefvdes-20050318.W
> > conf/stefvdes-20050318.pf
> > conf/objects.C.bak
> > conf/modif-20050503.W
> > conf/modif-20050503-2.W
> > conf/modif-20050503-2.pf
> > conf/modif-20050511.W
> > conf/modif-20050511.pf
> > conf/modif-20050513.W
> > conf/modif-20050513-2.W
> > conf/modif-20050513-2.pf
> > conf/Standard.W
> >
> >
> >
> > lib/auth.def
> > lib/base.def
> > lib/code.def
> > lib/control.map
> > lib/crypt.def
> > lib/dcerpc.def
> > lib/default.pf
> > lib/defaultfilter.boot
> > lib/defaultfilter.drop
> > lib/dup.def
> > lib/eht_set.C
> > lib/formats.def
> > lib/fwconn.h
>
=== message truncated ===
__________________________________________________
Correo Yahoo!
Espacio para todos tus mensajes, antivirus y antispam ¡gratis!
Regístrate ya - http://correo.espanol.yahoo.com/
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================