<?xml version="1.0"?>
<?xml-stylesheet type="text/css" href="http://www.cpwiki.net/skins/common/feed.css?303"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>http://www.cpwiki.net/index.php?action=history&amp;feed=atom&amp;title=Useful_firewall_one_liners</id>
		<title>Useful firewall one liners - Revision history</title>
		<link rel="self" type="application/atom+xml" href="http://www.cpwiki.net/index.php?action=history&amp;feed=atom&amp;title=Useful_firewall_one_liners"/>
		<link rel="alternate" type="text/html" href="http://www.cpwiki.net/index.php?title=Useful_firewall_one_liners&amp;action=history"/>
		<updated>2026-04-29T09:55:49Z</updated>
		<subtitle>Revision history for this page on the wiki</subtitle>
		<generator>MediaWiki 1.21.10</generator>

	<entry>
		<id>http://www.cpwiki.net/index.php?title=Useful_firewall_one_liners&amp;diff=162&amp;oldid=prev</id>
		<title>Nighthawk: Pushed from Themanclub.</title>
		<link rel="alternate" type="text/html" href="http://www.cpwiki.net/index.php?title=Useful_firewall_one_liners&amp;diff=162&amp;oldid=prev"/>
				<updated>2013-07-10T16:00:08Z</updated>
		
		<summary type="html">&lt;p&gt;Pushed from Themanclub.&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;&lt;br /&gt;
== state sync sent/rec packets check ==&lt;br /&gt;
 fw ctl pstat | grep -A 1 &amp;quot;Sync p&amp;quot; | awk '{print $1,$2,$3}' &lt;br /&gt;
&lt;br /&gt;
 fw ctl pstat | grep -A 1 &amp;quot;Sync packets sent&amp;quot; | grep total | awk '{print $3}' | awk -F , '{print $1}'&lt;br /&gt;
 &lt;br /&gt;
 fw ctl pstat | grep -A 1 &amp;quot;Sync packets received&amp;quot; | grep total | awk '{print $3}' | awk -F , '{print $1}'&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== VRRP ==&lt;br /&gt;
get VRIDs&lt;br /&gt;
 clish -c &amp;quot;show vrrp interfaces&amp;quot; | grep VRID | tr -d '\n' ; echo &amp;quot;&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== nokia validation ==&lt;br /&gt;
&lt;br /&gt;
'''Interfaces'''&lt;br /&gt;
 ssh -l username desthostname &amp;quot;/bin/ifconfig -a | grep broadcast | grep -v vrrpmac&amp;quot; | awk '{ i = NF-2; print $i }'&lt;br /&gt;
&lt;br /&gt;
'''Routes on ipso 6.x (remote command from jumpbox)'''&lt;br /&gt;
 ssh -l username firewall_name &amp;quot;netstat -rn | grep user | sort -n&amp;quot; | awk '{print $1, $4,$8}' &lt;br /&gt;
'''Route on ipso 4.x'''&lt;br /&gt;
 ssh -l username firewall_name &amp;quot;netstat -rn | grep iCSU | sort -n&amp;quot; | awk '{print $1, $2,$6}' &lt;br /&gt;
&lt;br /&gt;
'''routes '''&lt;br /&gt;
 cat /config/active | grep &amp;quot;default:gateway:address&amp;quot;&lt;br /&gt;
&lt;br /&gt;
'''grab active interfaces only'''&lt;br /&gt;
 clish -c &amp;quot;show interfaces&amp;quot; | grep -B 1 On | grep Interface|awk '{print $3}'&lt;br /&gt;
&lt;br /&gt;
grab active interfaces and produce clish commands for '''logical interface''' stats&lt;br /&gt;
 clish -c &amp;quot;show interfaces&amp;quot; | grep -B 1 On | grep Interface | grep -v loop | grep -v Tunnel | awk '{print &amp;quot;clish -c \&amp;quot;show interface &amp;quot;$3, &amp;quot;statistics\&amp;quot; |grep -C 1 Bytes;&amp;quot;}'&lt;br /&gt;
&lt;br /&gt;
grab active interfaces and produce clish commands for '''physical interface''' stats unfiltered&lt;br /&gt;
 clish -c &amp;quot;show interfaces&amp;quot; | grep -B 1 Up | grep Interface | grep -v loop | grep -v Tunnel | awk '{print &amp;quot;clish -c \&amp;quot;show interface &amp;quot;$3, &amp;quot;statistics\&amp;quot; ;&amp;quot;}' &lt;br /&gt;
error check&lt;br /&gt;
 clish -c &amp;quot;show interfaces&amp;quot; | grep -B 1 Up | grep Interface | grep -v loop | grep -v Tunnel | awk '{print &amp;quot;clish -c \&amp;quot;show interface &amp;quot;$3, &amp;quot;statistics\&amp;quot; |grep -A 3 Errors;&amp;quot;}'&lt;br /&gt;
&lt;br /&gt;
'''VRRP verfication'''&lt;br /&gt;
vrrp pre-upgrade recon&lt;br /&gt;
 script that looks for any foreign vrrp advertisement&lt;br /&gt;
&lt;br /&gt;
???&lt;br /&gt;
&lt;br /&gt;
== MDS commands ==&lt;br /&gt;
&lt;br /&gt;
Customer list - useful for determining mdscmd startcma/stopcma first parameter (not given by mdsstat)&lt;br /&gt;
 mdsquerydb Customers&lt;br /&gt;
'''&lt;br /&gt;
list firewall logs, sorted with backslash for copy/paste into gzip command'''&lt;br /&gt;
 # '''ls -t *.log |awk '{print $1,&amp;quot;\\&amp;quot;}'|sort -n|more'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[category:check point]]&lt;/div&gt;</summary>
		<author><name>Nighthawk</name></author>	</entry>

	</feed>