CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. Come to CPUG CON 2008 EUROPE in Switzerland on September 8th - 9th!
    Two days full of technical content for Check Point administrators in the beautiful Swiss Alps!
    We already have 72 attendees signed up from 20 countries!
2. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 10/6, 11/3, 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3, 9/7.
3. Corrent S3500 SecureXL Turbocards For Sale - Last Six Remaining - Get Your Spares!
4. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 Platforms > Check Point SecurePlatform (SPLAT)
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2006-05-11
Hitman Hitman is offline
Member
 
Join Date: 2006-05-11
Location: Montreal QC Canada
Posts: 36
Rep Power: 0
Hitman has an average reputation (10+)
Default SSH - running command is not allowed

Hi ,
I want to connect with ssh to my manager and a lauch a policy install to a firewall.

I use putty to connect ssh to the manager and in the putty profile i put the command fwm load mypolicy myfirewall .

I am able to connect to the manager but the manager refuse to execute my command. I get the message RUNNING COMMAND IS NOT ALLOWED.

Is the a way to remove this protection ?


Thanks in advance
Reply With Quote
  #2 (permalink)  
Old 2006-05-11
kva.kva kva.kva is offline
Senior Member
 
Join Date: 2006-01-26
Location: Moscow, Russia
Posts: 706
Rep Power: 3
kva.kva has an average reputation (10+)
Default Re: SSH - running command is not allowed

What shell do you use in you connecting account? It should /bin/bash (not cpshell), I think.
Reply With Quote
  #3 (permalink)  
Old 2006-05-12
Hitman Hitman is offline
Member
 
Join Date: 2006-05-11
Location: Montreal QC Canada
Posts: 36
Rep Power: 0
Hitman has an average reputation (10+)
Default Re: SSH - running command is not allowed

I use cpshell, i gonna test bin/bash and let you know

Thanks for the help
Reply With Quote
  #4 (permalink)  
Old 2006-05-12
Hitman Hitman is offline
Member
 
Join Date: 2006-05-11
Location: Montreal QC Canada
Posts: 36
Rep Power: 0
Hitman has an average reputation (10+)
Default Re: SSH - running command is not allowed

Thanks kva.kva

The /bin/bash is the solution.
Reply With Quote
  #5 (permalink)  
Old 2007-07-19
bestwes bestwes is offline
Junior Member
 
Join Date: 2007-06-26
Posts: 4
Rep Power: 0
bestwes has an average reputation (10+)
Default Re: SSH - running command is not allowed

hi, i got teh same problem in SSH- - running command is not allowed
I use plink.exe to shutdown the server. how did you used the /bin/bash?

thanks
Reply With Quote
  #6 (permalink)  
Old 2007-12-19
Hitman Hitman is offline
Member
 
Join Date: 2006-05-11
Location: Montreal QC Canada
Posts: 36
Rep Power: 0
Hitman has an average reputation (10+)
Default Re: SSH - running command is not allowed

Hi bestwes,

As far as i remember, you edit your /etc/passwd file and put /bin/bash instead of cpshell for the user that you want to do the ssh connection.
Reply With Quote
  #7 (permalink)  
Old 2007-12-19
lodown lodown is offline
Member
 
Join Date: 2006-05-05
Posts: 57
Rep Power: 3
lodown has an average reputation (10+)
Default Re: SSH - running command is not allowed

On Secure Platform, use Expert mode.

lodown
Reply With Quote
  #8 (permalink)  
Old 2008-01-02
Routerkid1 Routerkid1 is offline
Senior Member
 
Join Date: 2006-12-16
Posts: 131
Rep Power: 2
Routerkid1 has an average reputation (10+)
Default Re: SSH - running command is not allowed

tip for you guys.

chsh -s /bin/bash admin for example will change the shell to automatically bring you in to expert mode. You can get to cpshell by typing cpshell and hitting ctrl d on the keyboard will allow you to exit cpshell back to bash.

Last edited by Routerkid1; 2008-01-02 at 16:12.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 08:27.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.0.0