CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. Come to CPUG CON 2008 EUROPE in Switzerland on September 8th - 9th!
    Two days full of technical content for Check Point administrators in the beautiful Swiss Alps!
    We already have 72 attendees signed up from 20 countries!
2. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 10/6, 11/3, 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3, 9/7.
3. Corrent S3500 SecureXL Turbocards For Sale - Last Six Remaining - Get Your Spares!
4. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > SmartDashboard
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2006-05-28
jeetu_chaudhari jeetu_chaudhari is offline
Junior Member
 
Join Date: 2006-04-11
Posts: 16
Rep Power: 0
jeetu_chaudhari has an average reputation (10+)
Default How to query TCP/UDP ports

Hi all ,

I am very new to check point.
can anyone help me for following doubt.

I want to know how i can query TCP or UDP port like we do for querying object or query rule in smart dash board. ?
for example if i want to know where TCP port 4595 is used how i can do this ?
Reply With Quote
  #2 (permalink)  
Old 2006-05-28
BarryStiefel BarryStiefel is offline
Administrator
 
Join Date: 2005-08-11
Location: San Francisco, CA
Posts: 551
Rep Power: 10
BarryStiefel has disabled reputation
Default Re: How to query TCP/UDP ports

Quote:
Originally Posted by jeetu_chaudhari
Hi all ,

I am very new to check point.
can anyone help me for following doubt.

I want to know how i can query TCP or UDP port like we do for querying object or query rule in smart dash board. ?
for example if i want to know where TCP port 4595 is used how i can do this ?
Create a service object for that port, then mask the service element in your rule base to hide all rules that don't involve that service.
Reply With Quote
  #3 (permalink)  
Old 2006-05-28
Sergej Sergej is offline
Senior Member
 
Join Date: 2005-11-21
Location: Europe, Lithuania
Posts: 291
Rep Power: 3
Sergej has an average reputation (10+)
Default Re: How to query TCP/UDP ports

Select object you like (the Object must already exist for the port), Right-Click and select where used. The table will show all rules this object is used.
Reply With Quote
  #4 (permalink)  
Old 2006-05-28
BarryStiefel BarryStiefel is offline
Administrator
 
Join Date: 2005-08-11
Location: San Francisco, CA
Posts: 551
Rep Power: 10
BarryStiefel has disabled reputation
Default Re: How to query TCP/UDP ports

Quote:
Originally Posted by Sergej
Select object you like (the Object must already exist for the port), Right-Click and select where used. The table will show all rules this object is used.
Oooh, even better!
Reply With Quote
  #5 (permalink)  
Old 2006-05-29
jeetu_chaudhari jeetu_chaudhari is offline
Junior Member
 
Join Date: 2006-04-11
Posts: 16
Rep Power: 0
jeetu_chaudhari has an average reputation (10+)
Default Re: How to query TCP/UDP ports

Thanks for input.
but,
see , i dont want to query rule that is based on objects created.
i just simply want to query only port.
say for example i want to know where TCP port 4565 is used ? how i can search in dashboard ?
Reply With Quote
  #6 (permalink)  
Old 2006-05-29
Sergej Sergej is offline
Senior Member
 
Join Date: 2005-11-21
Location: Europe, Lithuania
Posts: 291
Rep Power: 3
Sergej has an average reputation (10+)
Default Re: How to query TCP/UDP ports

Checkpoint is dealing with objects only. Object are everywhere. You can not put port number or IP address directly to a rules (with a small exceptions).

So you can:
1) Create a temporary service object for a port e.g. jeetu_port, put number 4565 inside and use "where used" to find where the object is used. It is possible that the service object is already created for a mentioned port. Click and use "where used" on the existing object.
2) (expert) Use web visualization tool to export rulebase to a HTML. Use find and other tools to play with rules.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 23:32.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.0.0