PBR rules mismatch across cluster members for Check Point

Vendor

Check Point

Description

Indeni will identify when two devices are part of a cluster and alert if the PBR rules settings are different.

Remediation Steps

Compare the output of "show pbr rules" (under clish) across members of the cluster.

How does this work?

By parsing the gaia configuration database, /config/active, the PBR settings are retrieved. It can also be retrieved via clish, but that creates a lot of log entries in /var/log/messages.

Why is this important?

By parsing the gaia configuration database, /config/active, the PBR settings are retrieved. It can also be retrieved via clish, but that creates a lot of log entries in /var/log/messages.

Without Indeni how would you find this?

An administrator could login and manually run the command.


View Source Code